Cyber Security Vulnerability Specialist

1 month ago


Glasgow, Glasgow City, United Kingdom Ashurst Full time

About Ashurst

Department/Role Overview

The Cyber Security Vulnerability Specialist will work closely with the Global Cyber Security Operations team to manage and execute tasks related to vulnerability oversight. This includes monitoring, reporting, and providing expert guidance to assist various teams in adhering to global vulnerability management and essential security protocols. This role has a broad impact and is integral to the organization's security posture.

Key Responsibilities

Primary Liaison: Serve as the main point of contact for threat and vulnerability management initiatives, coordinating communication and responses with global IT and security teams. Ensure adherence to international security policies and standards. Vulnerability Management Tool Operations: Oversee the management and functionality of the organization's vulnerability management system. Conduct routine scans to detect vulnerabilities across IT assets and ensure the tool is updated with the latest definitions and patches. Technical Guidance: Support various teams in comprehending and addressing identified vulnerabilities. Translate technical details into business impact statements for non-technical stakeholders. Aid in security assessments, audits, and compliance evaluations by supplying vulnerability data. Management of Vulnerabilities: Prepare and present regular updates on the vulnerability landscape. Inform stakeholders about critical vulnerabilities, their potential impacts, and recommended remediation actions. Stay informed on the latest threat intelligence and trends to provide relevant insights. Performance Tracking: Monitor and report on key performance indicators (KPIs), key risk indicators (KRIs), and service level agreements (SLAs) associated with internal policies and mandatory security requirements. Analyze metrics to evaluate the effectiveness of the vulnerability management program and implement improvements as necessary. Patch Management Meetings: Organize and lead regular meetings to prioritize and address vulnerability patches. Collaborate with IT and business units to ensure timely remediation efforts. Maintain a record of patching activities and outcomes. Promoting Remediation Culture: Advocate for a proactive approach to vulnerability remediation across the organization. Develop and disseminate best practices for vulnerability management and remediation. Conduct training sessions to enhance the overall security posture. Stakeholder Engagement: Establish and maintain effective working relationships with key stakeholders, including IT, security, and business units. Foster a collaborative environment to tackle security challenges. Act as a trusted advisor on vulnerability management matters. Quality Assurance: Implement quality control measures to ensure accurate and reliable vulnerability scanning results. Review and refine scanning methodologies to minimize false positives and negatives. Enhance reporting processes to deliver clear and actionable information. Risk Assessment: Evaluate and quantify the risk associated with identified vulnerabilities. Prioritize remediation efforts based on risk levels and potential impact. Utilize risk assessment frameworks to guide decision-making processes. Routine Management Activities: Conduct regular activities related to vulnerability management. Ensure routine checks and maintenance tasks are performed as scheduled. Provide regular updates and reports to management on the status of vulnerability management efforts. Broader Engagement: The role encompasses more than just vulnerability management. Participation in broader business-as-usual (BAU) tasks is expected, promoting a culture of cross-skilling and adaptability. There may also be occasions where involvement as a project resource is required. Risk and Process Management: Adhere to security, change, and operational processes. Identify potential risks and dependencies, taking proactive measures to mitigate them. Service Quality: Deliver high-quality services consistently, meeting stakeholder expectations. Change Implementation: Ensure that changes to systems are executed smoothly and do not adversely affect security, services, or users. Continuous Improvement: Foster a culture of continuous improvement by identifying opportunities to streamline workflows and enhance service delivery. Agile Methodologies: Possess a solid understanding of Agile methodologies and effectively prioritize and manage tasks. Team Collaboration: Facilitate open communication within and across broader business teams to encourage collaboration and resolve issues efficiently.

Essential Skills and Experience

We are seeking a highly motivated individual with the following qualifications:

Relevant experience in Cyber Security and/or IT. Proficiency in metric reporting and KPI/SLA management. Experience in managing escalations to satisfactory resolutions. Proven track record in delivering BAU initiatives and small internal projects using Agile methodologies. Understanding of risk and risk appetite in relation to security and vulnerability. Excellent verbal and written communication skills, with a history of establishing and maintaining effective relationships with stakeholders. Strong organizational skills and the ability to thrive in a fast-paced environment. Demonstrated initiative and problem-solving capabilities. Ability to remain calm under pressure, with the confidence to escalate issues or flag risks as they arise. Experience working in a global environment and across multiple time zones. Familiarity with tools such as Jira, Azure DevOps, ITSM tools like Cherwell and ServiceNow, and the MS Office suite.

