Security Vulnerability Lead

6 days ago


Cowbridge, United Kingdom DXC Technology Full time

Job Description: Job Title: Security Vulnerability Lead Location: Hybrid London or Newcastle, UK DXC’s Insurance Software and BPS business provides a range of software and services to the global insurance market including life, wealth, health, commercial and speciality, property and casualty, and reinsurance. DXC is also a key partner of the London Market, providing digital transformation and outsourcing services. DXC’s insurance business has 13,000 domain experts serving 2,000 insurance customers operating in over 100 countries worldwide. Role Overview This is a dedicated account-level role responsible for leading vulnerability management across both heritage and digital IT estates within the London Markets account. The successful candidate will be tasked with rebuilding the vulnerability management program from the ground up, ensuring robust coverage, effective remediation coordination, and continuous improvement. Key Responsibilities Strategic Leadership Refresh and redesign the vulnerability management framework for the account. Define success criteria and establish KPIs for vulnerability management effectiveness. Lead continual improvement initiatives and manage the program roadmap. Operational Oversight Oversee vulnerability identification, assessment, and reporting across the estate. Ensure vulnerability scanning tools are properly configured, integrated, and provide adequate coverage. Maintain and publish regular reports on vulnerability status, trends, and aged backlog. Remediation Coordination Collaborate closely with the Remediation Manager to drive timely resolution of vulnerabilities. Address aged vulnerabilities and align remediation efforts with business priorities. Review vulnerabilities accepted as risk and re-evaluate remediation opportunities. Governance and Compliance Develop and maintain vulnerability management policies, standards, and procedures. Support internal and external audits with documentation and evidence. Ensure alignment with regulatory requirements and industry best practices. Stakeholder Engagement Act as the central point of contact for vulnerability-related issues. Educate stakeholders on risks, remediation strategies, and tool usage. Provide executive-level summaries and technical reports to leadership. Key Challenges Establishing a baseline for tool functionality and coverage across legacy and modern platforms. Producing a clear management view of vulnerabilities by component (OS, DB, middleware, etc.). Coordinating across delivery teams and technical owners to ensure accountability and progress. Implementing a vulnerability matrix to track patching schedules, ownership, and compliance. Educational & Professional Requirements Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field. Preferred: Master’s degree or relevant certifications (e.g., CISSP, CISM, CRISC, GIAC). Experience in vulnerability management or related security domains. Proven experience managing teams and driving security improvement programs. Desirable Skills Strong understanding of vulnerability scanning tools (e.g., Qualys, Prisma Cloud, AWS GuardDuty). Familiarity with patch management processes and SLAs. Excellent communication and stakeholder management skills. Analytical mindset with ability to prioritize risks and align with business impact. What we can offer you: Competitive Compensation & Pension Scheme – Rewarding your expertise while securing your future. Comprehensive Benefits Package – Including DXC Select, Perks at Work, and incentive programs for exclusive savings and rewards. Continuous Learning & Development – Access to upskilling opportunities, career growth resources, and industry-leading training. Lifestyle Perks – Enjoy options like the Salary Sacrifice Car Scheme and more. At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive. #J-18808-Ljbffr



  • Cowbridge, United Kingdom DXC Technology Full time

    A global technology firm is seeking a Security Vulnerability Lead to oversee vulnerability management across IT estates. The role involves enhancing the vulnerability management framework, facilitating remediation efforts, and ensuring adherence to governance. The ideal candidate will have a Bachelor's degree in Cybersecurity or related fields, alongside...


  • Cowbridge, United Kingdom DXC Technology Full time

    Security Risk Management Lead Location: Hybrid London or Newcastle, UK DXC’s Insurance Software and BPS business provides a range of software and services to the global insurance market including life, wealth, health, commercial and speciality, property and casualty, and reinsurance. DXC is also a key partner of the London Market, providing digital...


  • Cowbridge, United Kingdom DXC Technology Full time

    A leading technology firm is looking for a Security Risk Management Lead to oversee security risk programs within hybrid configurations. This role involves assessing risk postures, creating action plans, and collaborating with stakeholders to enhance security measures. Candidates should have a Bachelor’s degree in a relevant field and preferable...


  • Cowbridge, United Kingdom DXC Technology Full time

    A multinational IT service provider is seeking a skilled IT Security professional with 5-10 years of experience. This role involves providing tailored security solutions, working with clients, and ensuring compliance with security standards. Candidates should possess strong presentation and proposal writing skills and familiarity with security frameworks....


  • Cowbridge, United Kingdom DXC Technology Full time

    Job Description DXC cultivates a work environment that attracts and retains some of the most skilled talent in today’s workplace. With a strategic focus on our people and our customers, we are committed to doing what’s best for both. That’s why we’re creating a workplace where employees seize change as an opportunity to accelerate their careers and...


  • Cowbridge, United Kingdom DXC Technology Full time

    Job Description At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive....


  • Cowbridge, United Kingdom DXC Technology Full time

    A leading technology services provider is seeking an Information Security Officer to be the key contact for IT operations. This role includes managing security strategy, conducting risk assessments, and ensuring compliance with regulations such as GDPR. Candidates should have a relevant degree and experience in security management, particularly in an...


  • Cowbridge, United Kingdom DXC Technology Full time

    A leading technology services provider is seeking a Cloud Security Consultant located in Cowbridge, UK. The successful candidate will have extensive experience in Azure and familiarity with security technologies such as Microsoft Defender for Cloud and Sentinel. Responsibilities include advising clients on security solutions and maintaining effective...


  • Cowbridge, United Kingdom DXC Technology Full time

    A leading global IT services firm is looking for a Senior Cloud Systems Administrator to manage cloud and on-premises infrastructure. The ideal candidate will have at least 3 years of cloud administration experience and strong expertise in AWS, Azure, and Google Cloud. Responsibilities include leading infrastructure teams and ensuring secure, scalable...


  • Cowbridge, United Kingdom DXC Technology Full time

    A leading technology firm in the UK seeks a Cyber Security Third Party Risk Manager to manage vendor cyber risk assessments and collaborate across teams. Candidates should have extensive experience in cybersecurity management, strong communication skills, and an understanding of risk frameworks like ISO and NIST. This position emphasizes a delivery-focused...