Vulnerability Management Manager
Vulnerability Management Manager

Vulnerability Management Manager

London Full-Time 54000 - 84000 £ / year (est.) No home office possible
I

At a Glance

  • Tasks: Lead a team in identifying and mitigating cybersecurity vulnerabilities globally.
  • Company: ION is a leading provider of trading software and analytics, trusted by top corporations and banks.
  • Benefits: Enjoy a dynamic work environment with opportunities for growth and a commitment to diversity.
  • Why this job: Join a visionary team making a real impact in cybersecurity and technology innovation.
  • Qualifications: 10+ years in cybersecurity, with strong leadership and vulnerability management experience required.
  • Other info: Remote work options available; must be willing to work out of hours for global operations.

The predicted salary is between 54000 - 84000 £ per year.

The Role:

The Vulnerability Management Manager is a global role within ION’s central services division and will support the Group Security strategy and operational excellence through the identification, mitigation and remediation of information security vulnerabilities, misconfigurations and risks to the business. This role reports to the Global Head of IT Security, who reports to the Group Chief Information Security Officer (CISO)

As a member of the ION Security team, you will build and lead a team of Security professionals specialising in Vulnerability Management along with managing the partners and technology vendor deliverables and of course building and owning the strategy to deliver a world class Vulnerability Management program. The candidate must understand their role in the broader vulnerability management program and your team will regularly perform discovery scanning, risk/exposure assessments, mitigation support activities, continuous validation assessments, and lessons learned workshops and improvement projects to continuously improve our process across Group Security and all other Verticals.

We are looking for a diligent, dedicated, creative and motivated individual. Excellent communication skills are a must, and the role holder will be expected to cultivate working relationships with other teams and colleagues of varying technical ability. The role would suit a technically strong candidate with an extensive cybersecurity background, at least 10+ years working in a security role, with focus on Vulnerability Management.

Key Responsibilities:

  • This role may require work-out of hours in support of 24×7 globally coordinated operation
  • The primary responsibilities of this role are to:
  • Personnel Management
  • Ensure team members have clear objectives/development plans
  • Align Teams’ objectives to OKRs
  • Be the escalation point for security Tooling issues and critical security breaches
  • Responsible for team development, upskilling & mentoring
  • Protect and defend :
  • Manage Vulnerability Management tooling to ensure coverage/availability/efficacy
  • Drive improvements and feature enhancement to ensure ROI
  • Operate and maintain :
  • Configure, tune, maintain & operate key vulnerability management controls
  • Management reporting – real-time metrics and scheduled reports
  • Drive process/procedure changes accordingly
  • Ensure quality of ticketing & runbook maintenance
  • Cultivate and maintain strong vendor relationships
  • Have an attitude of continuous improvement
  • Participate in CAB, Tool review or Architecture Review Boards (ARBs)
  • As a member of the ION IT Security Team, it is expected that the person in this role will:
  • Execute ongoing, operational business-as-usual (BAU) tasks to meet management-defined KPIs and SLAs, and deliver security projects in line with management-defined priorities and deadlines
  • Stay current with the latest security news, threats, intelligence, tactics, techniques, and vulnerabilities. Research and analyze new threats and vulnerabilities to determine exposure.
  • Assist and/or lead efforts to isolate, contain, respond to, and recover from security incidents
  • Identify, review, prioritize, plan, coordinate, and follow-up on the remediation of vulnerabilities
  • Define, document, and follow approved processes for all the responsibilities included in this job description. Create and maintain documentation for systems, including design and operation
  • Review vulnerability management systems, configurations, and processes to ensure and report on compliance with ION policy, client requirements, audit controls, regulations, and industry best practices. Provide best practice security recommendations to IT and other teams within ION, based on review results

Experience, Skills and Qualifications:

  • Degree/diploma/certifications in a technology-related field and/or relevant working experience; highly desired certifications include:
  • Security+, CCSP, CEH, GCIH, GMON, CASP, or CISSP
  • 10 years’ experience in Vulnerability Management within large organizations with at least 5 years in a senior leadership role
  • Excellent track record of building and leading a Vulnerability Management program on a global scale with knowledge on vulnerability assessments, remediation and mitigation activities
  • Technical Security/Engineering/Compliance background witha track record of building and running global teams
  • Previous track record of build risk management framework and applying to an existing vulnerability management program
  • Strong technical expertise in implementing a Prioritizationformula to vulnerabilities and misconfigurations and translating these into risks
  • Excellent knowledge of Vulnerability Management frameworks such as NIST/SANS
  • The following general characteristics are required:
  • A team player with the ability to work independently and unsupervised
  • Ability to own delegated tasks and see them through to completion
  • Ability to manage time and prioritize work to maximize productivity
  • Excellent reporting and presentation skills are essential for this role
  • Excellent communication skills (both written and verbal)
  • Exceptional attention to detail and quality
  • Excellent problem-solving techniques and trouble analysis skills
  • Experience in design and publishing Security Standards & Policies
  • Experienced in leading Purple Teaming
  • Experienced in running global Bug Bounty/VDP programs
  • Experiencedin leading Pen Testing, from scope, schedule, findings, remediation and risk registration and running the Pen Test program for Group Security as well as all other Verticals
  • The candidate should have a good knowledge of:
  • Vulnerability Management concepts, controls, and best practices for all Operating systems & asset types, (e.g. workstations, endpoints, mobile, servers either Windows/Linux, cloud instances, etc.)
  • Vulnerability Management tools (Tenable/Rapid7/Qualys)
  • Cloud Security compliance (IaaS, PaaS, SaaS) and misconfigurations
  • Multi-platform endpoints, infrastructure and XaaS vulnerability management deployments
  • General IT networking concepts, protocols, standards and network security concepts, controls, and best practices
  • Forensic investigation techniques
  • Prior experience deploying, configuring, managing, and/or operating security technologies is preferred, such as endpoint security (e.g. AV/EPP/EDR), SIEM, DLP, SWG, CASB, UEBA, IDS, IPS, firewalls, IAM/PIM/PAM, Vulnerability Management, MDM, etc.
  • Excellent track record of Senior Leadership and Board level interaction, reporting and communications
  • Experience in InfoSec program management, project support and large-scale change
  • Proven knowledge of compliance, regulatory practices and experience managing audits

