Vulnerability Manager

Supply Chain Corporation

Nottingham

Hybrid

GBP 55,000 - 67,000

Full time

44 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Hybrid working
Annual bonus
Training and qualifications support
Well-being day
Generous pension
Flexible benefits scheme
Volunteer leave
Discounts

Job summary

NHS Supply Chain is seeking a Vulnerability Manager to lead the Vulnerability Management Service. The role drives identification, assessment, prioritisation, remediation, and reporting of cyber vulnerabilities across the technology estate, with governance across multiple providers.

Based in Nottingham with hybrid work (two days on site). A 6-month fixed term contract with a starting salary of £60,994, and a focus on regulatory compliance and operational resilience.

Qualifications

  • Strong leadership and influencing skills.
  • Excellent supplier and stakeholder management capabilities.
  • Strong analytical and risk assessment skills.
  • Ability to communicate technical cyber risks to non-technical audiences.
  • Excellent reporting and presentation skills.
  • Ability to challenge constructively and drive accountability.

Responsibilities

  • Own and develop the organisation's Vulnerability Management Strategy, Framework, Policies and Standards.
  • Lead the delivery and continuous improvement of vulnerability management capabilities across the organisation.
  • Drive governance processes covering vulnerability identification, assessment, prioritisation, remediation, exception management and reporting.
  • Act as Service Owner for Vulnerability Management within the SIAM model.
  • Coordinate activities across multiple service providers to ensure effective identification and remediation of vulnerabilities.
  • Hold suppliers accountable for delivery against agreed vulnerability remediation targets and contractual obligations

Skills

Leadership
Stakeholder management
Analytical thinking
Communicating cyber risk
Reporting and presentation
Accountability
Organisation and prioritisation

Education

CISSP
CISM
CRISC
GIAC
ITIL Foundation
SIAM Foundation
ISO 27001 Lead Auditor/Lead Implementer
CAF knowledge

Job description

Job Title: Vulnerability Manager

Function: Cyber Security

Location: Hybrid Worker – Expectation is two days per week on site at our Nottingham office

Contract type: 6 Month Fixed Term Contract

Salary: Offered on a starting salary of £ 60,994

Closing Date: Thursday 17 th September

NHS Supply Chain currently has an opportunity for a Vulnerability Manager to join our team during an exciting period of transformation, working to make it easier for the NHS to put patients first.

The NHS Supply Chain Cyber Security Team continues to evolve and expand its capabilities to support organisational resilience and secure service delivery. The team continues to grow, building in-house cyber capabilities, and there will be a number of exciting opportunities as we continue on this journey.

The Vulnerability Manager is responsible for leading and continuously improving NHS Supply Chain’s Vulnerability Management Service, ensuring cyber security vulnerabilities are identified, assessed, prioritised, remediated and reported in a timely and risk-based manner across the technology estate.

Working within a Service Integration and Management (SIAM) operating model, the role will provide oversight and governance across multiple managed service providers, including the Cyber Security Service Provider (CSSP), infrastructure, application and modern workplace providers.

The postholder will act as the authority for vulnerability management, ensuring that cyber risks are understood, communicated and addressed in a manner that protects critical services, while supporting regulatory compliance and operational resilience.

Every day you will …
  • Own and develop the organisation's Vulnerability Management Strategy, Framework, Policies and Standards
  • Lead the delivery and continuous improvement of vulnerability management capabilities across the organisation
  • Drive governance processes covering vulnerability identification, assessment, prioritisation, remediation, exception management and reporting.
  • Act as Service Owner for Vulnerability Management within the SIAM model.
  • Coordinate activities across multiple service providers to ensure effective identification and remediation of vulnerabilities.
  • Hold suppliers accountable for delivery against agreed vulnerability remediation targets and contractual obligations
What can we offer you?

We want to reward you for your passion, enthusiasm, and hard work so we offer much more than a competitive salary:

  • Hybrid working opportunities, giving you the flexibility to work collaboratively in the office and remotely.
  • We recognise our employees' hard work and contributions with annual bonus schemes, long service, and colleague recognition awards.
  • We are dedicated to your development, through in-house training, support, and access to external qualifications to maximise your potential.
  • A focus on your well-being offering 1 day of paid well-being leave and free access to the 24/7 Employee Assistance Programme
  • Generous pension scheme (with us contributing 12% when you contribute 6%)
  • Access to our Flexible Benefits Scheme, where you can choose from a variety of benefits such as Life Insurance, Critical Illness Cover, Income Protection, Health Cash Plan, Dental Insurance, and additional pension contributions that suit you.
  • 2 days of paid volunteering leave allowing you to give back to your community.
  • Access to many discounts from the Blue Light Card to NHS Discounts.
NHS Supply Chain, who are we?

