Vulnerability Management Analyst

Capgemini

United Kingdom

Hybrid

GBP 42,000 - 60,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Hybrid working
Wellbeing resources

Job summary

Capgemini is seeking a Vulnerability Management Analyst to join the Cyber Delivery Team in the UK. The role focuses on coordinating remediation activities, reporting on trends, and driving timely resolution of security issues across the environment. Hybrid working requires at least 2 days on-site weekly.

You will collaborate with suppliers and governance forums, maintain audit-ready evidence, and support risk-based decision making within a managed services framework.

Qualifications

  • Security knowledge covering vulnerability management, risk concepts, and CVSS metrics.
  • Strong analytical and reporting skills with the ability to produce security metrics.
  • Experience collaborating with suppliers and governance forums to drive remediation.

Responsibilities

  • Coordinate vulnerabilities from identification to remediation and closure.
  • Engage with suppliers to obtain and maintain accurate vulnerability data.
  • Produce vulnerability reports, dashboards, and metrics for trends and SLA breaches.
  • Support governance by ensuring adherence to vulnerability management processes and policies.
  • Maintain audit-ready evidence and documentation for assurance reviews.

Skills

Cyber security
Information security
Risk concepts
Stakeholder engagement
Reporting & analytics
Vulnerability management

Tools

Qualys
Tenable
Brinqa

Job description

About the job you’re considering

Are you passionate about cybersecurity? Are you an excellent communicator with demonstrable experience of delivering security services within organisations? Would you relish putting these skills into practice by taking on a role within Capgemini to protect us and our clients from cyber threats? We are seeking a Vulnerability Management Analysts with proven experience to join our cybersecurity team. Reporting to the Vulnerability Management Lead, you will work closely with suppliers to ensure identified security vulnerabilities are understood, prioritized, and remediated within agreed timescales. Rather than operating the vulnerability management tools directly, you will review findings, coordinate remediation activities, track progress, and provide guidance on risk reduction. The role focuses on stakeholder engagement, risk management, reporting, and driving timely resolution of security issues across the environment. Working as part of our Security Operations team, you will be responsible for delivering a comprehensive vulnerability management service to our customer. The Cyber Delivery Team sits within a wider Managed Services function, residing in the Cloud Infrastructure Services (CIS) UK business line. You will have the opportunity to interact with our global team of security experts, from Architects to Engineers, Analysts to Compliance Managers. Outreach in CIS doesn’t just stop at security, as we actively encourage our staff to engage with other areas of the business and local communities. Hybrid working: The role will be hybrid and require working onsite at the customer site in either Inverness or Preston a minimum of 2 days a week, depending on business requirements. If you are successfully offered this position, you will go through a series of pre-employment checks, including: identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service).

Your role:

Key Responsibilities:

  • Coordinate and track vulnerabilities from identification through remediation and closure, ensuring progress meets agreed service levels and escalating high-risk or overdue issues where required.
  • Engage with suppliers to obtain, validate, and maintain accurate vulnerability data, ensuring consistent reporting standards and clear ownership.
  • Produce vulnerability reports, dashboards, and metrics that provide visibility of aging vulnerabilities, recurring issues, SLA breaches, and emerging trends.
  • Support governance and compliance by ensuring adherence to vulnerability management processes, policies, standards, and risk exception procedures.
  • Maintain audit-ready evidence and documentation, supporting assurance reviews and demonstrating the effectiveness of vulnerability management controls to stakeholders.

You can bring your whole self to work. At Capgemini building an inclusive future is part of everyday life and will be part of your working reality. We have built a representative and welcoming environment, for everyone.

Your skills and experience
  • Experience in cyber security, information security, service management, or governance, with a solid understanding of vulnerability management principles and risk concepts (CVSS, KEV, risk ratings, and remediation tracking).
  • Strong analytical, reporting, and data interpretation skills, with the ability to produce meaningful security metrics and reporting packs.
  • Proven ability to work collaboratively with multiple stakeholders, suppliers, and governance forums to drive remediation and performance improvements.
  • Familiarity with vulnerability management tools, reporting processes, security governance, assurance activities, and audit evidence requirements.
  • Experience in SIAM or multi-supplier environments, preferably within regulated, public sector, or defence organisations.
Desirable
  • Qualifications in Vulnerability Management Tooling (Qualys, Brinqa, Tenable)
We are a Disability Confident Employer

Capgemini is proud to be a Disability Confident Employer (Level 2) under the UK Government’s Disability Confident scheme. As part of our commitment to inclusive recruitment, we will offer an interview to all candidates who: Declare they have a disability, and Meet the minimum essential criteria for the role. Please opt in during the application process.

