Vulnerability Analyst in Cardiff

Vulnerability Analyst in Cardiff

Cardiff Full-Time 35000 - 42000 £ / year (est.) No working from home possible
Dwr Cymru Welsh Water

At a Glance

  • Tasks: Join our Security Operations Team as a Vulnerability Analyst, tackling IT and OT system vulnerabilities.
  • Company: Dŵr Cymru Welsh Water provides safe water services to 3 million people while caring for the environment.
  • Benefits: Enjoy hybrid work, 33 days leave, enhanced pension, gym discounts, and more perks!
  • Other info: Training provided; applications from diverse backgrounds are encouraged.
  • Why this job: Make a real impact in cybersecurity while working for a trusted, not-for-profit company.
  • Qualifications: Familiarity with cyber security concepts and strong analytical skills are essential.

The predicted salary is between 35000 - 42000 £ per year.

Press Tab to Move to Skip to Content Link

Select how often (in days) to receive an alert:

City: Cardiff

Address:

Cardiff, Wales, GB, CF3 0LT

Job Requisition Number 7911

Work Type Permanent / Hybrid role

Job Function IT

Salary Range £41,300.00-£47,213.00

Base Cardiff / Newport

Closing Date 23:59 on 28/08/2025

What you’ll be responsible for


As a Vulnerability Analyst, you will play a critical role in the Security Operations Team to maintain our security posture and reduce the attack surface of IT and OT systems. You will be responsible for: identifying, prioritising, and reporting on vulnerabilities as well as supporting the remediation of vulnerabilities across our environment.
The Vulnerability Analyst will act on initiative to seek out vulnerabilities, keep track of current events and changes in the technology landscape, and work closely with Infrastructure and Application teams to respond appropriately to risks. This is expected to be a proactive, interactive and hands on role; requiring an individual with a balance of technical and stakeholder management skills.

Responsibilities

  • Ensure all assets undergo regular vulnerability scans and continuously work to ensure full coverage across OT and IT.
  • Work with IT and OT asset owners to configure and run vulnerability and compliance scans in a controlled, planned manner.
  • Work with remediation teams and relevant stakeholders to define effective remediation plans.
  • Ensure that critical exposures are discovered and remediated swiftly proactively monitoring for new and changing vulnerability risks.
  • Monitor current cyber threat intelligence and understand how it relates to vulnerability risk within the business.
  • Define appropriate reporting and dashboarding to capture vulnerability exposure and successful remediations.
  • Deliver vulnerability briefings to technical and non-technical stakeholders.
  • Maintain vulnerability scanning platforms and tooling in collaboration with Security Engineering.
  • Deliver strategic improvements to the vulnerability management process.

About you

  • Familiarity with key concepts of cyber security and vulnerability management, such as CVSS, CVE, OWASP Top 10 and Mitre ATT&CK
  • Strategic thinker, data-driven and analytical in approach to problem solving.
  • Strong team player and ability to take responsibility and act autonomously.
  • Ability to plan, organise and prioritise tasks.
  • Ability to interact proactively, professionally and confidently with colleagues across the business.
  • General understanding of how technology is maintained, particularly with regard to patching.
  • Understanding of the various types of security vulnerabilities that may affect a corporate environment

Good to know


Training to use relevant technologies and vulnerability management tools will be provided by the team.


This is a hybrid role, the successful candidate will be required in the office 2 days a week.

As well as a market competitive salary, 33 days annual leave (pro rata, including public holidays), we offer a range of employee benefits and rewards including:


• Option to buy additional annual leave up to 5 days per year
• Enhanced employer pension contributions – Up to 11% employer contributions
• Free Mortgage Brokering Services
• Enhanced family friendly policies
• Progression opportunities, including the ability to apply for funded training and coaching and mentoring programmes
• Gym and fitness discounts as well as high street shopping
• Cycle to work scheme
• Discount off all Welsh Water visitor attraction centres and gift shops
• Car-leasing scheme and free on-site parking at all sites
• Health CashBack scheme and access to an online GP service
• An employee assistance programme for employees and their immediate family
• Many more can be found here !


Whilst also working for a not-for profit company that truly cares about earning the trust of customers everyday, and about looking after our beautiful environment
Please note, we may close this role sooner if required. We may also extend the original closing date depending on interest.
Due to the nature of the industry, we require satisfactory references, post offer medical clearance, and a criminal records Basic Disclosure check on all new employees joining the business. For some roles there may be additional checks and security clearance required, and this offer is subject all checks being satisfied. You will receive further information on how to complete these checks via email once you have accepted this offer.

Who we are

Dŵr Cymru Welsh Water keep 3 million people healthy each day with safe, reliable water, and take away wastewater to clean, before returning it safely to our beautiful rivers and seas.

To be able to deliver high quality, essential services which help to protect the health of our customers, colleagues and our environment, we need the right people to deliver on our vision. This is achieved by living our core values and demonstrating the core behaviours that underpin them. The security of our people, assets and information is key to us, so we are looking for people who understand and comply with the company’s required security objectives.

We know that the most successful teams are the most diverse teams. Equality, diversity and inclusion provide the very foundation to our culture at Welsh Water. We want every individual to feel confident, proud and able to bring their whole selves to work.

To ensure an improved representation in our workforce, applications are particularly welcome from minority groups including Black, Asian and Minority Ethnic people, Females, LGBT+, Non-binary and people with disabilities. Together we continue to build a workplace that not only celebrates the diverse voices of our colleagues but also represents each customer we serve.

In essence, ours is a company based on trust, openness, respect, commitment and honesty. A company that our colleagues are proud to work for.

Dŵr Cymru Cyf, a limited company registered in Wales No. 2366777. Registered office: Linea, Fortran Road, St. Mellons, Cardiff CF3 0LT


Job Segment: Cyber Security, Engineer, Mortgage, Wastewater, Water Treatment, Security, Engineering, Finance

#J-18808-Ljbffr

Vulnerability Analyst in Cardiff employer: Dwr Cymru Welsh Water

Dŵr Cymru Welsh Water is an exceptional employer, offering a supportive and inclusive work culture that prioritises employee well-being and professional growth. With a competitive salary, generous benefits including enhanced pension contributions and opportunities for funded training, employees can thrive in their roles while contributing to the vital mission of providing safe water services to millions. Located in Cardiff, this hybrid role allows for flexibility, fostering a balanced work-life environment in a company that values trust, respect, and diversity.

Dwr Cymru Welsh Water

Contact Details:

Dwr Cymru Welsh Water Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Vulnerability Analyst in Cardiff

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Dwr Cymru Welsh Water, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Dwr Cymru Welsh Water

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Dwr Cymru Welsh Water. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Vulnerability Analyst in Cardiff

Knowledge of Cyber Security Principles
Familiarity with Vulnerability Management Tools
Understanding of CVSS, CVE, OWASP Top 10, and Mitre ATT&CK
Analytical Skills
Proactive Monitoring of Cyber Threat Intelligence
Stakeholder Management
Ability to Plan and Organise Tasks

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Dwr Cymru Welsh Water insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Dwr Cymru Welsh Water that you’re committed to staying ahead in the game.

How to prepare for a job interview at Dwr Cymru Welsh Water

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Dwr Cymru Welsh Water to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Dwr Cymru Welsh Water.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.