Vulnerability Management Operations Lead

1 week ago


London, Greater London, United Kingdom LSEG (London Stock Exchange Group) Full time £60,000 - £110,000 per year

LSEG is seeking a Vulnerability Management Operations Lead to drive the execution, coordination, and continuous improvement of our global vulnerability management program. This is a hands-on technical leadership role that blends operational oversight with deep analytical and engineering engagement. You'll provide direction and coordination across specialized vulnerability management domains, including infrastructure and application level, ensuring alignment, consistency, and measurable risk reduction. As the key operational partner to the Head of Vulnerability Management, you'll serve as the connective tissue across the program, enabling technical teams, translating intelligence into action, defining performance metrics, and representing vulnerability management in critical business and incident contexts.

Who you are

You're a technical leader and analytical thinker who thrives at the intersection of engineering, data, and security operations. You combine a hands-on understanding of vulnerabilities and exploits with the ability to orchestrate complex operational programs. You are data-driven, curious, and relentless in pursuit of improvement, always looking for better ways to measure, prioritize, and reduce risk. You excel under pressure, lead with credibility, and elevate those around you through mentorship, clarity, and technical insight.

Key Responsibilities

Operational Leadership

  • Provide matrix leadership and coordination across domain-aligned vulnerability management engineers.
  • Oversee daily and strategic vulnerability management operations, ensuring consistent execution, quality, and prioritization across all domains.
  • Coordinate activities across VM engineers to identify systemic weaknesses, unknown exposures, and emerging risks.
  • Act as the key representative of the vulnerability management function during major incidents, providing expert analysis and coordinated response leadership.

Threat and Intelligence Integration

  • Assess and triage Cyber Threat Intelligence input, determining impact and required actions across the environment.
  • Drive targeted response campaigns and validation efforts in collaboration with domain engineers.
  • Translate external threat intelligence into actionable technical outcomes and measurable risk mitigation.

Process and Governance

  • Serve as a key contributor to the overarching VM process, framework, and standards, ensuring technical rigor and operational efficiency.
  • Define, track, and evolve key performance and risk metrics (e.g., vulnerability MTTR, backlog trends, exploit exposure, patch SLAs, coverage rates).
  • Collaborate with the VM Governance team to ensure alignment of reporting, dashboards, and audit readiness.
  • Champion data-driven decision-making and measurable accountability across all VM activities.

Technical Oversight

  • Provide technical oversight to vulnerability management engineers, ensuring analytical depth, accuracy, and consistency in findings and remediation guidance.
  • Partner with engineering, infrastructure, and DevSecOps teams to improve vulnerability lifecycle management, from identification and triage to remediation and validation.
  • Contribute to root cause and trend analysis of recurring vulnerabilities to inform long-term preventative measures.

Continuous Improvement

  • Drive the ongoing enhancement of vulnerability management processes, leveraging lessons learned and industry developments.
  • Identify and implement automation opportunities to streamline operations and improve response times.
  • Foster a culture of continuous improvement within the team and across the wider security function.

Required Skills and Experience

  • Proven experience in vulnerability management, security operations, or a related information security domain.
  • Strong understanding of vulnerability identification methodologies (e.g. infrastructure scanning, SAST, SCA, penetration testing) and remediation processes.
  • Demonstrated ability to lead technical teams and manage operational workflows.
  • Solid grasp of threat intelligence, risk assessment, and security best practices.
  • Excellent analytical, problem-solving, and decision-making skills.
  • Effective communication skills, capable of engaging both technical and non-technical stakeholders.

Join us and be part of a team that values innovation, quality, and continuous improvement. If you're ready to take your career to the next level and make a significant impact, we'd love to hear from you.

LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.

Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.

Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce.

We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone's race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.

You will be part of a collaborative and creative culture where we encourage new ideas. We are committed to sustainability across our global business and we are proud to partner with our customers to help them meet their sustainability objectives. Our charity, the LSEG Foundation provides charitable grants to community groups that help people access economic opportunities and build a secure future with financial independence. Colleagues can get involved through fundraising and volunteering.

LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.

Please take a moment to read this

privacy notice

carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it's used for, and how it's obtained,

your rights and how to contact us as a data subject

.

If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.



  • London, Greater London, United Kingdom ION Full time £100,000 - £150,000 per year

    The RoleThe Vulnerability Management Manager is a global role within ION's central services division and will support the Group Security strategy and operational excellence through the identification, mitigation and remediation of information security vulnerabilities, misconfigurations and risks to the business. This role reports to the Global Head of IT...


  • London, Greater London, United Kingdom ION Group Full time £120,000 - £180,000 per year

    The Role: The Vulnerability Management Manager is a global role within ION's central services division and will support the Group Security strategy and operational excellence through the identification, mitigation and remediation of information security vulnerabilities, misconfigurations and risks to the business. This role reports to the Global Head of IT...


  • London, Greater London, United Kingdom ION Group Full time £100,000 - £120,000 per year

    The Role: The Vulnerability Management Analyst is a global role within ION's central services division and will support the Group Security strategy and operational excellence through the identification, mitigation and remediation of information security vulnerabilities, misconfigurations and risks to the business. This role reports to the Vulnerability...

  • Vulnerability Manager

    22 minutes ago


    London, Greater London, United Kingdom La Fosse Full time £60,000 - £70,000 per year

    Hi All,I'm helping a growing FS business find a Vulnerability Management specialist to join their cyber function This is your opportunity to lead the Vulnerability programme for a FTSE 250 BusinessTo be successful in this role you will have experience with:Vulnerability Management (Vendor agnostic)Managing 3rd partiesLeading business projectsSalary is up to...


  • London, Greater London, United Kingdom Kantar Full time £60,000 - £120,000 per year

    Job DetailWe're the world's leading data, insights, and consulting company; we shape the brands of tomorrow by better understanding people everywhere.About The JobThe Cyber Security Testing and Vulnerability Management team will be responsible for the delivery of vulnerability assessment and management services right across the Kantar business.This role will...


  • London, Greater London, United Kingdom E Next Full time £40,000 - £80,000 per year

    The Affordability & Vulnerability team is responsible for leading and delivering E.ON Next's vulnerable customer agenda, championing the customer and ensuring the most vulnerable customers receive best-in class customer service tailored to their individual needs. Where required this team will take the lead across E.ON Next for topics with a considerable...


  • London, Greater London, United Kingdom WPP Full time £80,000 - £120,000 per year

    WPP is the creative transformation company. We use the power of creativity to build better futures for our people, planet, clients, and communities.Working at WPP means being part of a global network of more than 100,000 talented people dedicated to doing extraordinary work for our clients. We operate in over 100 countries, with corporate headquarters in New...


  • London, Greater London, United Kingdom Amazon Web Services (AWS) Full time £60,000 - £120,000 per year

    DescriptionEmbark on a Mission to Fortify Amazon's Defenses as a Security Engineer with the Vulnerability Management & Remediation Operations teamAmazon Security is seeking a Security Engineer to join our Vulnerability Management and Remediation Operations (VMRO) team in London, UK. The VMRO team is responsible for discovering, assessing, triaging,...


  • London, Greater London, United Kingdom Department for Business and Trade Full time £62,534 - £82,200 per year

    Join a team at the heart of the global economy The Department for International Trade (DIT) and Inspire People are partnering together to bring you an exciting opportunity for a Threat and Vulnerability Manager to protect DIT and the wider UK government from cyber threats in a fast paced and exciting role, responsible for the Vulnerability Management and...


  • London, Greater London, United Kingdom Birmingham City Council Full time £44,000 - £65,000 per year

    DescriptionVulnerable Children's Data LeadPermanentGrade 6 - £54,495- £64,811 - Consultation grade - subject to formal evaluation under the Pay Equity ReviewWorking 36.5 hours per week (hybrid working – typically 1-2 days a week in the Council House and able to attend key meetings across Birmingham in person when required)Do you want to make a difference...