Lead Vulnerability Management Engineer

·
Full time
Location: London
·
Job offered by: Xcede
·
Category: IT & Technology
Xcede Greater London, England, United Kingdom Lead Vulnerability Management Engineer

A leading financial technology and data science firm requires a Lead Vulnerability Management Engineer who will be responsible for delivering a "greenfield" global vulnerability management programme. The role entails delivering the technical aspects of vulnerability management; identification and prioritisation, as well as the non-technical side involving communication and coordination with cross-functional teams to ensure timely patching and remediation, compliance and reporting. The role includes evaluating vulnerabilities for exploitability, aligning patching schedules, and overseeing and ensuring the integrity of pre- and post-patch checks across the corporate technology environment as well as the application development functions. Whilst this is currently an individual contributor role, it will quickly expand into a leadership position, so it would suit a hands-on VM Engineer looking for a step toward management. The position reports directly to the Head of Security. Please note: the role requires at least 3 days in the office. Responsibilities

5 -10 years of experience in vulnerability management or a similar security role in globally distributed financial (or complex) technology environment Strong technical knowledge with hands-on experience using vulnerability scanning/assessment tools - Tenable and AWS Inspector are desirable Familiarity with on-premise and cloud environments (AWS, Azure) and hybrid setups. Ability to communicate effectively with both technical and non-technical stakeholders. Experience in coordinating patch management processes across a large organisation and time zones, ensuring minimal business disruption Ability to evaluate vulnerabilities based on risk and exploitability, guiding patching priorities Strong organisational skills to manage patch schedules, stakeholder coordination, and compliance requirements Certifications such as CISSP, CISM, or relevant security qualifications Familiarity with regulatory requirements and security standards (e.g., ISO 27001, NIST) Seniority level

Mid-Senior level Employment type

Full-time Job function

Information Technology Industries

Investment Management, Investment Banking, and Financial Services

#J-18808-Ljbffr

Recent Jobs

London (On site) · Full time

Are you a smart, driven professional who takes pride in making a difference in local communities? Turner & Townsend’s Real Estate division is experiencing significant growth and we’re looking for an experienced industry professional with health project experience to join our high-performing and collaborative Project Management team. Why Join Us? Impactful Work: Contribute to social [...]Read More... from Assistant Project Manager – Healthcare See details

Chasetown (On site) · Full time

My client, Autosmart International are a manufacturing success story! Site Operations Manager – leading fast-paced manufacturing and warehousing About Our Client Autosmart International is a manufacturing success story, leading the field in vehicle cleaning products. We are the No.1 choice of automotive trade customers across the UK. We have doubled in size in the last [...]Read More... from Site Operations Manager See details

London (On site) · Full time

CSS are looking for an experienced duty officer to join our client’s team who are a local council responsible for all areas within the Tendering district. Working hours: All shifts are 8 hours long with various start times available: Monday to Friday – start times between 6AM – 3PM Saturday & Sunday – 6AM – [...]Read More... from Duty Officer See details