At a Glance
- Tasks: Lead the vulnerability management process and protect our platforms from cyber threats.
- Company: Join a global security team at Computacenter, dedicated to innovative cybersecurity solutions.
- Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
- Other info: Dynamic work environment with a commitment to diversity and inclusion.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: Experience in cyber security and vulnerability management is essential.
The predicted salary is between 60000 - 80000 £ per year.
We're seeking a Vulnerability Manager to join our expanding global security team - an expert group dedicated to protecting our platforms, services, and operational environments from an ever-evolving threat landscape.
Responsibilities
- Own and operate the vulnerability management process for Computacenter.
- Execute the roadmap for vulnerability management processes and technologies.
- Operate day-to-day vulnerability identification, assessment, and alerting tooling.
- Identify, evaluate and prioritise vulnerability remediation activities across the Computacenter group.
- Provide expert security guidance to resolver teams in the remediation of technical vulnerabilities and weaknesses.
- Support the vulnerability analysts.
- Ensure cooperation amongst all centralised and regional resolver teams across the group.
- Keep current on the latest cyber-security threats, new vulnerabilities and the Tactics, Techniques, and Procedures (TTPs) used by threat actors.
- Analyse vulnerability intelligence feeds to inform prioritisation of remediation.
- Act as a technical vulnerability SME and support the group’s response to new major vulnerabilities affecting Computacenter.
- Support vulnerability investigation and analysis on cyber-security incidents for the Computacenter Cyber Security Incident Response Team (CSIRT).
- Measure the effectiveness of the vulnerability management process through monitoring and compliance with policy and standards (patch, configuration, etc.).
- Identify opportunities for continual improvement of the programme.
- Prepare accurate and actionable reporting metrics for senior management and stakeholders.
- Deliver vulnerability exposure reviews to technical resolver groups across the business.
- Support the cyber-risk management function by verifying that vulnerability controls are delivered for assets and information systems and by identifying gaps and exposure risks.
- Support penetration testers by providing accurate vulnerability analysis pre- and post-assessment.
- Support the CTO with technical validation of security controls.
- Ensure vulnerability control requirements are delivered for assets and digital services.
Qualifications
- Demonstrable experience in information and cyber security, especially vulnerability management.
- Experience in vulnerability analysis and assessment, including risk-based vulnerability management.
- Experience operating specialist security tooling for vulnerability identification and analysis (e.g., Tenable, Qualys, OWASP ZAP, MDE, TVM).
- Experience preparing threat and vulnerability briefings for management and technical resolvers.
- Practical experience supporting IT operations, including asset, configuration and patch management.
- Understanding of technical IT security best practices, including endpoint, network and cloud security and related key vulnerabilities.
- Understanding of common IT enterprise technologies – Windows, Linux, cloud and networking platforms – and a desire to deliver success with new technologies.
- Familiarity with information security standards and frameworks such as CIS, NIST, ISO 27001, Cyber Essentials (Plus), PCI DSS and GDPR.
- Knowledge of the MITRE ATT&CK framework.
- Knowledge of cyber threats, advanced persistent threats (APT) and associated TTPs.
- Experience with incident-response and handling methodologies.
- Experience with risk-management processes (assessment and mitigation).
- Recognised information-security and/or information-technology industry certification (CISM, CISSP, ISO 27001 lead implementer, Nessus/Qualys or equivalent/superior).
Equal Opportunity Employer
We are an equal-opportunity employer. Your application will be considered on its merits, regardless of age, disability, ethnicity, gender identity or any other characteristic protected by law. We are proud to be a Disability Confident Employer and welcome applications in alternative formats. We guarantee to interview applicants who have a disability.
Vulnerability Manager in Hatfield employer: Computacenter PLC
Contact Detail:
Computacenter PLC Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Vulnerability Manager in Hatfield
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or a personal website showcasing your projects and achievements in vulnerability management. This gives potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on common vulnerability management scenarios and tools like Tenable or Qualys. Practise articulating your thought process and how you tackle vulnerabilities in real-world situations.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Vulnerability Manager in Hatfield
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Vulnerability Manager role. Highlight your experience in vulnerability management and any relevant tools you've used, like Tenable or Qualys. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how you can contribute to our team. Be sure to mention specific experiences that relate to the responsibilities listed in the job description.
Showcase Your Knowledge: We love candidates who stay updated on the latest cyber threats and vulnerabilities. In your application, mention any recent trends or incidents you've followed, and how they relate to the role. This shows us you're proactive and knowledgeable!
Apply Through Our Website: Don't forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it makes the process smoother for both of us!
How to prepare for a job interview at Computacenter PLC
✨Know Your Vulnerabilities
Before the interview, brush up on the latest vulnerabilities and threats in the cyber security landscape. Familiarise yourself with tools like Tenable and Qualys, as well as the MITRE ATT&CK framework. This will not only show your expertise but also demonstrate your commitment to staying current in the field.
✨Showcase Your Experience
Be ready to discuss your hands-on experience with vulnerability management processes. Prepare specific examples of how you've identified, assessed, and remediated vulnerabilities in past roles. Highlight any successful projects where you improved security posture or streamlined processes.
✨Communicate Clearly
As a Vulnerability Manager, you'll need to provide guidance to resolver teams. Practice explaining complex technical concepts in simple terms. During the interview, focus on clear communication and ensure you can articulate your thoughts on vulnerability analysis and risk management effectively.
✨Prepare for Scenario Questions
Expect scenario-based questions that assess your problem-solving skills. Think about how you would handle specific vulnerabilities or incidents. Prepare to discuss your approach to prioritising remediation activities and how you would collaborate with different teams to address security issues.