Cyber Threat and Vulnerability Manager

5 days ago


London, Greater London, United Kingdom Department for Business and Trade Full time £62,534 - £82,200 per year

Join a team at the heart of the global economy The Department for International Trade (DIT) and Inspire People are partnering together to bring you an exciting opportunity for a Threat and Vulnerability Manager to protect DIT and the wider UK government from cyber threats in a fast paced and exciting role, responsible for the Vulnerability Management and Threat Hunting of the Security Operations Centre (SOC) Target Operating Model (TOM). £62,534 to £82,200 (including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is dependent on location and technical skills as assessed at interview.

Flexible, hybrid working from London, Salford, Birmingham, Cardiff, Darlington, Edinburgh or Belfast.

About the role

You will be helping to protect DBT and the wider UK government from cyber threats in a fast paced and exciting role. Reporting to the Head of Cyber Security Operations, you will manage and be responsible for the Threat and Vulnerability Management function within the SOC, by providing leadership on identification and improvement opportunities, and ensuring service owners are aware of weaknesses in their security posture and are empowered with the right information to take appropriate actions.

A healthy curiosity will be essential, to actively go out and discover items of potential interest to the team, ensuring that there is collaboration between the architects, SOC engineers and analysts, and risk managers to deliver a documented risk-based response to the present and future of anything that may be found.

Main responsibilities

Your day-to-day role will involve the need to:

  • Working with the Security Leadership team to develop a strategic road map for an effective vulnerability detection, assessment, remediation, and threat intelligence program.
  • Line management of the threat and vulnerability management team.
  • Building sustainable relationships to champion the adoption of vulnerability and threat management, compliance, and penetration testing program across the Department.
  • Manage the relationship with pen testing 3rd parties and the scheduling of tests.
  • Develop, implement, and maintain the organisation's vulnerability management strategy, policies, standards, and procedures.
  • Be accountable for thorough assessments of the department's systems, networks, and applications.
  • Recommend remediation strategies and provide advice on complex configuration changes in support of vulnerability remediation.
  • Drive prioritisation of those vulnerabilities through a risk-based approach, to meet common organisational objectives such as regulatory compliance and audit functions.
  • Development and maintenance of actionable key performance and risk indicators (KPI's & KRI's) that provide a view over the effectiveness of the department's Vulnerability Management & Threat Intelligence program.
  • Continuously improve DBT's TVM program maturity and security posture through driving successful remediation efforts with internal and external teams responsible for infrastructure and applications.

Skills and experience

You should be able to demonstrate essential skills and experience of:

  • Holding a professional information security qualification e.g. CISSP, CISM, MSc. Cyber Security etc
  • Managing a Threat and Vulnerability Management function, with ability to influence, collaborate and build relationships with across stakeholders with differing levels of technical security competence
  • Solid understanding of Vulnerability management, encompassing a comprehensive understanding of vulnerability scanning and threat intelligence tools, risk assessment methodologies, and remediation planning in a multi cloud environment
  • Experience of managing the scoping, execution, and assessment of outcomes from supplier led pen testing
  • Excellent written and verbal communication skills including the ability to relate technical information to a non-technical audience
  • Working independently and as part of a larger team to deliver a risk-based response, demonstrating adaptability with a forward-thinking and collaborative approach

Benefits

If you join DBT, you will get:

  • learning and development tailored to your role
  • a flexible, hybrid working environment with options like condensed hours
  • a culture encouraging inclusion and diversity
  • a Civil Service pension with an average employer contribution of 27%
  • annual leave starting at 25 days rising to 30 days with service
  • three paid volunteering days a year
  • an employee benefits programme including cycle to work

If you are an experienced Vulnerability Manager looking to enhance your career and make a difference across a function that will make a real difference to the UK economy, then apply today or contact Alison Whitehead at Inspire People in complete confidence for further information.



  • London, Greater London, United Kingdom UK Government - Department for Business and Trade Full time £62,534 - £82,200 per year

    DetailsReference number435838Salary£62,534 - £82,200(including allowances) London £66,257 to £82,200, National £62,534 to £78,580. Salary is dependent on location and technical skills as assessed at interview.GBPJob gradeGrade 7Contract typePermanentBusiness areaDBT - CS - Digital, Data and TechnologyType of roleAdministration / Corporate...


  • London, Greater London, United Kingdom Heathrow Airport Full time £100,000 - £150,000 per year

    DescriptionAt Heathrow, the safety and security of our passengers and operations is our top priority. We're looking for a Cyber Security Manager – Threat Management to help lead our threat defence capabilities, protect our digital and operational environments, and contribute to the UK's critical national infrastructure.This is a unique opportunity to play...


  • London, Greater London, United Kingdom Kantar Full time £60,000 - £120,000 per year

    Job DetailWe're the world's leading data, insights, and consulting company; we shape the brands of tomorrow by better understanding people everywhere.About The JobThe Cyber Security Testing and Vulnerability Management team will be responsible for the delivery of vulnerability assessment and management services right across the Kantar business.This role will...


  • London, Greater London, United Kingdom S-RM Full time £40,000 - £90,000 per year

    Who we areS-RM is a global intelligence and cyber security consultancy. Since 2005, we've helped some of the most demanding clients in the world solve some of their toughest information security challenges.We've been able to do this because of our outstanding people. We're committed to developing sharp, curious, driven individuals who want to think...


  • London, Greater London, United Kingdom Kantar Full time £80,000 - £120,000 per year

    Job DetailsWe're the world's leading data, insights, and consulting company; we shape the brands of tomorrow by better understanding people everywhere.About The JobThe Cyber Threat Intelligence team will be responsible for the delivery of CTI assessment services right across the Kantar business.This role will provide cyber security leadership, subject matter...


  • London, Greater London, United Kingdom DTCC Full time £60,000 - £120,000 per year

    DescriptionAre you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have...


  • London, Greater London, United Kingdom Marks and Spencer Full time £80,000 - £120,000 per year

    All the detailsWe're looking for a Threat Intelligence Principal who is passionate about protecting organisational assets against sophisticated cyber threats. As a Threat Intelligence Principal, you will be responsible for spearheading the threat intelligence operation. This strategic role involves leading the development and execution of the threat...


  • London, Greater London, United Kingdom Marks and Spencer Full time £25,000 - £35,000 per year

    All the detailsWe are are actively searching for a skilled Threat Intelligence Associate to join our growing intelligence team. This is a junior role in the Threat Intelligence team, working with experienced analysts and developing a career in Cyber security.The role will focus on triaging alerts, monitoring news feeds, and analysing new and evolving threats...


  • London, Greater London, United Kingdom WPP Full time £80,000 - £120,000 per year

    WPP is the creative transformation company. We use the power of creativity to build better futures for our people, planet, clients, and communities.Working at WPP means being part of a global network of more than 100,000 talented people dedicated to doing extraordinary work for our clients. We operate in over 100 countries, with corporate headquarters in New...


  • London, Greater London, United Kingdom Bridewell Full time £30,000 - £60,000 per year

    One of the most exciting prospects in the UK cyber security sector today, Bridewell is a leading cyber security services company specialising in protecting and transforming critical business functions for some of the world's most trusted organisations. We are the trusted partner for operators of essential services and provide end-to-end cyber security...