Cyber Security Vulnerability Lead
- Posted 25 September 2025
- LocationLondon
- Job type Permanent
- Discipline Energy & Utilities, Technology
Job description
We’re looking for an experienced Cyber Security Vulnerability Management Lead to join a leading UK energy company on a 6-month contract. You’ll be responsible for driving the end-to-end vulnerability management programme across a complex, enterprise-scale environment, helping to reduce risk and strengthen security posture. You must hold valid SC clearance to be considered for this role.
This is a largely remote role, with ad-hoc onsite collaboration in London or Gloucester (once or twice a month).
Responsibilities:
Lead and mature the vulnerability management programme across cloud, on-prem, and enterprise environments.
Define policies, SLAs, and reporting to track remediation progress and demonstrate risk reduction.
Build dashboards/metrics (e.g. Power BI, ServiceNow) to communicate exposure trends and priorities.
Collaborate with infrastructure, application, and cloud teams to drive timely remediation.
Provide subject matter expertise during incidents, audits, and compliance reviews (ISO 27001, NIST, GDPR, CE+).
Identify opportunities for automation to streamline processes.
You’ll need:
To have valid UK SC clearance
Strong track record delivering vulnerability management in large or regulated organisations.
Hands-on experience with tools such as Tenable One, AWS Inspector, and ServiceNow.
Solid understanding of security domains (IAM, network, cloud, application security).
Excellent communication skills — able to influence at both technical and exec level.
Calm under pressure, with proven ability to triage and prioritise effectively.
If this sounds like an opportunity you are interested in, apply now for an immediate review!