Desired Skills and Experience

Relevant Cyber Security qualifications such as CompTIA Security+ and experience with vulnerability management tools like Rapid7, Qualys, Nessus, extending to SIEM, Endpoint Detection & Response, Managed Services, Data Loss Prevention, etc.

Background Checks

To comply with regulatory and client requirements, Ashurst will conduct appropriate vetting of staff. Upon accepting a job offer, Ashurst, in collaboration with a specialist provider, will carry out professional verification and background checks. These checks are performed only with consent and in accordance with legal and regulatory obligations.

#LI-HYBRID



  • Glasgow, Glasgow City, United Kingdom Ashurst Full time

    About Ashurst Department/Role Overview The Cyber Security Vulnerability Analyst plays a crucial role in collaborating with the Global Cyber Security Operations team to manage and address vulnerability management requirements. This position involves monitoring, reporting, and offering guidance to various teams to ensure compliance with global...


  • Glasgow, Glasgow City, United Kingdom Head Resourcing Full time

    Job Title: Cyber Security AnalystJob SummaryWe are seeking a highly skilled Cyber Security Analyst to join our Security Operations department. As a Cyber Security Analyst, you will be responsible for operating and managing our clients' Vulnerability Management, Pen Testing, and SDLC security controls.Key ResponsibilitiesManage and operate Vulnerability...


  • Glasgow, Glasgow City, United Kingdom Head Resourcing Full time

    Job Title: Cyber Security AnalystJob SummaryWe are seeking a highly skilled Cyber Security Analyst to join our Security Operations department. As a Cyber Security Analyst, you will be responsible for operating and managing our clients' Vulnerability Management, Pen Testing, and SDLC security controls.Key ResponsibilitiesManage and operate Vulnerability...


  • Glasgow, Glasgow City, United Kingdom Dionach Full time

    {"title": "Cyber Security Role at Dionach", "description": "Dionach is a leading information security company specializing in penetration testing and information assurance services. We are seeking a skilled Cyber Security Specialist to join our team.The ideal candidate will have experience in cyber security assessment, vulnerability assessments, or...


  • Glasgow, Glasgow City, United Kingdom Dionach Full time

    {"title": "Cyber Security Role at Dionach", "description": "Dionach is a leading information security company specializing in penetration testing and information assurance services. We are seeking a skilled Cyber Security Specialist to join our team.The ideal candidate will have experience in cyber security assessment, vulnerability assessments, or...


  • Glasgow, Glasgow City, United Kingdom Head Resourcing Full time

    Vulnerability Management SpecialistJob Summary:Head Resourcing is seeking a skilled Vulnerability Management Specialist to join our client's team. As a key member of the Cyber Security team, you will be responsible for developing, maintaining, and delivering Cyber Security controls.Key Responsibilities:Operate and manage Vulnerability Management, Pen...


  • Glasgow, Glasgow City, United Kingdom Head Resourcing Full time

    Vulnerability Management SpecialistJob Summary:Head Resourcing is seeking a skilled Vulnerability Management Specialist to join our client's team. As a key member of the Cyber Security team, you will be responsible for developing, maintaining, and delivering Cyber Security controls.Key Responsibilities:Operate and manage Vulnerability Management, Pen...


  • Glasgow, Glasgow City, United Kingdom Hamilton Barnes Associates Limited Full time

    Job Summary:Hamilton Barnes Associates Limited is seeking a highly skilled Cyber Security Specialist to join our team. As an Information Security Analyst, you will play a critical role in safeguarding our network and applications from potential threats and vulnerabilities.About the Role:We are looking for a skilled professional who is passionate about cyber...


  • Glasgow, Glasgow City, United Kingdom Outsource UK Limited Full time

    Job Title: Cyber Security Assurance SpecialistOutsource UK Limited is partnering with BAE Systems to recruit for a Cyber Security Assurance Specialist in Glasgow.Job Summary:We are seeking a highly skilled Cyber Security Assurance Specialist to join our team. The successful candidate will be responsible for ensuring the security and integrity of BAE Systems'...


