Contract OUTSIDE IR35

1 month ago


England, United Kingdom Vallum Associates Full time

We are looking for an experienced Attack Surface Management (ASM) Consultant to lead efforts in identifying, monitoring, and reducing the organization's digital attack surface. In this role, you will assess the exposure of assets, evaluate potential vulnerabilities, and work with cross-functional teams to implement risk mitigation strategies. You will leverage ASM tools, threat intelligence, and manual assessments to provide a comprehensive view of the organization's attack surface, ensuring ongoing protection against emerging threats.

This position requires a strong understanding of cybersecurity principles, extensive experience with ASM tools, and the ability to assess and communicate security risks effectively.

Key Responsibilities

  • Attack Surface Analysis and Assessment
  • Conduct regular assessments of the organization’s attack surface, including network, cloud, and application assets.
  • Utilize ASM tools (e.g., RiskIQ, Expanse, CyCognito) and threat intelligence to identify internet-facing assets and assess their exposure to potential threats.
  • Perform continuous asset discovery to identify shadow IT, misconfigured services, and third-party risks.
  • Map and document all exposed assets, ensuring an accurate inventory of the digital footprint across the organization.
  • Risk Evaluation and Mitigation
  • Evaluate the security posture of identified assets and prioritize risks based on potential impact and likelihood of exploitation.
  • Work closely with IT, DevOps, and Security Operations teams to address high-risk exposures through configuration changes, access controls, or network segmentation.
  • Provide recommendations for securing exposed assets, reducing the attack surface, and mitigating identified vulnerabilities.
  • Ensure asset owners are aware of ASM findings and provide actionable guidance for risk mitigation.
  • Monitoring and Threat Intelligence Integration
  • Continuously monitor the attack surface for changes and newly discovered assets.
  • Integrate threat intelligence to identify and assess the relevance of emerging threats to the organization’s digital assets.
  • Stay current on new attack techniques, tools, and threat actor activities that could impact the organization’s attack surface.
  • Establish alerting and response protocols for identified high-risk exposures.
  • Reporting and Communication
  • Develop and deliver clear, actionable reports on attack surface findings, risk assessments, and remediation progress.
  • Communicate risks and recommendations effectively to technical and non-technical stakeholders, including executive leadership.
  • Create metrics and dashboards to provide visibility into the organization’s attack surface and ASM program effectiveness.
  • Security Program Development and Continuous Improvement
  • Assist in the development and enhancement of the Attack Surface Management program, including setting standards for asset discovery and risk management.
  • Develop processes and workflows to automate attack surface discovery, monitoring, and assessment.
  • Provide training and awareness sessions to teams on reducing the attack surface and mitigating risks.
  • Identify opportunities to enhance security policies and procedures based on ASM findings and emerging best practices.

Required Qualifications

  • Education : Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field. Equivalent experience may be considered.
  • Experience :
  • Minimum of [3-5] years of experience in cybersecurity, with a focus on Attack Surface Management, Threat Intelligence, Vulnerability Management, or related fields.
  • Hands-on experience with ASM tools (e.g., RiskIQ, Expanse, CyCognito) and asset discovery methodologies.
  • Familiarity with vulnerability management processes and tools, along with an understanding of network and cloud security principles.
  • Experience working in large-scale enterprise environments, including cloud (AWS, Azure, GCP) and hybrid infrastructures.
  • Certifications (preferred): CISSP, CISM, OSCP, CEH, CompTIA CySA+, or relevant security certifications.


  • SOC Lead

    7 months ago


    England, United Kingdom La Fosse Associates Full time

    **Location**: - England - **Disciplines**: - Change and Transformation Information Security - **Job types**: - Contract - **Salary**: €700 - €800 per day **Functions**: - Cyber Security Project Manager Project Manager Security - **Seniority**: - Senior - **Technologies**: - Angular - **Job reference**: BBBH96624_1699380822 Security Operations...

  • ILM Consultant

    2 weeks ago


    England, United Kingdom iO Associates - UKEU Full time

    ILM consultant (SAP S/4HANA) - Outside IR35 - Fully remote Note...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearance We are seeking an ILM & Archiving Consultant to my clients team. You will participate in architecting implementations of enterprise-level solutions of SAP Archiving. You will assist...

  • ILM Consultant

    2 weeks ago


    England, United Kingdom iO Associates - UKEU Full time

    ILM consultant (SAP S/4HANA) - Outside IR35 - Fully remoteNote...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearanceWe are seeking an ILM & Archiving Consultant to my clients team.You will participate in architecting implementations of enterprise-level solutions of SAP Archiving. You will assist in...

  • ILM Consultant

    1 week ago


    England, United Kingdom iO Associates - UKEU Full time

    ILM consultant (SAP S/4HANA) - Outside IR35 - Fully remote Note...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearance We are seeking an ILM & Archiving Consultant to my clients team. You will participate in architecting implementations of enterprise-level solutions of SAP Archiving. You will assist...

  • ILM Consultant

    2 weeks ago


    England, United Kingdom iO Associates - UKEU Full time

    ILM consultant (SAP S/4HANA) - Outside IR35 - Fully remoteNote...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearanceWe are seeking an ILM & Archiving Consultant to my clients team.You will participate in architecting implementations of enterprise-level solutions of SAP Archiving. You will assist in...

