Head of Vulnerability Management

Reference: ntxadk4qcogd6s2k3gg6

We are seeking an experienced Head of Vulnerability Management to lead the development and delivery of a comprehensive, risk-based vulnerability management programme. This is a strategic leadership role responsible for reducing cyber risk across a complex technology environment, including cloud platforms, on-premises infrastructure, applications, endpoints and third-party services. You will define the vulnerability management vision, establish effective governance and ensure that security risks are identified, prioritised and remediated in line with business objectives and regulatory expectations.

You will lead a team of vulnerability management specialists and work closely with Security Operations, Infrastructure, Engineering, Architecture, Risk, Compliance and Technology leadership. Responsibilities will include overseeing vulnerability discovery, scanning, validation, threat intelligence, risk-based prioritisation, remediation tracking and management reporting. You will establish meaningful service levels and key performance indicators, improve asset visibility and coverage, and ensure that vulnerabilities are assessed in the context of exploitability, business criticality and emerging threats. The role will also involve managing strategic relationships with technology and security vendors, supporting audit activity, and providing clear, concise updates to senior stakeholders.

The successful candidate will have substantial experience leading vulnerability management or a closely related cyber security function within a large and complex organisation. You will possess strong knowledge of vulnerability assessment methodologies, common security frameworks, risk management principles and industry tooling, with practical experience across infrastructure, applications and cloud environments. A proven ability to lead teams, influence stakeholders and translate technical risk into business-focused recommendations is essential. Relevant professional certifications such as CISSP, CISM, CRISC, OSCP or equivalent are desirable. You should be analytical, decisive and collaborative, with a continuous improvement mindset and the communication skills needed to drive accountability at all levels.

COMPETITIVE SALARY
Added 14/09/2026
Reference: ntxadk4qcogd6s2k3gg6

Other similar jobs

Head of Cyber Security Risk Management, Digital Identity

Added 18/08/2026

We are seeking a highly skilled and strategic Head of Cyber Security Risk Management, Digital Identity to lead our efforts in safeguarding digital identities and ensuring robust risk management practices. In this pivotal role, you will be responsible for developing and implementing a comprehensive cyber security risk management framework, specifically focused on digital identity threats and vulnerabilities. You will work closely with cross-functional teams to identify risks, assess their impact, and create effective mitigation strategies to protect sensitive information and maintain compliance with industry standards. Your key responsibilities will include overseeing the evaluation of existing digital identity systems and protocols,...

Learn more

Cyber Security Governance & Risk Management Principal

Added 01/09/2026

We are seeking an experienced Cyber Security Governance & Risk Management Principal to lead the development, implementation and continual improvement of enterprise-wide cyber security governance and risk management practices. This senior role will provide strategic direction on security policies, standards, frameworks and controls, ensuring they support business objectives, regulatory obligations and evolving threat landscapes. You will act as a trusted adviser to senior stakeholders, translating complex cyber security risks into clear business impacts, priorities and practical remediation plans. Key responsibilities include maintaining the cyber security governance framework; overseeing risk identification, assessment, treatment and acceptance processes; and reporting risk exposure, control...

Learn more

Head of Vulnerability Management - Government Digital Service - G6

Added 15/09/2026

We are seeking an experienced Head of Vulnerability Management to lead the development and delivery of a mature, risk-based vulnerability management capability across a complex digital and technology estate. This is a senior role requiring strong leadership, sound technical judgement and the ability to influence stakeholders at all levels. You will set the strategic direction for identifying, assessing, prioritising and remediating vulnerabilities, ensuring that security risks are understood and managed effectively. You will oversee vulnerability scanning, threat intelligence, exposure assessment, remediation tracking and reporting across infrastructure, applications, cloud services and third-party environments. Working closely with cyber security, architecture, engineering, service...