Our role is to support the NHS to save lives and improve health. We are a part of the NHS family, and our role is to source, deliver and supply healthcare products, services and food for NHS trusts and healthcare organisations across England and Wales.

We serve every NHS Trust and operate a national network of distribution centres, managing relationships with more than a thousand suppliers and delivering more than 8,000,000 orders each year to more than 17,000 locations.Doing all of this on behalf of the NHS gives NHS staff more time to focus on their main priority of providing excellent patient care.

What skills will help you thrive in this role?
  • Strong leadership and influencing skills.
  • Excellent supplier and stakeholder management capabilities.
  • Strong analytical and risk assessment skills.
  • Ability to communicate technical cyber risks to non-technical audiences.
  • Excellent reporting and presentation skills.
  • Ability to challenge constructively and drive accountability.
  • Strong organisational and prioritisation skills.
  • Desirable qualifications: CISSP, CISM, CRISC, GIAC certification, ITIL Foundation, SIAM Foundation, ISO 27001 Lead Auditor or Lead Implementer, Cyber Assessment Framework (CAF) knowledge
Our Inclusive Commitment

At NHS Supply Chain, we are committed to building an inclusive environment where difference is not only valued, but celebrated, giving everyone the opportunity to thrive in their career. Developing our people is key to our success, so if this role sounds like the right next step in your career but your experience doesn’t match perfectly with the job advert, we encourage you to still apply.

SCCL is a company Registered in England and Wales, with company number 10881715, to act as the management function of the NHS Supply Chain.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Manager
Vulnerability Manager

Supply Chain Coordination Limited • Nottingham

Hybrid
GBP 55,000 - 67,000
Hybrid working opportunities
Annual bonus schemes
Well-being leave
+2
Vulnerability Manager
Vulnerability Manager

Supply Chain Coordination Limited • Brighton

Hybrid
GBP 61,000 - 72,000
Hybrid working
Annual bonus schemes
In-house training & external quals
+5
Vulnerability Management Lead – SIAM & Cyber Security
Vulnerability Management Lead – SIAM & Cyber Security

Supply Chain Corporation • Nottingham

Hybrid
GBP 55,000 - 67,000
Hybrid working
Annual bonus
Training and qualifications support
+5
Vulnerability Management Lead | Cyber Security & SIAM
Vulnerability Management Lead | Cyber Security & SIAM

Supply Chain Coordination Limited • Nottingham

Hybrid
GBP 55,000 - 67,000
Hybrid working opportunities
Annual bonus schemes
Well-being leave
+2
Threat and Vulnerability Management Lead
Threat and Vulnerability Management Lead

Nuffield Health • Greater London

Hybrid
GBP 90,000 - 120,000
Free gym membership
Health assessments
Retail discounts
+1
Threat and Vulnerability Management Lead
Threat and Vulnerability Management Lead

Nuffield Health Brentwood • Greater London

Hybrid
GBP 90,000 - 120,000
Gym membership
Health assessments
Retail discounts
+1
Programme Manager
Programme Manager

Supply Chain Coordination Limited • Nottingham

Hybrid
GBP 66,000 - 78,000
Hybrid working
Bonus schemes
Well-being leave
+4
Vulnerability Management Lead – Hybrid
Vulnerability Management Lead – Hybrid

Supply Chain Coordination Limited • Brighton

Hybrid
GBP 61,000 - 72,000
Hybrid working
Annual bonus schemes
In-house training & external quals
+5
Information Security Vulnerability Management Analyst
Information Security Vulnerability Management Analyst

JCB • Rocester

On-site
GBP 50,000 - 70,000
Company pension
On-site gym
In-house doctor
+6
Vulnerability Management Analyst
Vulnerability Management Analyst

Deerfoot Recruitment Solutions Limited • Lancashire

Hybrid
GBP 40,000 - 50,000