Attack Surface Management Manager

7 days ago


Nottingham, Nottingham, United Kingdom Experian Full time £70,000 - £110,000 per year

Company Description
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to achieve their financial goals and help them save time and money.

We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at

Internal Grade C
Job Description
Experian Global Security Office are looking for a new Manager of Attack Surface Management (ASM) to play a crucial role in our cybersecurity strategy.

You will guide the success of the Continuous Threat Exposure Management (CTEM) program and build business engagement across global teams. You will ensure CTEM delivers reliable, applicable insights by defining and maintaining processes, integrating services with enterprise systems.

Equally critical is leading the Business Engagement Team to establish trusted partnerships with regional infrastructure and application partners, aligning vulnerability management strategies with priorities. Through technical leadership and strategic influence, you will strengthen Experian's security posture and reduce risk across its global attack surface.

This is an UK based remote position reporting to the Information Security Director for Cloud and Attack Surface Management.

Primary Focus:-
Lead CTEM Service Delivery: Manage processes for the Continuous Threat Exposure Management (CTEM) service and its provider. Ensure integration with Experian systems, delivering, reliable, and applicable security insights that inform risk reduction across the enterprise.

Business Engagement: You will manage the Business Engagement Team and Service, providing expertise and strategic direction. Cultivate partnerships with regional infrastructure and application teams to ensure the vulnerability management strategy is understood, agreed upon, and implemented.

Other Responsibilities:-

  • Maintain risk stratification model to guide vulnerability prioritization based on threat and asset criticality; Identify vulnerability prioritization and asset coverage trends, escalating to senior leadership when vulnerability trends are not improving over time.
  • Help with response to cybersecurity incidents or threat informed actions, ensuring accurate identification of applicable internal and external risks. Will use a broad and diverse combination of tools, techniques, and data sources to support highest confidence in attack surface discovery.
  • Guide team members' daily project and operational activities
  • Contribute to security and technology strategic planning to mature our programmes
  • Work with Risk & Compliance teams on SOC 2, PCI DSS, HIPAA, and other audits.
  • Research and recommend policy and procedures as they relate to Attack Surface Management

Qualifications

  • Expert experience supporting Attack Surface Management in vulnerability, remediation, and mitigation as it applies to the following.

  • Common web applications, APIs, misconfigurations, hosts, mobile, Internet of Things, endpoints, infrastructure, cloud, network appliance, OS, firmware and software supply-chain.

  • Management experience in an enterprise-level cybersecurity function.

  • Experience engaging and presenting security topics at senior levels in an enterprise organization
  • Experience managing Risk-Based Vulnerability Management models.
  • In-depth knowledge of architecture, engineering, and operations of one or more vulnerability management tools, such as: Qualys, Rapid7, Tanium, Axonius, Armis, or other.
  • Experience applying the following models to an enterprise security program: CMMI, ISO/IEC 2700, OWASP SAMM, NIST, SMM SANS Security Maturity Model.
  • Experience developing security reports, trends, and metrics analysis.
  • Experience with the application of some of the following frameworks - SANS, NIST 800-61, CVSS, CIS, OSSTM, ISO 27001, MITRE ATT&CK, PCI, HIPAA, GDPR or similar.
  • Experience with cloud security practices
  • Experience with business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping

Additional Information
Benefits package includes:

  • Great compensation package and discretionary bonus plan
  • Core benefits include pension, bupa healthcare, sharesave scheme and more
  • 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here



  • Nottingham, Nottingham, United Kingdom Experian Full time £60,000 - £80,000 per year

    Company DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...


  • Nottingham, Nottingham, United Kingdom Experian Full time £70,000 - £120,000 per year

    Company Description Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...


  • Nottingham, Nottingham, United Kingdom NHS Supply Chain Full time

    Job TitleLead Project ManagerFunction: Strategy & Business ArchitectureLocation: Nottingham/HybridContract type: Secondment/Fixed Term Contract until 31st October 2026Salary:£54,884 with potential to rise to £64,570 over 3 yearsClosing Date: Thursday 13th November 2025NHS Supply Chain currently has an opportunity for aLead Project Managerto join our team...


  • Nottingham, Nottingham, United Kingdom The Home Depot Full time

    With a career at The Home Depot, you can be yourself and also be part of something bigger.Position Purpose:Customer Experience Managers (CXM) are members of the store leadership team that oversees execution of store standards across the entire store, including customer service, department readiness, and operational process. CXMs manage all activities...


  • Nottingham, Nottingham, United Kingdom HM Revenue & Customs Full time

    Job summaryDiscover what it's like to work in a compliance role that makes an impact. Could you help us shape a stronger, fairer future? Your next career move starts here.HMRC is the UK's tax, payments and customs authority and we have a vital purpose: we collect the money that pays for the UK's public services and help families and individuals with targeted...

  • Manager

    6 days ago


    Nottingham, Nottingham, United Kingdom BFY Group Full time

    Job Title:ManagerLocation:Hybrid, some travel will be required to client sites and Nottingham Head OfficeHours:Our results focus allows us to be really flexible on hours. We have successfully been able to accommodate part time, flexible working, compressed hours, variable hours etc.Total Package:Package up to £96k, including competitive salary and bonus,...

  • Facilities Manager

    2 weeks ago


    Nottingham, Nottingham, United Kingdom Hexagon Group Full time £32,000 - £37,000 per year

    Job DescriptionWe are delighted to be partnering with a growing real estate investment company that owns and manages a portfolio of Grade A office space across the UK. They are looking to appoint an additional Facilities Manager to join their expanding property management team based in Nottingham, working closely with colleagues in their London office.You...


  • Nottingham, Nottingham, United Kingdom Browne Jacobson Full time £40,000 - £60,000 per year

    We are hiringBrowne Jacobson are recruiting for a Practice Support Manager to join the firm on a permanent basis. Based out of our Birmingham or Nottingham offices, this role will manage a number of legal support staff including both Practice Assistants and Team Assistants.The role of the successful candidate will be to ensure the legal support team meets...

  • IT Project Manager

    2 weeks ago


    Nottingham, Nottingham, United Kingdom EMBS Digital Full time £45,000 - £60,000 per year

    Agile Project Manager - IT Infrastructure and Business Change ProjectsHybrid: Nottingham (3 in 2 out)Driving Licence Required - frequent travel to sites in Nottinghamshire is expectedNo sponsorship availablePosition Overview:We are seeking a highly skilled and motivated Agile Project Manager to lead and deliver IT infrastructure and business change projects...

  • Sales Manager

    1 week ago


    Nottingham, Nottingham, United Kingdom Hello@Magnumtalent.Co Full time £40,000 - £70,000 per year

    Job DescriptionRole: Sales Manager Key ResponsibilitiesOur rapidly growing digital marketing client based in Edwalton, Nottingham are looking to hire a sales manager. As their sales manager, you will drive new business growth, safeguard client quality, and lead the sales function to ensure our client is positioned as a premium, ROI-driven partner.Sales...