Cyber Threat Intelligence & Vulnerability Management Lead
Cyber Threat Intelligence & Vulnerability Management Lead

Cyber Threat Intelligence & Vulnerability Management Lead

Northampton Full-Time 36000 - 60000 £ / year (est.) No home office possible
Go Premium
Drax

At a Glance

  • Tasks: Lead Cyber Threat Intelligence and Vulnerability Management to protect our renewable energy future.
  • Company: Join Drax, a leader in sustainable energy and carbon removals.
  • Benefits: Enjoy competitive salary, bonus, private medical insurance, and 25 days annual leave.
  • Other info: Flexible hybrid working and a commitment to diversity and inclusion.
  • Why this job: Make a real impact on climate change while advancing your career in cybersecurity.
  • Qualifications: Experience in IT/OT environments and knowledge of cyber security frameworks required.

The predicted salary is between 36000 - 60000 £ per year.

Job Description

Cyber Threat\\nIntelligence & Vulnerability Management Lead\\n Flexible location \\n Hybrid working\\n Permanent, full time\\n\\n Closing date: Monday 3rd November 2025\\n\\n Who we are\\n\\nWe’re not just talking about making a difference, we’re making it happen.\\nWe generate dispatchable, renewable power and create stable energy in an\\nuncertain world. Building on our proud heritage, we have ambition to become the\\nglobal leader in sustainable biomass and carbon removals.\\n\\n You’ll be joining our teams of practical doers, future thinkers and business\\nchampions. We’re enabling a zero carbon, lower cost energy future for all, and\\nworking hard to decarbonise the planet for generations to come.\\n\\n About the role\\n\\nThe primary purpose of this role is to manage and influence all aspects of\\nCyber Threat Intelligence and Vulnerability Management, but particularly in the\\ndevelopment of the threat landscape to Drax.

You’ll also assist in the\\ndevelopment of Technical Controls in accordance with policy, standards and\\nregulatory requirements.\\n\\n You’ll help to develop and support senior management with the technical\\ncontrols and cyber threat intelligence skills within the group-wide security\\nteam and through the rollout of tools, technical controls, policies and\\nprocedures, and coaching and mentoring. The role will also have responsibility\\nfor working with asset owners to ensure that they understand their\\nresponsibilities regarding risk and technical security controls.\\n\\n You’ll deliver against the business strategy, the technical roadmap and\\nobjectives set out in the Security strategy – covering group wide security\\nrequirements.\\n\\n Additional responsibilities include:\\n\\n – Supporting the definition of technical controls matrices, Security Operations\\nCentre (SOC) processes, industrial control matrices and architectural controls,\\nproviding oversight to other SMEs in support of their BAU activities and\\nmaintaining accurate documentation and record keeping.\\n – Ensuring controls and risk treatment plans align with our policies and\\nstandards.\\n – Leading threat intelligence and vulnerability management review meetings with\\nkey stakeholders and provision of security representation at business unit\\ntechnical review and Senior Leadership Team (SLT) meetings as required.\\nEffectively communicating all technical controls and mitigations.\\n – Continuing to develop and improve the Group Cyber Threat Intelligence\\nframework technical controls, industrial controls and architectural controls\\nincluding the effective management of the required documentation across the\\nGroup.\\n – Recommending and implementing an appropriate toolkit for Cyber Threat\\nIntelligence.\\n – Technical control reporting.\\n – Researching threats, Indicators of Compromise (IoCs) and threat actor Tactics,Techniques and Procedures (TTPs) to support Threat Hunting, Signature\\nDevelopment and Threat Intelligence Platform (TIP) processes.\\n – Providing strong technical oversight to deliver consistency and quality in\\ntechnical work across the Group.\\n – Participating in Audits, Technical Design Authority and Change Advisory\\nBoards as required.\\n\\n Who we’re looking for\\n\\nThis role requires the ability to interpret Cyber Threat Intelligence and\\ntechnical controls and communicate effectively to all levels of the\\norganisation.\\n\\n Ideally, you’ll have a good experience working within IT/OT in an operational\\nor corporate environment with a good knowledge of control frameworks such as\\nISO27001, ITIL (Information Technology Infrastructure Library), NIST, SABSA and\\nIEC 62443 and cyber kill chain.\\n\\n You’ll have a good knowledge of Risk Management Methodologies such as ISO27005\\nand IRAM2/security frameworks NIST/NIS CAF/IEC/SoGp Cyber Kill chain with\\nstrong IT technical skills to support this knowledge.\\n\\n You’ll also demonstrate strong communication (verbal and written) and\\nstakeholder management skills, with the ability to take the initiative and\\nhandle multiple projects simultaneously.\\n\\nRewards and benefits\\n\\nAs you help us to shape the future, we’ve shaped our rewards and benefits to help you thrive and support your lifestyle:\\n\\n- Competitive salary\\n- Discretionary group performance-based bonus\\n- 25 days annual leave (plus Bank Holidays)\\n- Single cover private medical insurance\\n- Pension scheme\\n\\nWe’re committed to making a tangible impact on the climate challenge we all face. Drax is where your individual purpose can work alongside your career drive.

