Job Search and Career Advice Platform
  • Jobs
  • Headhunters
  • Free resume review
  • About Us
EN
4,856

Cyber Security jobs in United Kingdom

Head of Cyber Threat Exposure and Attack Surface Management

Barclays UK

Knutsford
On-site
GBP 80,000 - 100,000
27 days ago
I want to receive the latest job alerts for “Cyber Security” jobs

Cloud Engineer

BAE Systems

Leeds
On-site
GBP 60,000 - 80,000
29 days ago

Digital Health Security Apprenticeship

Roche

Burgess Hill
On-site
GBP 25,000 - 30,000
25 days ago

NSL - Project Manager

BAE Systems

Greater London
Hybrid
GBP 50,000 - 70,000
29 days ago

Network Security Professional

BT Security

Sheffield
On-site
GBP 40,000 - 70,000
20 days ago
discover more jobs illustrationDiscover more opportunities than anywhere else. Find more jobs now

Managing Consultant - Incident Response Management

NCC Group

Cheltenham
Hybrid
GBP 60,000 - 80,000
18 days ago

Managing Consultant - Incident Response Management

NCC Group

Greater London
Hybrid
GBP 60,000 - 80,000
18 days ago

Managing Consultant - Incident Response Management

NCC Group

Manchester
Hybrid
GBP 55,000 - 75,000
18 days ago
HeadhuntersConnect with headhunters to apply for similar jobs

Head of Observability and Analysis

HSBC Global Services Limited

Birmingham
On-site
GBP 150,000 - 200,000
19 days ago

Operational Technology Consultant

PA Consulting

Manchester
Hybrid
GBP 50,000 - 70,000
19 days ago

Identity & Access Manager

A&O Shearman

Northern Ireland
On-site
GBP 65,000 - 85,000
22 days ago

Digital Forensics Quality Manager - Hybrid Birmigham

Resillion

Birmingham
Hybrid
GBP 45,000 - 60,000
22 days ago

Head of Observability and Analysis

HSBC

Birmingham
On-site
GBP 80,000 - 120,000
23 days ago

Detection Engineer

PowerToFly

Glasgow
On-site
GBP 50,000 - 70,000
20 days ago

Senior 3rd Line IT Engineer

MFK Recruitment

City Of London
On-site
GBP 45,000 - 65,000
28 days ago

ETM Sales Specialist

Qualys

Reading
On-site
GBP 50,000 - 70,000
16 days ago

Senior Cloud Security Engineer — Azure & M365

Baringa

Greater London
Hybrid
GBP 70,000 - 90,000
17 days ago

Head of Group IT Solutions & Data Platforms

Greenstar

England
Hybrid
GBP 90,000 - 120,000
17 days ago

Head of Group IT Solutions & Data Platforms

Beauparc

Manchester
Hybrid
GBP 80,000 - 100,000
18 days ago

Remote Security Architect (SC) - Cloud & Risk Strategy

Sanderson Government & Defence

United Kingdom
Remote
GBP 80,000 - 100,000
18 days ago

Junior Cyber Defense Analyst — Incident Response & Triage

Nationwide

Swindon
Hybrid
GBP 40,000 - 60,000
18 days ago

SOC Analyst – Financial Cyber Defense (London)

Berenberg

Greater London
On-site
GBP 60,000 - 80,000
20 days ago

Penetration Testing EMEA Customer Service Representative - Assistant Manager

Deloitte LLP

United Kingdom
Hybrid
GBP 50,000 - 70,000
20 days ago

Project Manager

De Stroopwafel

Gloucester
On-site
GBP 60,000 - 80,000
21 days ago

Investigator - Cyber Incident Response

WeAreTechWomen

Greater London
Hybrid
GBP 65,000 - 85,000
22 days ago

Top job titles:

Hospitality jobsBarista jobsTechnical jobsJoiner jobsConstruction Project Manager jobsDance jobsVideographer jobsMachine Learning jobsPmo Analyst jobsAnthropology jobs

Top companies:

Jobs at Marks And SpencerJobs at MftJobs at AppleJobs at MicrosoftJobs at Burger KingJobs at Pizza HutJobs at SalesforceJobs at BmwJobs at WwfJobs at Ncc

Top cities:

Jobs in LeedsJobs in BristolJobs in DoncasterJobs in StockportJobs in ChelmsfordJobs in WinchesterJobs in WolverhamptonJobs in BournemouthJobs in SunderlandJobs in Gateshead

Similar jobs:

Security jobsNetwork Security jobsSecurity Guard jobsSecurity Officer jobsCyber Security Analyst jobsInformation Security jobsIt Security jobsSecurity Consultant jobsCyber jobsHead Of Security jobs
Head of Cyber Threat Exposure and Attack Surface Management
Barclays UK
Knutsford
On-site
GBP 80,000 - 100,000
Full time
27 days ago

Job summary

A leading financial institution in the UK is seeking a Continuous Threat Exposure Management (CTEM) Lead to drive its enterprise-wide CTEM strategy. The role involves identifying, prioritizing, and mitigating cyber threats across various environments. The ideal candidate will have experience in cybersecurity, strong leadership skills, and familiarity with technologies like CSPM, SSPM, and BAS. This position is crucial to enhance security measures and protect the organization's assets.

Qualifications

  • Experience in cybersecurity with direct exposure to vulnerability management, red teaming, or threat exposure reduction.
  • Track record leading programs integrating CSPM, SSPM, ASM, BAS.
  • Strong understanding of attack paths and continuous validation.

