Overview
Lead Threat and Vulnerability Manager
We are seeking a seasoned professional to own and evolve our organisation's vulnerability management programme.
Responsibilities
- Lead the day-to-day operations of the global Threat and Vulnerability Management programme, ensuring alignment across multiple business units and geographies.
- Serve as the subject matter expert on threat intelligence tools, frameworks, and reporting—driving strategy, automation, and process maturity in complex infrastructure environments.
- Map vulnerabilities to real-world threats using frameworks such as MITRE ATT&CK and tools like EPSS and CVSS to prioritise remediation based on risk and asset criticality.
- Collaborate with the SOC, security engineering, and wider business stakeholders to ensure cohesive and effective vulnerability management.
- Lead and sustain BAU vulnerability management programmes in complex, federated environments with multiple business units.
- Provide hands-on knowledge of vulnerability management in cloud environments (Azure, AWS, GCP) and engage with regulatory / compliance considerations such as PCI DSS.
Qualifications
Broad and deep experience in threat and vulnerability management across large, global enterprises.Practical experience with Rapid7 InsightVM and / or Qualys is highly desirable.Strong understanding of threat intelligence, risk-based vulnerability prioritisation, and remediation strategies.Relevant security certifications are a plus (e.g., GCTI, Security+, CySA+).#J-18808-Ljbffr