Operational Security Lead and Vulnerability Manager

Reference: krf98gaqhzlgaxuaf0ms

We are seeking an experienced Operational Security Lead and Vulnerability Manager to strengthen the organisation’s cybersecurity posture and ensure that security risks are identified, assessed, and addressed effectively. This role will lead the operational management of security controls, vulnerability assessments, remediation activity, and risk reporting across a complex technology environment. You will work closely with infrastructure, applications, cloud, engineering, and risk teams to embed secure practices and maintain a clear view of the organisation’s exposure to cyber threats.

Key responsibilities include owning the vulnerability management lifecycle, from discovery and prioritisation through to remediation, exception management, and verification. You will oversee regular scanning and security testing, analyse findings, and ensure that critical vulnerabilities are escalated and resolved within agreed timescales. The role will also involve developing operational security processes, monitoring control effectiveness, supporting incident response, contributing to threat-informed risk assessments, and producing clear management information for senior stakeholders. You will help define security standards, improve operational resilience, and support audits, regulatory reviews, and assurance activities.

Applicants should have substantial experience in operational cybersecurity, vulnerability management, security engineering, or a closely related discipline. Strong knowledge of vulnerability assessment tools, risk-based prioritisation, patch management, security monitoring, and common frameworks such as NIST, ISO 27001, or CIS is essential. Experience working across cloud and on-premises environments, as well as familiarity with penetration testing, configuration management, and remediation tracking, would be advantageous. You will need excellent communication and stakeholder management skills, with the ability to explain technical risks clearly to both technical and non-technical audiences. Relevant professional certifications in cybersecurity, risk, or infrastructure security are desirable. The successful candidate will be analytical, organised, pragmatic, and confident in leading improvements within a fast-changing environment.

COMPETITIVE SALARY
Added 01/09/2026
Reference: krf98gaqhzlgaxuaf0ms

Operational Security Lead and Vulnerability Manager

Marlow, England, United Kingdom Permanent Security Analyst

Other similar jobs

Identity and Access Management Manager

Added 01/09/2026

We are seeking an experienced Identity and Access Management Manager to lead the development, operation, and continuous improvement of identity, authentication, and access control services. The successful candidate will be responsible for establishing effective governance, policies, standards, and processes that protect systems and information while enabling secure and efficient access for employees, contractors, partners, and customers. You will manage the full identity lifecycle, including joiner, mover, and leaver processes, role-based access control, privileged access management, access reviews, and segregation of duties. Working closely with information security, infrastructure, applications, human resources, risk, and compliance teams, you will oversee the implementation and...

Learn more

Technical Specialist (cyber related), Operational Risk and Resilience, R&CGI Operational Risk and Resilience Team - Insurance Directorate

Added 24/07/2026

We are seeking a highly skilled Technical Specialist with a strong focus on cyber-related issues to join our Operational Risk and Resilience Team within the Insurance Directorate. In this role, you will be responsible for identifying, assessing, and mitigating cyber risks that could impact the organization's operational resilience. You will work closely with cross-functional teams to develop and implement strategies aimed at enhancing the cybersecurity posture and ensuring compliance with relevant regulations and industry standards. Your expertise will be critical in conducting risk assessments, analyzing potential threats, and recommending appropriate risk management solutions. The ideal candidate will have a solid...

Learn more

Operational and Cyber Resilience Lead

Added 13/08/2026

We are seeking an experienced Operational and Cyber Resilience Lead to oversee and enhance our organization's operational frameworks and cybersecurity measures. In this role, you will be responsible for developing and implementing robust strategies to ensure continuity of operations and resilience against cyber threats. You will lead cross-functional teams to establish best practices, conduct risk assessments, and formulate response plans to mitigate potential disruptions. Your expertise will be critical in fostering a culture of resilience and ensuring compliance with industry standards and regulations. The ideal candidate will possess a strong background in operational management and cybersecurity, with a proven ability...