  • ILM Consultant

    2 weeks ago


    England, United Kingdom iO Associates - UKEU Full time

    ILM consultant (SAP S/4HANA) - Outside IR35 - Fully remoteNote...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearanceWe are seeking an ILM & Archiving Consultant to my clients team.You will participate in architecting implementations of enterprise-level solutions of SAP Archiving. You will assist in...


  • England, United Kingdom iO Associates - UKEU Full time

    SAP ILM consultant needed - Outside IR35 - Fully remote Note...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearance We are looking for an experienced SAP ILM Consultant with Decommissioning Experience to join our team. This role is crucial for managing the decommissioning of legacy SAP systems,...


  • England, United Kingdom iO Associates - UKEU Full time

    SAP ILM consultant needed - Outside IR35 - Fully remoteNote...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearanceWe are looking for an experienced SAP ILM Consultant with Decommissioning Experience to join our team. This role is crucial for managing the decommissioning of legacy SAP systems, ensuring...


  • England, United Kingdom iO Associates - UKEU Full time

    SAP ILM consultant needed - Outside IR35 - Fully remoteNote...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearanceWe are looking for an experienced SAP ILM Consultant with Decommissioning Experience to join our team. This role is crucial for managing the decommissioning of legacy SAP systems, ensuring...


  • England, United Kingdom iO Associates - UKEU Full time

    SAP ILM consultant needed - Outside IR35 - Fully remoteNote...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearanceWe are looking for an experienced SAP ILM Consultant with Decommissioning Experience to join our team. This role is crucial for managing the decommissioning of legacy SAP systems, ensuring...


  • England, United Kingdom iO Associates - UKEU Full time

    SAP ILM consultant needed - Outside IR35 - Fully remote Note...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearance We are looking for an experienced SAP ILM Consultant with Decommissioning Experience to join our team. This role is crucial for managing the decommissioning of legacy SAP systems,...


  • England, United Kingdom iO Associates - UKEU Full time

    SAP ILM consultant needed - Outside IR35 - Fully remote Note...For this role you NEED to be a British Passport holder, residing in the UK and be eligible for SC clearance We are looking for an experienced SAP ILM Consultant with Decommissioning Experience to join our team. This role is crucial for managing the decommissioning of legacy SAP systems,...

  • Linux Consultant

    1 month ago


    England, United Kingdom iO Associates - UKEU Full time

    We are working closely with a boutique consulting firm in their search for an experienced Java Consultant to take on a challenging project with their end client. This is an initial 6-month contract with potential to be extended beyond. Mostly remote (candidates must currently residing in the U.K. with the right to work to be considered) Day rate: Competitive...

  • Linux Consultant

    1 month ago


    England, United Kingdom iO Associates - UKEU Full time

    We are working closely with a boutique consulting firm in their search for an experienced Java Consultant to take on a challenging project with their end client. This is an initial 6-month contract with potential to be extended beyond. Mostly remote (candidates must currently residing in the U.K. with the right to work to be considered) Day rate: Competitive...

  • Contract OUTSIDE IR35

    1 month ago


    England, United Kingdom Vallum Associates Full time

    We are seeking an experienced Ethical Hacker to identify and help mitigate security vulnerabilities in our IT systems, networks, and applications. In this role, you will use penetration testing techniques to uncover vulnerabilities, simulate real-world cyberattacks, and work closely with our security and development teams to enhance our security posture....

  • Contract OUTSIDE IR35

    1 month ago


    England, United Kingdom Vallum Associates Full time

    We are seeking an experienced Ethical Hacker to identify and help mitigate security vulnerabilities in our IT systems, networks, and applications. In this role, you will use penetration testing techniques to uncover vulnerabilities, simulate real-world cyberattacks, and work closely with our security and development teams to enhance our security posture....

  • Contract OUTSIDE IR35

    2 months ago


    England, United Kingdom Vallum Associates Full time

    We are seeking an experienced Ethical Hacker to identify and help mitigate security vulnerabilities in our IT systems, networks, and applications. In this role, you will use penetration testing techniques to uncover vulnerabilities, simulate real-world cyberattacks, and work closely with our security and development teams to enhance our security posture....

  • Contract OUTSIDE IR35

    1 month ago


    England, United Kingdom Vallum Associates Full time

    We are seeking an experienced Ethical Hacker to identify and help mitigate security vulnerabilities in our IT systems, networks, and applications. In this role, you will use penetration testing techniques to uncover vulnerabilities, simulate real-world cyberattacks, and work closely with our security and development teams to enhance our security posture....

  • Contract OUTSIDE IR35

    2 months ago


    England, United Kingdom Vallum Associates Full time

    We are seeking an experienced Ethical Hacker to identify and help mitigate security vulnerabilities in our IT systems, networks, and applications. In this role, you will use penetration testing techniques to uncover vulnerabilities, simulate real-world cyberattacks, and work closely with our security and development teams to enhance our security posture....

  • Contract OUTSIDE IR35

    1 month ago


    England, United Kingdom Vallum Associates Full time

    We are seeking an experienced Ethical Hacker to identify and help mitigate security vulnerabilities in our IT systems, networks, and applications. In this role, you will use penetration testing techniques to uncover vulnerabilities, simulate real-world cyberattacks, and work closely with our security and development teams to enhance our security posture....