About us:

We’re a diverse group of visionary innovators who provide trading and workflow automation software, high-value analytics, and strategic consulting to corporations, central banks, financial institutions, and governments. Founded in 1999, we’ve achieved tremendous growth by bringing together some of the best and most successful financial technology companies in the world.

• Over 2,000 of the world’s leading corporations, including 50% of the Fortune 500 and 30% of the world’s central banks, trust ION solutions to manage their cash, in-house banking, commodity supply chain, trading and risk.

• Over 800 of the world’s leading banks and broker-dealers use our electronic trading platforms to operate the world’s financial market infrastructure.

ION is a rapidly expanding and dynamic group with 13,000 employees and offices in more than 40 cities around the globe. Our ever-expanding global footprint, cutting edge products, and over 40,000 customers worldwide provide an unparalleled career experience for those who share our vision.

ION is committed to maintaining a supportive and inclusive environment for people with diverse backgrounds and experiences. We respect the varied identities, abilities, cultures, and traditions of the individuals who comprise our organization and recognize the value that different backgrounds and points of view bring to our business.

ION adheres to an equal employment opportunity policy that prohibits discriminatory practices or harassment against applicants or employees based on any legally impermissible factor.

#J-18808-Ljbffr

Vulnerability Management Manager employer: ION

ION is an exceptional employer that fosters a dynamic and inclusive work culture, providing employees with the opportunity to lead innovative security initiatives on a global scale. With a commitment to professional development, team members benefit from continuous learning and mentorship, while enjoying the advantages of working in a rapidly expanding organisation that values diverse perspectives and experiences. Located in a vibrant city with a strong tech community, ION offers a unique environment for those looking to make a meaningful impact in the field of cybersecurity.
I

Contact Detail:

ION Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Vulnerability Management Manager

✨Tip Number 1

Familiarise yourself with the latest trends and tools in vulnerability management. Being well-versed in platforms like Tenable, Rapid7, or Qualys will not only boost your confidence but also demonstrate your commitment to staying current in the field.

✨Tip Number 2

Network with professionals in the cybersecurity community, especially those who have experience in vulnerability management. Attend industry conferences or webinars to connect with potential colleagues and learn from their experiences.

✨Tip Number 3

Prepare to discuss your leadership style and how you’ve successfully built and managed teams in the past. Highlight specific examples where you’ve driven improvements in vulnerability management processes or tools.

✨Tip Number 4

Showcase your problem-solving skills by preparing case studies or scenarios related to vulnerability management. Be ready to explain how you would approach identifying and mitigating vulnerabilities in a real-world context.

We think you need these skills to ace Vulnerability Management Manager

Vulnerability Management
Cybersecurity Expertise
Team Leadership
Risk Management Frameworks
Technical Security Knowledge
Vulnerability Assessment and Remediation
Communication Skills
Project Management
Attention to Detail
Problem-Solving Skills
Security Standards and Policies Design
Cloud Security Compliance
Experience with Vulnerability Management Tools (e.g., Tenable, Rapid7, Qualys)
Knowledge of NIST/SANS Frameworks
Incident Response and Forensic Investigation Techniques
Stakeholder Engagement and Reporting

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights your extensive experience in Vulnerability Management, particularly your leadership roles and technical expertise. Use specific examples that demonstrate your ability to build and lead teams, manage security tools, and drive improvements.

Craft a Compelling Cover Letter: In your cover letter, express your passion for cybersecurity and your understanding of the role's responsibilities. Mention how your background aligns with ION's needs, focusing on your experience with vulnerability assessments and risk management frameworks.

Highlight Relevant Certifications: List any relevant certifications such as Security+, CCSP, or CISSP prominently in your application. These credentials are highly desired and will strengthen your application by showcasing your commitment to professional development in the field.

Showcase Communication Skills: Since excellent communication skills are essential for this role, provide examples in your application of how you've successfully communicated complex security concepts to diverse audiences. This could include presentations, reports, or team collaborations.

How to prepare for a job interview at ION

✨Showcase Your Technical Expertise

As a Vulnerability Management Manager, it's crucial to demonstrate your extensive cybersecurity background. Be prepared to discuss specific tools and frameworks you've used, such as NIST or SANS, and how you've implemented them in previous roles.

✨Highlight Leadership Experience

This role requires strong leadership skills. Share examples of how you've built and led teams in the past, focusing on your approach to mentoring and developing team members, as well as aligning objectives with organisational goals.

✨Communicate Effectively

Excellent communication skills are essential for this position. Practice articulating complex technical concepts in a way that is understandable to non-technical stakeholders. Prepare to discuss how you've cultivated relationships across different teams.

✨Demonstrate Continuous Improvement Mindset

The role emphasises a culture of continuous improvement. Be ready to share examples of how you've driven process enhancements in vulnerability management or security operations, and how you stay current with emerging threats and best practices.

Vulnerability Management Manager
ION
I
  • Vulnerability Management Manager

    London
    Full-Time
    54000 - 84000 £ / year (est.)

    Application deadline: 2027-07-15

  • I

    ION

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>