Learn more

Operational Risk Oversight Manager – Technology, Cyber and Data

Added 11/08/2026

We are seeking an experienced Operational Risk Oversight Manager specializing in Technology, Cyber, and Data to join our team. In this role, you will be responsible for developing and implementing a robust operational risk framework that addresses technology and cyber risks across the organization. You will conduct risk assessments, evaluate existing controls, and ensure compliance with regulatory requirements while providing guidance on best practices to mitigate potential risks. Your expertise will be crucial in enhancing the organization's resilience against cyber threats and safeguarding sensitive data. The ideal candidate will possess a deep understanding of operational risk management principles, particularly in...

Learn more

Vice President, Threat and Vulnerability Management Team Lead

Added 21/08/2026

We are seeking a highly skilled and experienced Vice President of Threat and Vulnerability Management Team Lead to oversee our cybersecurity strategy and operations. In this leadership role, you will be responsible for developing and implementing comprehensive threat and vulnerability management programs, ensuring the protection of our organization’s assets against emerging cyber threats. You will lead a team of cybersecurity professionals, fostering a culture of proactive risk management and continuous improvement. Your primary responsibilities will include assessing current security measures, identifying vulnerabilities, and developing strategies to mitigate risks. You will also be tasked with collaborating across departments to ensure alignment...

Learn more

Lead Penetration Tester (Lead Cyber Analyst), Technical Vulnerability Management - Cyber Security Division

Added 17/08/2026

We are seeking a highly skilled Lead Penetration Tester (Lead Cyber Analyst) to join our Technical Vulnerability Management team within our Cyber Security Division. In this role, you will be responsible for leading and executing comprehensive penetration testing engagements, identifying and assessing vulnerabilities within various systems and applications. You will collaborate closely with cross-functional teams to develop and implement effective remediation strategies, ensuring the security posture of the organization is continually enhanced. Your expertise will also be critical in mentoring junior analysts and conducting training sessions to elevate the team's overall capabilities. The ideal candidate will have a strong background...

Learn more

Manager, Security Threat, Vulnerability and Testing (m/f/d)

Added 07/09/2026

We are seeking an experienced Manager, Security Threat, Vulnerability and Testing (m/f/d) to lead the development and operation of a comprehensive information security testing and vulnerability management capability. In this role, you will help protect critical systems, applications and data by identifying security weaknesses, assessing emerging threats and ensuring that appropriate remediation measures are implemented. You will work closely with technology, infrastructure, software development, risk and compliance teams to strengthen security resilience across the organisation. Your responsibilities will include managing vulnerability scanning, penetration testing, security assessments and threat-informed testing activities across on-premises and cloud environments. You will define testing strategies,...

Learn more

Senior Manager, Security Threat, Vulnerability and Testing (m/f/d)

Added 04/09/2026

We are seeking a Senior Manager, Security Threat, Vulnerability and Testing (m/f/d) to lead the development and delivery of a comprehensive cyber security assurance programme. In this strategic role, you will oversee threat intelligence, vulnerability management, penetration testing and security validation activities across a complex technology environment. You will translate emerging threats and regulatory expectations into effective controls, risk-based priorities and measurable improvements, helping to strengthen the organisation’s resilience against evolving cyber attacks. Your responsibilities will include defining and implementing the overarching strategy for threat and vulnerability management, coordinating regular infrastructure, application, cloud and network assessments, and ensuring that identified...

Learn more

Senior Manager, Security Threat, Vulnerability and Testing (m/f/d)

Added 04/09/2026

We are seeking a Senior Manager, Security Threat, Vulnerability and Testing to lead the strategic development and operational delivery of enterprise-wide cybersecurity activities. In this role, you will oversee threat management, vulnerability identification and remediation, security testing, and risk-based assurance across applications, infrastructure, cloud environments and business processes. You will establish effective governance, standards and reporting mechanisms that provide clear visibility of the organisation’s security posture and support informed decision-making at senior level. Your responsibilities will include managing and developing teams responsible for threat intelligence, vulnerability management, penetration testing, red teaming, security assessments and control validation. You will define testing...

