Search

Vulnerability Management Lead

Posted: 14/03/25
Recruiter:Summer Browning Associates
Reference:2913623299
Type:Contract
Disciplines: Team Leader
Salary:£550 Daily
Location:UK
Description:

Summer-Browning Associates are currently supporting our Central Government client, who are seeking a Vulnerability Management Lead on a 12 month contract

Location: London/Bristol/Manchester once/twice per month a month circa)

Key responsibilities:

  • Broaden the capability of the Domains Team. Currently the team has expertise around domains-related vulnerabilities. The Vulnerability Management Lead will develop this expertise such that the Team can help stakeholders deal with vulnerabilities found in the infrastructure, tools and services that public sector bodies commonly use in the development and delivery of their own digital services.
  • Help public sector bodies understand, assess and act on the vulnerability information they receive.
  • Help public sector bodies plan and prioritise how vulnerabilities are addressed to meet organisational objectives, using a risk-based approach .
  • Help public sector bodies improve their vulnerability management life cycle.
  • Proactively identify and leverage threat intelligence sources to inform strategic vulnerability mitigation measures and to enhance the quality and type of data provided to customer organisations.
  • Help create a knowledgebase of written guidance to help stakeholders manage, prioritise and fix their vulnerabilities.
  • Develop and maintain good working relationships with stakeholders across the public sector to accelerate the reduction of risk through the fixing of vulnerabilities.

You will have:

  • Expert knowledge of the security advantages and vulnerabilities of commodity products and technologies.
  • Good working knowledge of current cyber security threats, risks.
  • Experience in performing risk assessments, including business impact assessment, threat assessments and vulnerability (control gaps) assessments.
  • Experience in developing security advice guidelines and specific mitigation advice, aligning these with business risk in a proportionate way.
  • Extensive experience in specifying and deploying security technical controls and developing design patterns based on solid understanding of security design principles.
  • Good working knowledge of the marketplace of cyber security products and services and experience of identifying and evaluating potential options to improve a service.
  • Good working knowledge of cloud computing architecture and related technologies.
  • Ability to interact with a broad cross-section of personnel to explain and encourage the implementation of security measures

Indicative professional qualifications / accreditations:

  • Relevant industry qualifications and accreditations e.g. Certified Cyber Professional (CCP), Certified Information Systems Security Professional (CISSP), ISO27001 Lead Implementer

NB: Active SC prior to undertaking assignment.

To apply, please submit latest CV for review.

Recruiting now