Vulnerability Management Service Lead

Adecco

Preston

Hybrid

GBP 75,000 - 85,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Adecco is looking for a Vulnerability Management Service Lead to own and govern an end-to-end vulnerability management framework within a highly regulated enterprise. You will drive risk reduction, governance, and supplier accountability across a large-scale security operation.

You will work with senior stakeholders to ensure vulnerabilities are identified, prioritized, remediated, and reported effectively, with a focus on continuous improvement and audit readiness.

Qualifications

  • Significant experience in vulnerability management, cyber security governance, GRC, or security operations governance roles.
  • Strong understanding of end-to-end vulnerability management lifecycle.
  • Experience implementing and governing risk-based remediation programmes.
  • Proven ability to work across complex enterprise environments and multiple delivery partners.
  • Strong stakeholder management with ability to influence technical and non-technical audiences.
  • Experience producing executive-level reporting and communicating cyber risk to senior leadership.
  • Knowledge of security frameworks such as NIST CSF, ISO 27001, NCSC guidance, Secure by Design.

Responsibilities

  • Lead the enterprise vulnerability management service and governance framework.
  • Drive remediation activities through internal teams and third-party suppliers.
  • Establish and maintain vulnerability reporting, metrics, KPIs and executive dashboards.
  • Prioritize vulnerabilities using risk-based methodologies (CVSS, EPSS, KEV, business criticality).
  • Manage exception processes, remediation timelines, and security risk governance.
  • Provide assurance and challenge across a multi-supplier service environment.
  • Present vulnerability trends, risk exposure, and remediation performance to senior stakeholders.
  • Ensure audit readiness and evidence management.
  • Identify opportunities for process improvement, automation, and service maturity.

Skills

Vulnerability management
Cyber security governance
GRC
Security operations governance
Risk-based remediation
Executive reporting
Stakeholder management

Tools

Tenable
Qualys
Brinqa

Job description

Vulnerability Management Service Lead

Location: Preston OR Inverness (Hybrid Working)

Salary: £75,000 + Bonus + Benefits

Security Clearance: Eligible for SC Clearance Required (SOLE BRITISH NATIONAL)

Lead Enterprise Vulnerability Management in a Complex, Security-Critical Environment

We're seeking an experienced Vulnerability Management Service Lead to take ownership of a mature vulnerability management capability within a highly regulated enterprise environment.

This is an opportunity to play a critical role in protecting business-critical systems by driving governance, risk reduction, supplier accountability, and continuous improvement across a large-scale security operation. You'll work closely with senior stakeholders, security teams, and delivery partners to ensure vulnerabilities are effectively identified, prioritised, remediated, and reported across the organisation.

If you're passionate about cyber risk management, security governance, and influencing positive security outcomes at scale, we'd love to hear from you.

The Role

As the Vulnerability Management Service Lead, you will be responsible for owning and governing the end-to-end vulnerability management framework, ensuring effective risk management across complex technology estates.

Key responsibilities include:
  • Leading the enterprise vulnerability management service and governance framework
  • Driving vulnerability remediation activities through internal teams and third-party suppliers
  • Establishing and maintaining vulnerability reporting, metrics, KPIs and executive dashboards
  • Prioritising vulnerabilities using risk-based methodologies including CVSS, EPSS, Known Exploited Vulnerabilities (KEV), and business criticality
  • Managing exception processes, remediation timelines, and security risk governance
  • Providing assurance, oversight, and challenge across a multi-supplier service environment
  • Presenting vulnerability trends, risk exposure, and remediation performance to senior stakeholders
  • Ensuring audit readiness, evidence management, and compliance alignment
  • Identifying opportunities for process improvement, automation, and service maturity enhancement
What We're Looking For
Essential Experience
  • Significant experience in Vulnerability Management, Cyber Security Governance, GRC, or Security Operations Governance roles
  • Strong understanding of the end-to-end vulnerability management lifecycle
  • Experience implementing and governing risk-based remediation programmes
  • Proven ability to work across complex enterprise environments and multiple delivery partners
  • Strong stakeholder management skills with the ability to influence technical and non-technical audiences
  • Experience producing executive-level reporting and communicating cyber risk to senior leadership
  • Knowledge of recognised security frameworks and standards such as:
  • NIST Cyber Security Framework
  • ISO 27001
  • NCSC guidance
  • Secure by Design principles
Desirable Experience
  • Hands-on experience with vulnerability management platforms such as:
  • Tenable
  • Qualys
  • Brinqa
  • Experience working within defence, government, public sector, or other highly regulated environments
  • Relevant cyber security certifications
Working Arrangement

This is a hybrid position requiring onsite attendance in either Preston or Inverness approximately two days per week, with flexibility depending on business requirements.

What's on Offer
  • The opportunity to lead a critical cyber security function within a large-scale enterprise environment
  • Exposure to complex and high-profile technology estates
  • Ongoing professional development and training opportunities
  • Access to experienced cyber security professionals across governance, operations, engineering, architecture, and compliance disciplines
  • Flexible and hybrid working arrangements
  • Comprehensive benefits package
  • Long-term career progression within a growing cyber security practice
Security Requirements

Due to the nature of the work, successful applicants will be required to undergo pre-employment screening and must be eligible to obtain Security Check (SC) Clearance. Applicants will typically need to have resided continuously in the UK for the previous five years.

Join a team where you'll have genuine influence over cyber security strategy, risk management, and the protection of critical services

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Management Service Lead
Vulnerability Management Service Lead

Adecco • Lancashire

Hybrid
GBP 68,000 - 83,000
Hybrid working
Career development
Comprehensive benefits package
+2
Vulnerability Management Analyst
Vulnerability Management Analyst

Deerfoot Recruitment Solutions Limited • Lancashire

Hybrid
GBP 40,000 - 50,000
Vulnerability Management Consultant
Vulnerability Management Consultant

Searchability • Inverness

On-site
GBP 88,000 - 115,000
Senior Vulnerability Management specialist
Senior Vulnerability Management specialist

Morson Human Resources Limited • Southampton

Hybrid
GBP 111,000 - 120,000
Cyber Security Vulnerability Lead
Cyber Security Vulnerability Lead

ScottishPower • Glasgow

Hybrid
GBP 53,000 - 65,000
36 days annual leave
Holiday purchase
Share Incentive Plan
+1
Vulnerability Management Lead
Vulnerability Management Lead

RS UK & Ireland • Corby

On-site
GBP 60,000 - 90,000
Vulnerability Management Engineer
Vulnerability Management Engineer

Opus Recruitment Solutions • United Kingdom

Remote
GBP 50,000
Travel and food expenses fully reimbursed
Vulnerability Manager
Vulnerability Manager

Supply Chain Corporation • Nottingham

Hybrid
GBP 55,000 - 67,000
Hybrid working
Annual bonus
Training and qualifications support
+5
Cyber Security Engineer
Cyber Security Engineer

La Fosse • West Yorkshire

Hybrid
GBP 53,000 - 65,000
Vulnerability & Threat Exposure Manager (Contract, Inside IR35)
Vulnerability & Threat Exposure Manager (Contract, Inside IR35)

Lorien • Greater London

Hybrid
GBP 75,000 - 100,000
Hybrid work model
London office access