Overview Lead Threat and Vulnerability Manager
We are seeking a seasoned professional to own and evolve our organisation's vulnerability management programme.
Responsibilities Lead the day-to-day operations of the global Threat and Vulnerability Management programme, ensuring alignment across multiple business units and geographies.
Serve as the subject matter expert on threat intelligence tools, frameworks, and reporting—driving strategy, automation, and process maturity in complex infrastructure environments.
Map vulnerabilities to real-world threats using frameworks such as MITRE ATT&CK and tools like EPSS and CVSS to prioritise remediation based on risk and asset criticality.
Collaborate with the SOC, security engineering, and wider business stakeholders to ensure cohesive and effective vulnerability management.
Lead and sustain BAU vulnerability management programmes in complex, federated environments with multiple business units.
Provide hands-on knowledge of vulnerability management in cloud environments (Azure, AWS, GCP) and engage with regulatory / compliance considerations such as PCI DSS.
Qualifications Broad and deep experience in threat and vulnerability management across large, global enterprises.
Practical experience with Rapid7 InsightVM and / or Qualys is highly desirable.
Strong understanding of threat intelligence, risk-based vulnerability prioritisation, and remediation strategies.
Relevant security certifications are a plus (e.g., GCTI, Security+, CySA+).
#J-18808-Ljbffr
Threat Vulnerability Lead • Madrid, Madrid, SPAIN