Learn more

Vulnerability Management Analyst

Added 14/09/2026

We are seeking a Vulnerability Management Analyst to support the identification, assessment, prioritisation, and remediation of security weaknesses across a complex technology environment. In this role, you will help reduce cyber risk by coordinating vulnerability management activities across infrastructure, applications, cloud services, endpoints, and network devices. You will work closely with security, infrastructure, development, and service teams to ensure vulnerabilities are understood, addressed, and tracked through to resolution. Your responsibilities will include operating and maintaining vulnerability scanning tools, reviewing scan results, validating findings, and assessing vulnerabilities based on severity, exploitability, asset criticality, and business impact. You will produce clear reports...

Learn more

Vulnerability Management Lead

Added 11/09/2026

We are seeking a Vulnerability Management Lead to develop and oversee a proactive, risk-based vulnerability management programme across a complex technology estate. You will provide strategic direction while remaining engaged with the operational detail required to identify, assess, prioritise and remediate vulnerabilities across infrastructure, applications, cloud services, endpoints and third-party environments. Working closely with security, technology, engineering and business stakeholders, you will help reduce exposure to cyber threats and strengthen the organisation’s overall security posture. Key responsibilities will include defining vulnerability management standards, processes and performance measures; managing vulnerability scanning, assessment and validation activities; and ensuring findings are accurately risk-rated,...

Learn more

Vulnerability Management Analyst

Added 08/09/2026

We are seeking a Vulnerability Management Analyst to support the identification, assessment, prioritisation and remediation of security vulnerabilities across a diverse technology environment. In this role, you will work closely with infrastructure, application development, cloud, networking and service management teams to reduce organisational exposure and strengthen overall cyber resilience. You will help maintain accurate vulnerability information, provide clear risk-based insight and support timely remediation of issues across on-premises and cloud-based systems. Key responsibilities include operating and monitoring vulnerability scanning tools, validating scan results, investigating false positives and correlating findings with asset criticality and business impact. You will analyse vulnerability data,...

Learn more

Senior Vulnerability Management Analyst- CIO- BPL

Added 07/09/2026

We are seeking a Senior Vulnerability Management Analyst to lead the identification, assessment, prioritisation, and remediation of security vulnerabilities across a complex technology environment. This role will play a key part in strengthening cyber resilience by turning vulnerability data into clear, actionable insight for technical teams and senior stakeholders. You will work closely with infrastructure, application, cloud, and security teams to ensure vulnerabilities are managed consistently and within agreed risk tolerances. Key responsibilities will include operating and improving vulnerability management processes; configuring and maintaining vulnerability scanning and reporting tools; analysing scan results, threat intelligence, exploitability, and business context; and prioritising...

Learn more

Senior Security Architect - SecOps and Vulnerability Management

Added 07/09/2026

We are seeking a Senior Security Architect to lead the design and continuous improvement of SecOps and vulnerability management capabilities across a complex technology environment. This is a strategic and hands-on role for an experienced security professional who can translate business and technology risks into practical, resilient security solutions. You will define architecture principles, security standards and operating models that strengthen the organisation’s ability to identify, assess, prioritise and respond to cyber threats. Key responsibilities will include developing and maintaining security architecture for security operations, vulnerability management, threat detection, incident response and security monitoring. You will evaluate existing controls, identify...

Learn more

Vulnerability Management Engineer

Added 04/09/2026

We are seeking a Vulnerability Management Engineer to help identify, assess, prioritise, and reduce security weaknesses across a complex technology environment. In this role, you will support the full vulnerability management lifecycle, from discovery and validation through remediation, reporting, and risk acceptance. You will work closely with infrastructure, cloud, application, endpoint, and operations teams to ensure vulnerabilities are addressed in line with defined service levels and business priorities. Your responsibilities will include configuring and maintaining vulnerability scanning and assessment tools; developing authenticated and unauthenticated scan policies; analysing results to remove false positives and identify meaningful risk; and producing clear reports...

