Leave us your email address and we'll send you all the new jobs according to your preferences.
Vulnerability Management Specialist
Posted 9 hours 30 minutes ago by Robert Walters UK
My client, a Financial Services company based in London (2 days per week in the office), are looking for a Vulnerability Management Specialist (VP level) to join their growing team.
What they are looking for- 'Hands-on' vulnerability management experience
- Ensure a risk-based approach to vulnerability management is adopted in every part of the business and solutions
- Work with members of the IT Security team to help design, implement and maintain security
- Operate and maintain IT Security controls related to Vulnerability Management
- Deliver vulnerability management projects from concept, approval, design, and implementation to operation
- Ability to collaborate effectively with others to drive forward key security objectives
- Strong documentation and report writing skills (to both technical and business audiences)
- Excellent time management and organizational skills combined with technical vulnerability management acumen
- Financial and/or Banking industry experience preferred
- As part of the IT Security team, develop and implement my client's IT Strategy in consultation with my client's IT teams, ensuring that all initiatives are mirrored in respective strategies including the overall Strategy
- Provide security advice and support for information technology projects as Vulnerability Management subject matter expert (SME)
- Research new security related products and services to ensure that my client is equipped with appropriate industry best tools and solution
- Subject Matter Expert (SME) for vulnerability management within the Security Operations Department.
- Manage vulnerability management platforms, including configuration, tuning, connectors, and coverage.
- Coordinate with engineering, infrastructure and application development teams to track SLA attainment and escalate blockers.
- Apply threat-based prioritization using CVSS, threat intelligence, exploitability data, KEV lists, and business context.
- Coordinate the response to high profile vulnerabilities, including zero-days and critical CVEs with impact analysis and action plans.
- Produce weekly and monthly reporting on trends, KRIs, KPIs, backlog health, and risk posture for senior audiences.
- Execute governance for exception handling and risk acceptance in line with policy. Maintain the exception register and review cadence.
- Manage the remediation backlog, change windows, and patch orchestration to meet SLAs.
- Lead, coach, and grow a team of analysists, engineers, and program managers.
- Support audits and evidence collection for standards and frameworks such as NIST CSF and ISO 27001.
- Manage vendor relationships, licensing, and tool roadmaps in coordination with the Director.
- Ensure vulnerability management efforts and documentation comply with industry standards and best practices (GDPR, SOC, NIST, ISO etc.)
- Maintain detailed documentation and reporting for audits and compliance reviews.
- Develop and refine vulnerability management standard operating procedures and playbooks.
- Recommend and implement process improvements to enhance vulnerability management capabilities.
- Operate and maintain controls related to vulnerability management.
- Conduct vulnerability management risk assessments for all high impact projects, defining security mitigating controls that impact the technology architectures of my client's service providers, and business partners
- Review and update vulnerability management procedures to reflect best practice and mitigate current and emerging threats
- Assigned ownership of vulnerability management related FRB and Internal Audit finding(s) and effect timely resolution
- Maintain relationships with third-party vulnerability management vendors and strategic partners
- Technology discipline (Computer Science, Computer Engineering, Cybersecurity or equivalent)
- 10+ Years of experience within the cybersecurity industry with 5+ years in specific vulnerability management roles
- Security certifications such as CISSP, CISM, OSCP, GIAC GSEC, GEVA or equivalent is preferred
- Proven success operating a mature vulnerability management program at scale
- Strong understanding of scanning technologies, CVSS, and threat modelling
- Familiarity with compliance frameworks and standards such as NIST and ISO
- Experience managing technical teams and working cross-functionally with non-security stakeholders
- Experience integrating vulnerability management with ticketing and asset management tools
- Clear communicator who can brief executives and drive action
If the above role is of interest please let me know via applying to this role or emailing me on or calling me on .
Robert Walters Operations Limited is an employment business and employment agency and welcomes applications from all candidates
About the jobContract Type: Permanent
Focus: Information Security
Workplace Type: Hybrid
Experience Level: Senior Management
Location: London
Salary: £90,000 - £110,000 per annum
Industry: Banking
FULL_TIME
Job Reference: 0PPEMZ-3C38527A
Date posted: 4 September 2025
Consultant: Darius Goodarzi
london information-technology/information-security 2025-09 11-03 banking London London GB GBP YEAR Robert Walters
Robert Walters UK
Related Jobs
Associate Planning Director
- £50,000 Annual
- Bedfordshire, United Kingdom
Support worker
- £13 - £14 Hourly
- Merseyside, Liverpool, United Kingdom, L21 0
Expert Talent Acquisition (executive Search) (m/f/d)
- Baden-Württemberg, Stuttgart, Germany, 70376
Cleanroom operator 2 ploegen
- Overijssel, Enschede, Netherlands, 7511 AA
Finance Professional (detachering)
- Noord-Holland, Amsterdam, Netherlands