Vulnerability Management Analyst - Offensive in Derby
Vulnerability Management Analyst - Offensive

Vulnerability Management Analyst - Offensive in Derby

Derby Full-Time 36000 - 60000 £ / year (est.) No home office possible
Go Premium
I

At a Glance

  • Tasks: Conduct vulnerability assessments and collaborate with teams to remediate security risks.
  • Company: Join a leading retailer's Global Threat & Vulnerability function.
  • Benefits: Competitive salary, hands-on experience, and opportunities for professional growth.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
  • Qualifications: 1-2 years in vulnerability management and knowledge of cloud environments.
  • Other info: Dynamic team environment with a focus on offensive security.

The predicted salary is between 36000 - 60000 £ per year.

We’re supporting a household-name retailer to hire a hands-on Cyber Vulnerability Management Analyst into their Global Threat & Vulnerability function. You’ll run scanning across cloud, networks and apps, turn findings into risk-based actions, and partner with SOC, AppSec, Networks and Cloud to land fixes fast. If you enjoy closing the loop—from discovery to remediation—and automating the boring bits, you’ll love this. The role will be focused on offensive security and have experience in Bug Bounty Programs working with companies such as Hacker One, Red Teaming and Pen Testing Web Applications.

Responsibilities

  • Conduct comprehensive vulnerability assessments on systems, networks, and applications.
  • Analyse and interpret vulnerability scan results, prioritise findings using risk-based prioritisation methodology, and provide actionable recommendations for remediation.
  • Evaluate and manage vulnerabilities, including prioritisation, investigation, and tracking remediation activities.
  • Evaluate new tools and techniques in security testing and articulate their value and impact.
  • Operate vulnerability and configuration scanning tools, like Tenable, Qualys, InsightVM.
  • Perform technical and non-technical risk and vulnerability assessments of relevant technology focus areas.
  • Define, create and implement various SOPs (Standard Operating Procedures) and SOMs (Service Operating Models).
  • Use asset risk profiles, vulnerability severity ratings, and threat information to communicate remediation priorities.
  • Support incident response in investigations and response at all stages.
  • Assist and work closely with our offensive security team, SOC team, Network Team, AppSec team.
  • Generate and distribute operational-level reports and key vulnerability reporting metrics along with KPIs, KRIs and monthly/weekly reporting.
  • Maintain communication with the Vulnerability Management Lead and other internal & external stakeholders for collaboration and information sharing.
  • Maintain knowledge of applicable policies, regulations, and compliance documents.
  • Engage in team working and demonstrate a professional, motivated attitude.
  • Collaborate with the security compliance team to meet compliance and regulation requirements.
  • Leverage threat intelligence sources to inform on exposure to vulnerabilities.
  • Assist in automated or manual patching remediation processes.

Essential

  • 1-2 years experience in vulnerability management role or equivalent.
  • Hands-on experience with vulnerability assessments, management, and remediation strategies.
  • Project management skills to help deliver vulnerability programs.
  • Understanding of cloud environments (AWS, Azure, GCP) and their unique vulnerabilities.
  • Detailed understanding of Windows, Linux/Unix, and other OS vulnerabilities.
  • Ability to perform risk analysis and prioritise vulnerabilities based on severity and impact.
  • Aptitude for analysing complex technical information and cyber threats.
  • Security Framework Knowledge: Familiarity with common security frameworks like CIS, NIST.

Vulnerability Management Analyst - Offensive in Derby employer: InfoSec People Ltd

As a leading household-name retailer, we pride ourselves on fostering a dynamic and inclusive work environment where innovation thrives. Our Cyber Vulnerability Management Analyst role offers not only competitive benefits and opportunities for professional growth but also the chance to collaborate with top-tier security teams in a vibrant location. Join us to make a meaningful impact in the world of cybersecurity while enjoying a culture that values teamwork, creativity, and continuous learning.
I

Contact Detail:

InfoSec People Ltd Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Vulnerability Management Analyst - Offensive in Derby

✨Tip Number 1

Network, network, network! Get out there and connect with professionals in the cybersecurity field. Attend meetups, webinars, or even local events. You never know who might have a lead on that perfect Vulnerability Management Analyst role!

✨Tip Number 2

Show off your skills! Create a portfolio showcasing your experience with vulnerability assessments and any projects you've worked on, especially if they involve Bug Bounty Programs or Red Teaming. This will help you stand out when chatting with potential employers.

✨Tip Number 3

Don’t just apply blindly! Tailor your approach for each company. Research their security practices and mention how your skills can specifically help them improve their vulnerability management. This shows you're genuinely interested and not just sending out generic applications.

✨Tip Number 4

Use our website to find roles that match your skills! We’ve got a range of opportunities in cybersecurity, including the Vulnerability Management Analyst position. Applying through us means you’ll be in the loop for updates and tips directly from the source!

We think you need these skills to ace Vulnerability Management Analyst - Offensive in Derby

Vulnerability Assessment
Risk Analysis
Cloud Security (AWS, Azure, GCP)
Bug Bounty Programs
Red Teaming
Penetration Testing
Vulnerability Management
Technical and Non-Technical Risk Assessments
SOP and SOM Development
Vulnerability Scanning Tools (Tenable, Qualys, InsightVM)
Cyber Threat Analysis
Project Management
Security Framework Knowledge (CIS, NIST)
Collaboration Skills
Communication Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV speaks directly to the role of Vulnerability Management Analyst. Highlight your experience with vulnerability assessments, cloud environments, and any relevant tools like Tenable or Qualys. We want to see how your skills match what we're looking for!

Show Off Your Experience: Don’t just list your past jobs—tell us about your hands-on experience in vulnerability management and any Bug Bounty Programs you've been part of. We love seeing real examples of how you've tackled vulnerabilities and worked with teams to fix them.

Be Clear and Concise: When writing your application, keep it straightforward. Use bullet points where possible and avoid jargon unless it's relevant. We appreciate clarity, so make it easy for us to see why you’re a great fit for the role!

Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It helps us keep track of applications and ensures you’re considered for the role. Plus, it’s super easy to do!

How to prepare for a job interview at InfoSec People Ltd

✨Know Your Tools

Familiarise yourself with the vulnerability scanning tools mentioned in the job description, like Tenable and Qualys. Be ready to discuss your hands-on experience with these tools and how you've used them to conduct assessments and prioritise vulnerabilities.

✨Showcase Your Offensive Security Experience

Since the role focuses on offensive security, highlight any experience you have with Bug Bounty Programs or Red Teaming. Prepare specific examples of how you've identified and remediated vulnerabilities in past roles, especially in web applications.

✨Understand Risk-Based Prioritisation

Brush up on risk-based prioritisation methodologies. Be prepared to explain how you would analyse scan results and prioritise findings based on severity and impact. This will show that you can turn technical findings into actionable recommendations.

✨Collaborative Mindset

This role requires working closely with various teams like SOC, AppSec, and Networks. Think of examples where you've successfully collaborated with different teams to resolve vulnerabilities or improve security processes. Emphasising your teamwork skills will demonstrate your fit for the role.

Vulnerability Management Analyst - Offensive in Derby
InfoSec People Ltd
Location: Derby
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>