Learn more

Vulnerability and Exposure Manager

Added 24/07/2026

We are seeking a dedicated and skilled Vulnerability and Exposure Manager to oversee the identification, assessment, and mitigation of vulnerabilities within our organization's systems and processes. In this role, you will be responsible for conducting thorough vulnerability assessments and penetration testing to identify potential risks. You will work closely with cross-functional teams to develop and implement strategies for exposure reduction, ensuring compliance with industry standards and best practices. Regular reporting on vulnerability status and risk exposure will be essential, as will the ability to communicate findings effectively to various stakeholders. The ideal candidate will possess a strong understanding of cybersecurity...

Learn more

Head of Operational Information Security, Risk and Assurance

Added 04/09/2026

We are seeking an experienced Head of Operational Information Security, Risk and Assurance to lead the development and delivery of a robust operational security, risk and assurance function. This is a senior leadership role with responsibility for protecting information assets, strengthening resilience and ensuring that security practices support organisational objectives. You will provide clear direction across information security operations, technology risk, governance, compliance and assurance, while promoting a culture of shared accountability for security. You will oversee the identification, assessment and treatment of information and technology risks, ensuring that effective controls are designed, implemented and continuously improved. Responsibilities will include...

Learn more

Senior Security Engineer, Operational Research and Development

Added 04/09/2026

We are seeking a Senior Security Engineer, Operational Research and Development to help shape the next generation of security capabilities. In this role, you will investigate emerging threats, assess new technologies and develop practical solutions that strengthen the resilience of complex systems. You will work across research, engineering and operational teams to translate security challenges into actionable improvements, while balancing innovation, usability, performance and risk. Your responsibilities will include designing and leading security research projects; developing prototypes, proof-of-concept tools and technical demonstrations; analysing vulnerabilities, attack techniques and defensive controls; and evaluating the security implications of new platforms, architectures and technologies....

Learn more

Senior Security Engineer, Operational Research and Development

Added 03/09/2026

We are seeking a Senior Security Engineer to lead operational research and development initiatives that strengthen the security, resilience and performance of complex technology environments. This role will combine hands-on engineering with structured investigation, enabling the organisation to assess emerging threats, validate defensive capabilities and develop practical solutions for evolving operational needs. You will work across security, infrastructure, software and operations teams to turn research findings into reliable, scalable improvements. Responsibilities will include designing and conducting security research, technical experiments, proof-of-concept implementations and controlled assessments. You will investigate vulnerabilities, attack techniques, defensive technologies and operational risks; develop tools and prototypes;...

Learn more

Senior ICT Officer Operational Cyber Team Lead Band 6

Added 26/08/2026

We are seeking an experienced Senior ICT Officer to lead an operational cyber team responsible for protecting digital services, infrastructure and information assets. This is a hands-on leadership role for a cyber security professional who can combine technical expertise with effective team coordination, incident management and operational delivery. You will help maintain a strong security posture across a complex technology environment, ensuring that threats are identified, investigated and addressed promptly and appropriately. Key responsibilities include leading the day-to-day activities of the operational cyber team; coordinating the monitoring, detection, investigation and response to security incidents; reviewing alerts, vulnerabilities, threat intelligence and...

Learn more

Operational Resilience & Security Manager

Added 18/09/2026

We are seeking an experienced Operational Resilience & Security Manager to lead the development, implementation and continuous improvement of operational resilience and security frameworks. This role will help ensure that critical services, systems and processes remain protected, recoverable and capable of meeting business and regulatory expectations during disruption. You will work closely with senior stakeholders, technology teams, risk specialists and operational leaders to identify vulnerabilities, strengthen controls and promote a culture of resilience across the organisation. Key responsibilities will include maintaining the operational resilience framework, including business impact assessments, scenario testing, important business service mapping, recovery planning and resilience reporting....

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.