Your security clearance and pre-employment checks

If you are successfully offered this position, you will go through a series of pre-employment checks, including: identity, nationality (single or dual) or immigration status, employment history going back 3 continuous years, and unspent criminal record check (known as Disclosure and Barring Service). Some roles will also require an additional level of security clearance: Security Check (SC) Clearance: To be successfully appointed to this role, it is a requirement to obtain Security Check (SC) clearance. To obtain SC clearance, the successful applicant must have resided continuously within the United Kingdom for the last 5 years, along with other criteria and requirements. Throughout the recruitment process, you will be asked questions about your security clearance eligibility such as, but not limited to, country of residence and nationality. Some posts are restricted to sole UK Nationals for security reasons; therefore, you may be asked about your citizenship in the application process.

Flexibility to work your way

You will be encouraged to have a positive work-life balance. Our hybrid-first way of working means we embed hybrid working in all that we do and make flexible working arrangements the day-to-day reality for our people. All UK employees are eligible to request flexible working arrangements.

Your wellbeing

You’d be joining an accredited Great Place to work for Wellbeing in 2024. Employee wellbeing is vitally important to us as an organisation. We see a healthy and happy workforce a critical component for us to achieve our organisational ambitions. To help support wellbeing we have trained ‘Mental Health Champions’ across each of our business areas, and we have invested in wellbeing apps such as Thrive and Peppy.

Shape your path

You will be empowered to explore, innovate, and progress. You will benefit from Capgemini’s ‘learning for life’ mindset, meaning you will have countless training and development opportunities from thinktanks to hackathons, and access to 250,000 courses with numerous external certifications from AWS, Microsoft, Harvard ManageMentor, Cybersecurity qualifications and much more.

Shared energy

You’ll be bringing your unique skills and perspectives to the team, inspiring and taking inspiration from your teammates as you unlock value in everything you do. You’ll be joining a professional community of experts, who have got your back and will support you, every step of the way.

Why should you consider Capgemini?

Growing clients’ businesses while building a more sustainable, more inclusive future is a tough ask. When you join Capgemini, you’ll join a thriving company and become part of a collective of free-thinkers, entrepreneurs and industry experts. We find new ways technology can help us reimagine what’s possible. It’s why, together, we seek out opportunities that will transform the world’s leading businesses, and it’s how you’ll gain the experiences and connections you need to shape your future. By learning from each other every day, sharing knowledge, and always pushing yourself to do better, you’ll build the skills you want. You’ll use your skills to help our clients leverage technology to innovate and grow their business. So, it might not always be easy, but making the world a better place rarely is.

About Capgemini

Capgemini is an AI-powered global business and technology transformation partner, delivering tangible business value. We imagine the future of organisations and make it real with AI, technology, and people. With our strong heritage of nearly 60 years, we are a responsible and diverse group of over 420,000 team members in more than 50 countries. We deliver end-to-end services and solutions with our deep industry expertise and strong partner ecosystem, leveraging our capabilities across strategy, technology, design, engineering and business operations. The Group reported 2025 global revenues of €22.5 billion. Make it real | www.capgemini.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management Service Lead
Vulnerability Management Service Lead

Capgemini • Inverness

On-site
GBP 65,000 - 90,000
Learning for life
Wellbeing programs
Security Command Centre - Onsite and On Shift (Security Incident Management Analyst)
Security Command Centre - Onsite and On Shift (Security Incident Management Analyst)

Capgemini • Inverness

Hybrid
GBP 40,000 - 60,000
Flexible working
Wellbeing programs
GRC Lead
GRC Lead

Capgemini • Inverness

Hybrid
GBP 45,000 - 65,000
Hybrid working
Wellbeing programmes
Learning & development
+1
GRC Analyst
GRC Analyst

Capgemini • Inverness

On-site
GBP 48,000 - 70,000
Public Sector Cyber Pre-Sales Solutioner
Public Sector Cyber Pre-Sales Solutioner

Capgemini • Greater London

Hybrid
GBP 90,000 - 120,000
Security Command Centre - Onsite and On Shift (Security Incident Management Analyst)
Security Command Centre - Onsite and On Shift (Security Incident Management Analyst)

Capgemini • Urmston

On-site
GBP 42,000 - 56,000
Flexible working
Wellbeing program
Learning for life
+1
CSI Manager
CSI Manager

Capgemini • Birmingham

Hybrid
GBP 70,000 - 100,000
Cyber Governance Consultant
Cyber Governance Consultant

Capgemini • United Kingdom

Hybrid
GBP 60,000 - 90,000
CSI Manager
CSI Manager

Capgemini • United Kingdom

Hybrid
GBP 65,000 - 90,000
Hybrid working
Wellbeing programs
Extensive training & certifications
+1
Public Sector Cyber Pre-Sales Solutioner
Public Sector Cyber Pre-Sales Solutioner

Capgemini • United Kingdom

Hybrid
GBP 90,000 - 130,000
Disability Confident Employer Level 2
Wellbeing programs
Mental Health Champions
+1