  • Glasgow, Glasgow City, United Kingdom Outsource UK Limited Full time

    Job Title: Cyber Security Assurance SpecialistOutsource UK Limited is partnering with BAE Systems to recruit for a Cyber Security Assurance Specialist in Glasgow.Job Summary:We are seeking a highly skilled Cyber Security Assurance Specialist to join our team. The successful candidate will be responsible for ensuring the security and integrity of BAE Systems'...


  • Glasgow, Glasgow City, United Kingdom SitePoint Pty Full time

    Job Summary: We are seeking a highly skilled Cyber Security Specialist to lead our Security Operations team at SitePoint Pty. As a key member of our Technology and Information Security team, you will be responsible for implementing, developing, and executing security strategies to protect our users, infrastructure, and data from various threats.Key...


  • Glasgow, Glasgow City, United Kingdom SitePoint Pty Full time

    Job Summary: We are seeking a highly skilled Cyber Security Specialist to lead our Security Operations team at SitePoint Pty. As a key member of our Technology and Information Security team, you will be responsible for implementing, developing, and executing security strategies to protect our users, infrastructure, and data from various threats.Key...

  • Cyber Security Lead

    2 days ago


    Glasgow, Glasgow City, United Kingdom GCS Full time

    About the RoleGCS is seeking a highly skilled Cyber Technical Lead to oversee all technical elements within the Cyber Assurance workstream. As a key member of our team, you will be responsible for managing the technical execution, vulnerability management, and implementation of mitigation controls, aligning them with the overall Cyber Assurance Strategy.Key...

  • Cyber Security Lead

    2 days ago


    Glasgow, Glasgow City, United Kingdom GCS Full time

    About the RoleGCS is seeking a highly skilled Cyber Technical Lead to oversee all technical elements within the Cyber Assurance workstream. As a key member of our team, you will be responsible for managing the technical execution, vulnerability management, and implementation of mitigation controls, aligning them with the overall Cyber Assurance Strategy.Key...


  • Glasgow, Glasgow City, United Kingdom GCS Full time

    Cyber Technical LeadYou'll oversee the technical execution, vulnerability management, and implementation of mitigation controls, aligning them with the overall Cyber Assurance Strategy.Lead the technical aspects of large-scale projects, ensuring the successful delivery of security measures and vulnerability management.Provide expert guidance on security...


  • Glasgow, Glasgow City, United Kingdom GCS Full time

    Cyber Technical LeadYou'll oversee the technical execution, vulnerability management, and implementation of mitigation controls, aligning them with the overall Cyber Assurance Strategy.Lead the technical aspects of large-scale projects, ensuring the successful delivery of security measures and vulnerability management.Provide expert guidance on security...

  • Cyber Security Lead

    18 hours ago


    Glasgow, Glasgow City, United Kingdom GCS Full time

    Cyber Technical LeadYou will be responsible for managing the technical execution, vulnerability management, and implementation of mitigation controls, aligning them with the overall Cyber Assurance Strategy. Additionally, you will manage CAPEX/OPEX budget responsibilities related to project outcomes.Key Responsibilities:Lead the technical aspects of...

  • Cyber Security Lead

    21 hours ago


    Glasgow, Glasgow City, United Kingdom GCS Full time

    Cyber Technical LeadYou will be responsible for managing the technical execution, vulnerability management, and implementation of mitigation controls, aligning them with the overall Cyber Assurance Strategy. Additionally, you will manage CAPEX/OPEX budget responsibilities related to project outcomes.Key Responsibilities:Lead the technical aspects of...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time £60,000

    Job SummaryWe are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key ResponsibilitiesConduct thorough research and documentation of vulnerabilities and risks to IT-related...


  • Glasgow, Glasgow City, United Kingdom Locke and McCloud Full time

    Job Summary:We are seeking a highly skilled Cyber Security Analyst to join our global cyber security team at Locke & McCloud. As a key member of our team, you will play a pivotal role in ensuring the IT security and integrity of our systems worldwide.Key Responsibilities:Conduct thorough research and documentation of vulnerabilities and risks to IT-related...