Senior Vulnerability Management specialist

Morson Human Resources Limited

Southampton

Hybrid

GBP 111,000 - 120,000

Full time

9 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Morson Human Resources Limited is seeking a Senior Vulnerability Analyst to join the Cyber Security team. You will lead identification, assessment and prioritisation of vulnerabilities across infrastructure, applications, endpoints and cloud environments, driving remediation.

The role requires eligibility for UK SC clearance, with priority for candidates who already hold active SC clearance. This is remote with occasional attendance to a site in central Southampton, paying £600-£650 per day

Qualifications

  • Significant experience in vulnerability management or cyber security operations.
  • Strong understanding of risk-based prioritisation and remediation.
  • Hands-on use of enterprise vulnerability platforms.

Responsibilities

  • Lead identification, assessment and prioritisation of vulnerabilities across infrastructure, apps, endpoints and cloud.
  • Analyse scan results, distinguish true risks from false positives.
  • Assess vulnerabilities using CVSS, exploitability, asset criticality and business impact.
  • Monitor emerging vulnerabilities and threat intelligence.
  • Coordinate remediation with IT and security teams to meet risk-based SLAs.
  • Produce dashboards and MI for stakeholders.
  • Identify trends and systemic weaknesses to improve processes.

Skills

Vulnerability management
Risk-based prioritisation
CVSS/CVE/CWE
Stakeholder communication
Security clearance
Threat intelligence

Tools

Tenable
Qualys
Rapid7

Job description

Senior Vulnerability Management specialist - £600-£650 per day - Inside IR35 - Remote with occasional attendance to a site in central Southampton.

My client is looking for an experienced Senior Vulnerability Analyst to join their Cyber Security team, taking a lead role in identifying, assessing and managing vulnerabilities across a complex enterprise technology environment.

This is a senior position requiring someone who can go beyond simply identifying vulnerabilities. You’ll be expected to understand the underlying risk, prioritise remediation and work closely with infrastructure, cloud, application and security teams to drive vulnerabilities through to resolution.

Security Clearance -

Eligibility for UK Security Check (SC) clearance is a mandatory requirement for this role. Candidates who already hold active SC clearance will be prioritised.

Key Responsibilities -
  • Lead the identification, assessment and prioritisation of vulnerabilities across infrastructure, applications, endpoints and cloud environments.
  • Analyse vulnerability scan results, distinguishing genuine risks from false positives and low-impact findings.
  • Assess vulnerabilities using CVSS, exploitability, asset criticality, exposure and business impact.
  • Monitor emerging vulnerabilities, zero-days and relevant threat intelligence.
  • Work closely with infrastructure, cloud, application, DevOps and IT operations teams to coordinate remediation.
  • Track vulnerabilities through to resolution, ensuring remediation is completed within agreed risk-based timescales.
  • Provide technical guidance and challenge remediation plans, risk acceptances and proposed compensating controls where appropriate.
  • Produce vulnerability reporting, dashboards and management information for technical and senior stakeholders.
  • Identify trends, recurring vulnerabilities and systemic weaknesses across the environment.
  • Help improve vulnerability management processes, tooling, automation and reporting.
Essential Experience -
  • Significant experience in vulnerability management, vulnerability assessment or cyber security operations.
  • Strong understanding of vulnerability assessment methodologies and risk-based prioritisation.
  • Hands-on experience with enterprise vulnerability management platforms such as Tenable, Qualys, Rapid7 or similar.
  • Strong understanding of CVSS, CVE, CWE and common vulnerability types.
  • Experience analysing vulnerabilities across Windows, Linux, network infrastructure, cloud and/or applications.
  • Good understanding of patching, configuration management and security controls.
  • Proven experience working with technical teams to drive vulnerability remediation.
  • Strong analytical and problem-solving skills, with the ability to communicate technical risk clearly to both technical and non-technical stakeholders.
  • Eligible for UK SC security clearance.
Desirable Experience -
  • Active UK SC security clearance.
  • Experience working within Defence, Nuclear, Critical National Infrastructure (CNI) or other highly regulated and security-conscious organisations.
  • Experience with Azure and/or AWS vulnerability management.
  • Experience with container, Kubernetes or DevSecOps security.
  • Knowledge of application security and common web application vulnerabilities.
  • Experience using SIEM, EDR and threat intelligence alongside vulnerability data.
  • Knowledge of NIST, CIS, ISO 27001 or Cyber Essentials.
  • Relevant security certifications such as CISSP, CISM, GIAC, OSCP or similar.
The Ideal Candidate -

My client is looking for someone who combines strong technical vulnerability analysis skills with the ability to operate confidently at a senior level.
You’ll be comfortable getting into the technical detail, while also being able to explain what the vulnerability means, how serious it is, what needs to be done and why.
This is an excellent opportunity for a senior vulnerability professional to join a complex organisation where cyber security, risk management and continuous improvement are key priorities.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Vulnerability Manager – Remote, SC Cleared
Senior Vulnerability Manager – Remote, SC Cleared

Morson Human Resources Limited • Southampton

Hybrid
GBP 111,000 - 120,000
Vulnerability Management Analyst
Vulnerability Management Analyst

Deerfoot Recruitment Solutions Limited • Lancashire

Hybrid
GBP 40,000 - 50,000
Vulnerability Management Engineer
Vulnerability Management Engineer

Opus Recruitment Solutions • United Kingdom

Remote
GBP 50,000
Travel and food expenses fully reimbursed
Vulnerability Lead
Vulnerability Lead

Vallum Associates • Greater London, Exeter, Gloucester

Hybrid
Vulnerability Analyst
Vulnerability Analyst

Computacenter • England

On-site
GBP 45,000 - 60,000
Vulnerability Management Consultant
Vulnerability Management Consultant

Searchability • Inverness

On-site
GBP 88,000 - 115,000
Vulnerability Management Lead
Vulnerability Management Lead

undisclosed • Preston

On-site
GBP 111,000 - 119,000
Senior Vulnerability Management Analyst - Hybrid London
Senior Vulnerability Management Analyst - Hybrid London

GCS Recruitment • United Kingdom

Hybrid
GBP 60,000 - 80,000
Vulnerability Management Consultant
Vulnerability Management Consultant

Searchability NS&D • Preston

On-site
GBP 61,000 - 101,000
SC clearance
Senior Cyber Threat & Vulnerability Manager
Senior Cyber Threat & Vulnerability Manager

McCabe & Barton • Eastbourne

Hybrid
GBP 110,000 - 150,000
Excellent benefits
Flexible working