Learn more

Vulnerability Management Analyst- CIO- BPL

Added 03/09/2026

We are seeking a Vulnerability Management Analyst to support the identification, assessment, prioritisation and remediation of security vulnerabilities across a complex technology environment. You will help protect critical systems, applications, networks and data by ensuring vulnerabilities are discovered promptly, evaluated accurately and addressed within agreed service levels. The role will involve working closely with infrastructure, application development, cloud, operations and risk teams to improve the organisation’s overall security posture. Your responsibilities will include operating and maintaining vulnerability scanning and management tools; coordinating authenticated and unauthenticated scans; validating findings and reducing false positives; analysing vulnerability data and emerging threats; and producing...

Learn more

Cybersecurity Analyst – Vulnerability Management

Added 03/09/2026

We are seeking a Cybersecurity Analyst – Vulnerability Management to help identify, assess, prioritise, and reduce security risks across a diverse technology environment. In this role, you will support the continuous improvement of vulnerability management practices and help protect critical systems, applications, networks, and data from emerging threats. You will work closely with infrastructure, application development, cloud, and information security teams to ensure vulnerabilities are addressed effectively and within agreed timeframes. Your responsibilities will include operating and monitoring vulnerability scanning tools, reviewing scan results, validating findings, and assessing risk based on severity, exploitability, business impact, and asset criticality. You will...

Learn more

Vulnerability Management Analyst

Added 03/09/2026

We are seeking a Vulnerability Management Analyst to support the identification, assessment, prioritisation, and remediation of security vulnerabilities across a complex technology environment. The successful candidate will work closely with infrastructure, application development, cloud, and service delivery teams to reduce cyber risk and strengthen the organisation’s overall security posture. This role requires a methodical approach, strong analytical skills, and the ability to communicate technical findings clearly to both technical and non-technical stakeholders. Key responsibilities will include operating and improving vulnerability scanning processes across servers, endpoints, networks, applications, containers, and cloud environments; analysing scan results and validating findings; assessing vulnerabilities based...

Learn more

Vulnerability Management Ops SME

Added 01/09/2026

We are seeking a Vulnerability Management Ops SME to provide specialist operational leadership across the end-to-end vulnerability management lifecycle. The successful candidate will help strengthen the organisation’s ability to identify, assess, prioritise and remediate security vulnerabilities across infrastructure, applications, cloud environments and end-user technologies. This role will work closely with security operations, infrastructure, engineering, risk and technology teams to ensure vulnerabilities are managed consistently and within agreed risk-based timeframes. Key responsibilities will include overseeing vulnerability scanning schedules, validating and interpreting scan results, investigating false positives, and producing clear reports for technical and senior stakeholders. You will support the development and...

Learn more

Vulnerability Management Analyst

Added 01/09/2026

We are seeking a Vulnerability Management Analyst to support the identification, assessment, prioritisation and remediation of security vulnerabilities across a complex technology environment. Working closely with infrastructure, cloud, application, engineering and risk teams, you will help maintain a clear view of the organisation’s security exposure and contribute to reducing cyber risk. This role is suited to an analytical security professional who can translate technical findings into practical, risk-based actions. Your responsibilities will include operating and improving vulnerability scanning processes across servers, endpoints, networks, applications, containers and cloud environments; reviewing scan results to validate findings and eliminate false positives; and assessing...

Learn more

Senior Cyber Security Consultant (Security Operation & Vulnerability Management)

Added 26/08/2026

We are seeking a Senior Cyber Security Consultant (Security Operation & Vulnerability Management) to lead and strengthen security operations across a complex technology environment. This role will provide expert guidance on the identification, assessment and remediation of cyber security risks, while helping to improve the organisation’s overall security maturity. You will work closely with technology, infrastructure, application and risk teams to ensure vulnerabilities are understood, prioritised and addressed in line with business impact. Key responsibilities will include overseeing vulnerability management activities, reviewing scanning results, validating findings and coordinating remediation plans with relevant stakeholders. You will monitor and investigate security events,...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.