We work as part of a team that shares a passion for doing what’s right for the future. With Drax you can shape your career and a future for generations to come.\\n\\nTogether, we make it happen.\\n\\nAt Drax, we’re committed to fostering an environment where everyone feels valued and respected, regardless of their role. To make this a reality, we actively work to better represent the communities we operate in, foster inclusion, and establish fair processes.

Through these actions, we build the trust needed for all colleagues at Drax to contribute their perspectives and talents, no matter their background. Find out more about our approach here.\\n\\nHow to apply\\n\\nThink this role’s for you? Click the ‘Apply now’ button to begin your Drax journey.\\n\\nIf you want to find out more about Drax, check out our LinkedIn page to see our latest news

Cyber Threat Intelligence & Vulnerability Management Lead employer: Drax

At Drax, we are not just committed to a sustainable future; we actively empower our employees to thrive in a dynamic and inclusive work environment. With flexible hybrid working options, competitive salaries, and a strong focus on personal and professional growth, we ensure that our team members can make a meaningful impact while enjoying a rewarding career. Join us in shaping a zero carbon energy future, where your contributions are valued and your development is supported.
Drax

Contact Detail:

Drax Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Threat Intelligence & Vulnerability Management Lead

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching the company and its values. Understand their mission around sustainable energy and be ready to discuss how your skills in Cyber Threat Intelligence align with their goals.

✨Tip Number 3

Showcase your expertise! Bring examples of your past work in Cyber Threat Intelligence and Vulnerability Management to the table. Be ready to discuss specific challenges you've tackled and how you can contribute to Drax's mission.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining the Drax team and making a difference.

We think you need these skills to ace Cyber Threat Intelligence & Vulnerability Management Lead

Cyber Threat Intelligence
Vulnerability Management
Technical Controls Development
Risk Management Methodologies
ISO 27001
ITIL
NIST
SABSA
IEC 62443
Cyber Kill Chain
Indicators of Compromise (IoCs)
Threat Actor Tactics, Techniques and Procedures (TTPs)
Stakeholder Management
Communication Skills
Project Management

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cyber Threat Intelligence & Vulnerability Management Lead role. Highlight relevant experience and skills that match the job description, especially around technical controls and risk management methodologies.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background aligns with Drax's mission. Don’t forget to mention your understanding of the threat landscape and your communication skills.

Showcase Your Technical Skills: In your application, be sure to showcase your technical skills and knowledge of frameworks like ISO27001 and NIST. Provide examples of how you've applied these in previous roles to demonstrate your expertise.

Apply Through Our Website: We encourage you to apply through our website for the best chance of success. It’s straightforward and ensures your application goes directly to us, making it easier for us to review your credentials!

How to prepare for a job interview at Drax

✨Know Your Cyber Threat Landscape

Before the interview, dive deep into the current cyber threat landscape, especially as it relates to the energy sector. Familiarise yourself with recent threats and vulnerabilities that have impacted similar companies. This will not only show your expertise but also your genuine interest in the role.

✨Master the Technical Controls

Brush up on key control frameworks like ISO27001, NIST, and ITIL. Be prepared to discuss how these frameworks apply to the role and how you’ve used them in past experiences. Having specific examples ready will demonstrate your hands-on knowledge and ability to implement these controls effectively.

✨Communicate Clearly and Confidently

Since this role involves communicating technical information to various stakeholders, practice explaining complex concepts in simple terms. Use clear examples from your experience to illustrate your points. This will showcase your communication skills and your ability to engage with both technical and non-technical audiences.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think of past challenges you've faced in cyber threat intelligence or vulnerability management and how you overcame them. This will help you demonstrate your critical thinking and decision-making abilities during the interview.

Cyber Threat Intelligence & Vulnerability Management Lead
Drax
Location: Northampton
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>