Cyber Security Vulnerability Lead

Posted 25 September 2025
LocationLondon
Job type Permanent
Discipline Energy & UtilitiesTechnology

Job description

We’re looking for an experienced Cyber Security Vulnerability Management Lead to join a leading UK energy company on a 6-month contract. You’ll be responsible for driving the end-to-end vulnerability management programme across a complex, enterprise-scale environment, helping to reduce risk and strengthen security posture. You must hold valid SC clearance to be considered for this role.

This is a largely remote role, with ad-hoc onsite collaboration in London or Gloucester (once or twice a month).

Responsibilities:

  • Lead and mature the vulnerability management programme across cloud, on-prem, and enterprise environments.

  • Define policies, SLAs, and reporting to track remediation progress and demonstrate risk reduction.

  • Build dashboards/metrics (e.g. Power BI, ServiceNow) to communicate exposure trends and priorities.

  • Collaborate with infrastructure, application, and cloud teams to drive timely remediation.

  • Provide subject matter expertise during incidents, audits, and compliance reviews (ISO 27001, NIST, GDPR, CE+).

  • Identify opportunities for automation to streamline processes.

You’ll need:

  • To have valid UK SC clearance

  • Strong track record delivering vulnerability management in large or regulated organisations.

  • Hands-on experience with tools such as Tenable One, AWS Inspector, and ServiceNow.

  • Solid understanding of security domains (IAM, network, cloud, application security).

  • Excellent communication skills — able to influence at both technical and exec level.

  • Calm under pressure, with proven ability to triage and prioritise effectively.

If this sounds like an opportunity you are interested in, apply now for an immediate review!