Vulnerability Management Engineer

McCabe & Barton

Greater London

On-site

GBP 70,000 - 110,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

McCabe & Barton seeks an experienced Vulnerability Management Engineer to own discovery, triage, and remediation across Azure and GCP during a critical integration programme. You will collaborate with engineering teams to prioritise threats using CVSS, implement IaC-based remediation with Terraform, and build live risk dashboards.

Expertise in Azure, with GCP exposure, and scripting in Python/PowerShell is valued.

Qualifications

  • Strong experience in Vulnerability Management and/or Application Security Engineering.
  • Deep hands-on Azure administration experience, including subscriptions, resource groups, IAM, and networking.
  • Experience with vulnerability scanning and management platforms such as Datadog and Microsoft Sentinel.

Responsibilities

  • Vulnerability Discovery & Triage: Scan Azure and GCP infrastructure for vulnerabilities using Datadog, Sentinel, or equivalent tooling.
  • Integrate with SCA/SBOM tools such as Snyk for dependency scanning.
  • Prioritise vulnerabilities based on CVSS score, exploitability, and business impact.
  • Maintain a live vulnerability register and risk dashboard.

Skills

Vulnerability Management
Azure administration
Security engineering
Python scripting

Tools

Datadog
Microsoft Sentinel
Terraform
Snyk

Job description

We are seeking an experienced Vulnerability Management Engineer to own vulnerability discovery, prioritisation, and remediation tracking across Azure and GCP environments during a critical integration programme. This role requires strong Azure expertise, with GCP experience desirable.

You will work closely with engineering teams to identify, prioritise, and remediate security vulnerabilities while leveraging Infrastructure-as-Code and automation to improve security outcomes.

Responsibilities
Vulnerability Discovery & Triage
  • Scan Azure and GCP infrastructure for known vulnerabilities using Datadog, Sentinel, or equivalent tooling.
  • Integrate with SCA/SBOM tools such as Snyk for dependency scanning.
  • Prioritise vulnerabilities based on CVSS score, exploitability, and business impact.
  • Maintain a live vulnerability register and risk dashboard.
Remediation Governance
  • Maintain and execute emergency patching runbooks.
  • Coordinate patch deployment across engineering teams.
  • Track remediation SLAs and elevate blockers where necessary.
  • Validate remediation activities through re-scanning and verification.
Automation & Infrastructure-as-Code
  • Use Terraform to automate vulnerability remediation workflows.
  • Build CI/CD pipelines for patch verification and evidence collection.
  • Automate scan scheduling and reporting.
  • Develop reusable runbooks for common remediation activities.
Integration Support
  • Assess Azure and GCP security posture during a major cloud integration programme.
  • Identify integration-related vulnerabilities and emerging attack surfaces.
  • Coordinate with infrastructure teams to ensure secure system migrations.
  • Support Snowflake security assessments, including access controls, encryption, and auditing.
  • Support AI-assisted security analysis and automation initiatives.
  • Evaluate threat intelligence and emerging vulnerabilities.
  • Recommend security hardening opportunities based on industry best practice.
  • Produce vulnerability intelligence and reporting to support detection engineering teams.
Required Experience & SkillsVulnerability Management & Security
  • Strong experience in Vulnerability Management and/or Application Security Engineering.
  • Deep hands‑on Azure administration experience, including subscriptions, resource groups, IAM, and networking.
  • Experience with vulnerability scanning and management platforms such as Datadog and Microsoft Sentinel.
Technical Engineering
  • Strong Terraform and Infrastructure-as-Code experience.
  • Python and/or PowerShell Scripting for automation and reporting.
  • SQL skills for reporting and vulnerability analysis.
  • Good understanding of CVSS scoring and risk prioritisation methodologies.
  • Azure Security Centre, Azure Policy, and Entra ID experience.
  • Understanding of GCP security concepts desirable.
  • Knowledge of Snowflake security fundamentals.
  • Experience with container security and vulnerability scanning.
Security & Compliance
  • Knowledge of DORA, FCA, and SOC2 requirements.
  • Understanding of patch management and change control processes.
  • Experience with SBOM and Software Composition Analysis (SCA) tooling.
  • Comfortable working in a fast‑paced, regulated environment.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Azure Vulnerability Engineer: Cloud Security & Automation
Azure Vulnerability Engineer: Cloud Security & Automation

McCabe & Barton • Greater London

On-site
GBP 70,000 - 110,000
Vulnerability Management Engineer
Vulnerability Management Engineer

Opus Recruitment Solutions • United Kingdom

Remote
GBP 50,000
Travel and food expenses fully reimbursed
Senior Security Engineer
Senior Security Engineer

Sanderson • Greater London

On-site
GBP 70,000 - 90,000
Senior Security Engineer - Contract
Senior Security Engineer - Contract

United States Digital Space LLC • Greater London

On-site
GBP 70,000 - 110,000
Security Detection Engineer
Security Detection Engineer

McCabe & Barton • Greater London

On-site
GBP 70,000 - 110,000
Information Security Project Engineer
Information Security Project Engineer

Academia the Technology Group • Hemel Hempstead

On-site
GBP 50,000 - 75,000
Information Security Project Engineer
Information Security Project Engineer

Academia the Technology Group • Greater London

On-site
GBP 60,000 - 90,000
Information Security Project Engineer
Information Security Project Engineer

Academia Group • Greater London

On-site
GBP 65,000 - 90,000
Travel opportunities
AWS Security Engineer Contract
AWS Security Engineer Contract

With Intelligence • Greater London

Remote
GBP 70,000 - 110,000
Cyber Security Analyst-VM
Cyber Security Analyst-VM

Wipro • West of England

On-site
GBP 60,000 - 90,000