Job Search and Career Advice Platform

Enable job alerts via email!

Attack Surface Management Manager

Experian Information Solutions, Inc.

Remote

GBP 80,000 - 100,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A global data and technology firm is seeking a Manager of Attack Surface Management in the UK. This remote role focuses on driving the Continuous Threat Exposure Management program and enhancing the organization’s cybersecurity posture. The successful candidate will lead partnerships with regional teams and implement vulnerability management strategies. An extensive background in cybersecurity, including vulnerability management tools and cloud security practices, is essential. This position offers strong benefits, including a competitive compensation package and opportunities for professional growth.

Benefits

Competitive compensation package
Discretionary bonus plan
Pension
Healthcare benefits
Additional annual leave purchase options
25 days annual leave with 8 bank holidays and 3 volunteering days

Qualifications

  • Experience engaging and presenting security topics at senior levels in enterprise organizations.
  • Management experience in an enterprise-level cybersecurity function.
  • In-depth knowledge of vulnerability management tools and frameworks.

Responsibilities

  • Guide the success of the Continuous Threat Exposure Management (CTEM) program.
  • Lead the Business Engagement Team to establish partnerships with regional partners.
  • Ensure vulnerability management strategies align with business priorities.

Skills

Expert experience in Attack Surface Management
Vulnerability management
Technical leadership
Risk assessment
Cloud security practices

Tools

Qualys
Rapid7
Tanium
Axonius
Armis
Job description

Experian Cyber Fusion Centre are looking for a new Manager of Attack Surface Management (ASM) to play a crucial role in our cybersecurity strategy. You will guide the success of the Continuous Threat Exposure Management (CTEM) program and build business engagement across global teams. You will ensure CTEM delivers reliable, applicable insights by defining and maintaining processes, integrating services with enterprise systems. Equally critical is leading the Business Engagement Team to establish trusted partnerships with regional infrastructure and application partners, aligning vulnerability management strategies with priorities. Through technical leadership and strategic influence, you will strengthen Experian's security posture and reduce risk across its global attack surface. This is an UK based remote position reporting to the Information Security Director for Cloud and Attack Surface Management.

  • Maintain risk stratification model to guide vulnerability prioritization based on threat and asset criticality; Identify vulnerability prioritization and asset coverage trends, escalating to senior leadership when vulnerability trends are not improving over time.
  • Help with response to cybersecurity incidents or threat informed actions, ensuring accurate identification of applicable internal and external risks. Will use a broad and diverse combination of tools, techniques, and data sources to support highest confidence in attack surface discovery.
  • Guide team members' daily project and operational activities
  • Contribute to security and technology strategic planning to mature our programmes
  • Work with Risk & Compliance teams on SOC 2, PCI DSS, HIPAA, and other audits.
  • Research and recommend policy and procedures as they relate to Attack Surface Management
    Expert experience supporting Attack Surface Management in vulnerability, remediation, and mitigation as it applies to the following.
    + Common web applications, APIs, misconfigurations, hosts, mobile, Internet of Things, endpoints, infrastructure, cloud, network appliance, OS, firmware and software supply‑chain.
  • Management experience in an enterprise‑level cybersecurity function.
  • Experience engaging and presenting security topics at senior levels in an enterprise organization
  • Experience managing Risk‑Based Vulnerability Management models.
  • In‑depth knowledge of architecture, engineering, and operations of one or more vulnerability management tools, such as: Qualys, Rapid7, Tanium, Axonius, Armis, or other.
  • Experience applying the following models to an enterprise security program: CMMI, ISO/IEC 2700, OWASP SAMM, NIST, SMM SANS Security Maturity Model.
  • Experience developing security reports, trends, and metrics analysis.
  • Experience with the application of some of the following frameworks - SANS, NIST 800‑61, CVSS, CIS, OSSTM, ISO 27001, MITRE ATT&CK, PCI, HIPAA, GDPR or similar.
  • Experience with cloud security practices
  • Experience with business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping
    Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to achieve their financial goals and help them save time and money.
  • Great compensation package and discretionary bonus plan
  • Core benefits include pension, bupa healthcare, sharesave scheme and more
  • 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
  • Experian is proud to be an Equal Opportunity and Affi‑…
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.