Enable job alerts via email!

Security Engineer - Vulnerability Management

Spencer Rose Ltd

London

On-site

GBP 90,000 - 104,000

Full time

2 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Start fresh or import an existing resume

Job summary

A global media company is seeking a Security Engineer - Vulnerability Management to enhance their vulnerability management program across cloud and on-prem systems. This role involves developing automation solutions, collaborating with various teams, and ensuring compliance with security frameworks in a transformative environment.

Qualifications

  • Extensive experience with Vulnerability Management in cloud and on-prem environments.
  • Hands-on experience with Tenable and integration into CI/CD.
  • Strong scripting skills in Python, Bash, PowerShell, or Go.

Responsibilities

  • Develop and maintain an automated vulnerability management program.
  • Integrate vulnerability scanning into CI/CD pipelines.
  • Collaborate with teams to remediate vulnerabilities.

Skills

Vulnerability Management
Scripting
Cloud Security
On-Prem Security
Communication

Education

Technical degree in Information Systems

Tools

Tenable
CI/CD pipelines
Jira
ServiceNow
Slack

Job description

Security Engineer - Vulnerability Management

London - 2 days a week on site

£90,000

An impressive global media company is looking to hire a Security Engineer - Vulnerability Management to take ownership of vulnerability remediation across a cloud and on-prem environment. This business is going through a big technology transformation programme that is estimated to take 3 -5 years. The successful Security Engineer - Vulnerability Management will drive and automate the vulnerability management programme across this business. This is a great opportunity for a passionate Security Engineer - Vulnerability Management to build out a remediation programme and collaborate with a variety of stakeholders at all levels of this international superbrand

Security Engineer - Vulnerability Management

Duties and Responsibilities

The successful Security Engineer - Vulnerability Management will:
  • Develop, implement, and maintain an automated and scalable vulnerability management program using Tenable and related tools.
  • Create and enforce vulnerability management policies, scan configurations, and best practices, aligned to frameworks such as NIST or ISO 27001.
  • Integrate vulnerability scanning and remediation into CI/CD pipelines and development workflows to ensure security at speed; this business is in a transformative stage!
  • Automate data collection, triage, reporting, and ticketing processes using Scripting languages such as Python, Bash, PowerShell, or Go.
  • Collaborate with IT, DevOps, and engineering teams to remediate identified vulnerabilities quickly and effectively.
  • Scope and coordinate penetration testing activities; track remediation and risk acceptance outcomes.
  • Monitor, measure, and report on vulnerability management performance, including KPIs, SLAs, and risk metrics.

Security Engineer - Vulnerability Management - Your Background

The ideal Security Engineer - Vulnerability Management will have:
  • A technical degree in Information Systems or similar
  • Extensive experience with Vulnerability Management across both cloud and On-Prem environments
  • Hands on experience with Tenable and integration of VM tooling into CI/CD pipelines
  • Strong Scripting skills using languages such as Python, Bash, PowerShell, or Go.
  • Familiarity with APIs, automation workflows, and integrating with platforms like Jira, ServiceNow, or Slack.
  • Ability to scope penetration tests and manage findings through to remediation.
  • Strong understanding of security frameworks and standards such as ISO 27001, NIST, and CIS.
  • Excellent communication, presentation, and influencing skills, with the ability to explain complex technical issues to non-technical stakeholders.

We invite individuals from underrepresented groups to apply for any of our roles and are committed to supporting accessibility needs.

If this Security Engineer - Vulnerability Management role is of interest, hit the apply button now!
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.