Responsibilities

  • Own and drive the global CTEM strategy aligned with security principles.
  • Lead a high-performing CTEM team fostering collaboration and technical excellence.
  • Integrate and oversee key exposure management technologies.
  • Correlate assets and configuration to identify exploitable attack paths.
  • Collaborate with security teams for remediation of exposures.

Skills

Cybersecurity expertise
Vulnerability management
Red teaming
Threat exposure reduction

Education

Advanced degree or certifications (CISSP, OSCP)

Tools

Cloud Security Posture Management (CSPM)
SaaS Security Posture Management (SSPM)
Breach & Attack Simulation (BAS)
Job description

Lead the enterprise-wide Continuous Threat Exposure Management (CTEM) strategy, ensuring that the firm continuously identifies, prioritizes, and mitigates exploitable attack paths across on-prem, cloud, and hybrid environments. The CTEM Lead partners closely with Application Security, Vulnerability Management, Red Team, and Security Operations to deliver a unified mission -- transforming exposure insights into measurable risk reduction and proactive defense.

Accountabilities
  • Own and drive the global CTEM strategy, establishing a continuous, threat-driven exposure management lifecycle aligned with NIST, MITRE, and CISA Secure-by-Design principles.
  • Lead and develop a high-performing CTEM team, fostering collaboration, technical excellence, and an outcome-driven culture.
  • Integrate and oversee key exposure management technologies, including Cloud Security Posture Management (CSPM), SaaS Security Posture Management (SSPM), Attack Surface Management (ASM), Breach & Attack Simulation (BAS), and other exposure correlation platforms.
  • Correlate assets, identity, vulnerability, and configuration to identify high-impact, exploitable attack paths and inform prioritized remediation strategies.
  • Collaborate with Application Security, Vulnerability Management, Red Team, and Security Operations to synchronize discovery, validation, and remediation of exposures across the enterprise.
  • Align CTEM outputs with real-world adversary behaviors, leveraging Red Team and Threat Intelligence input to validate attack paths and focus on exploitable conditions.
  • Drive automation and AI-enabled analytics to continuously map, assess, and measure reductions in the organization’s attack surface.
  • Translate technical findings into business risk language, enabling senior leadership and risk committees to make data‑driven investment decisions.
  • Define and lead CTEM governance and operating models, ensuring exposure assessments, validation, and remediation tracking are embedded in operational processes.
  • Establish clear KRIs and maturity metrics that demonstrate continuous improvement in visibility, validation, and response effectiveness.
  • Partner with architecture and engineering teams to embed proactive exposure management practices earlier in design and delivery pipelines.
  • Represent the organization externally, contributing to sector‑wide initiatives (FS‑ISAC, MITRE Engenuity, etc.) to advance exposure management practices across financial services.
Vulnerability Management Accountabilities
  • Allocation of the correct risk rating and remediation prioritisation to a vulnerability based on industry standards for assessment, available threat intelligence concerning exploitation, the reachability of the host (or asset) and the value of the service(s) running on the impacted host.
  • Development of vulnerability management operating model, policies and procedures to ensure consistency in vulnerability identification, remediation and reporting. Element owner of the Vulnerability Management Standard including Issues Management and Regulatory alignment.
  • Communication of vulnerabilities to relevant parties including senior stakeholders, vendors, external security partners and affected business units using reports and dashboards and provide recommendations for improvement in vulnerability management practices.
  • Collaboration with Threat intelligence and Cyber Operations teams to assess and contextualise exposure to latest threat trends and exploits and set appropriate remediation timescales.
  • Definition of requirements and acceptance criteria for the implementation and maintenance of automation tools to streamline vulnerability management processes within operating systems and applications.
  • Reporting of remediation status of Security Assurance Specialist team findings against Key Risk Indicators.
Essential Skills / Basic Qualifications
  • Experience in cybersecurity with direct exposure to vulnerability management, red teaming, or threat exposure reduction.
  • Proven track record leading programs integrating CSPM, SSPM, ASM, BAS, or exposure correlation technologies.
  • Strong understanding of attack paths, adversary emulation, and continuous validation concepts.
Desirable skills/Preferred Qualifications:
  • Experience in financial services or other regulated sectors.
  • Familiarity with MITRE ATT&CK/CTID, CISA Secure-by-Design, NIST CSF 2.0/CRI Profile, and DORA/FFIEC exposure frameworks.
  • Experience with cloud environments (AWS, Azure, GCP) and hybrid infrastructure exposure management.
  • Understanding of vulnerability exploitability scoring (EPSS, CVSSv4) and exposure correlation methods.
  • Advanced degree or certifications such as CISSP, OSCP, or GCP/Azure security specialist.
  • Demonstrated ability to build data-driven dashboards for exposure visibility and remediation governance.
Purpose of the role

To keep our customers, clients, and colleagues safe by identifying cyber-vulnerabilities across the Bank, using a risk-based approach to prioritise them, and to drive effective remediation activity.

  • 1
  • ...
  • 79
  • 80
  • 81
  • ...
  • 195

* The salary benchmark is based on the target salaries of market leaders in their relevant sectors. It is intended to serve as a guide to help Premium Members assess open positions and to help in salary negotiations. The salary benchmark is not provided directly by the company, which could be significantly higher or lower.

Job Search and Career Advice Platform

Empoweringjob seekers

Tools
  • Jobs
  • Resume review
  • Headhunters
  • Browse jobs
Company
  • About us
  • Careers at JobLeads
  • Site notice
  • Press
  • Reviews
Support
  • Help
  • Partner integration
  • ATS Partners
Social
  • JobLeads Blog
  • YouTube
  • LinkedIn
  • Instagram
  • Facebook
  • Privacy Policy
  • Terms of Use

© JobLeads 2007 - 2026 | All rights reserved