At a Glance
- Tasks: Lead vulnerability management and enhance cyber defence capabilities in a dynamic team.
- Company: Join the Intellectual Property Office, a key player in cyber security.
- Benefits: Competitive salary, generous leave, hybrid working, and unlimited learning access.
- Other info: Great career progression opportunities and a collaborative team culture.
- Why this job: Make a real impact on cyber security while developing your skills in a supportive environment.
- Qualifications: Experience in vulnerability management and excellent communication skills required.
The predicted salary is between 47766 - 47766 £ per year.
This role is for an experienced professional in vulnerability management and threat intelligence to join our Cyber Operations team. You will work closely with colleagues across the organisation to further mature and continuously improve our cyber defence capabilities. Cyber Operations forms part of a wider, well established security function operating within a highly regulated environment.
In this role, you will lead and continuously enhance the management of vulnerability assessments across our hybrid IT estate. You will prioritise remediation activities using a risk based, threat informed approach, collaborating with stakeholders to strengthen the security posture of our systems and services.
You will also develop and mature our threat intelligence capability, identifying and maintaining relevant intelligence sources to inform tactical, operational, and strategic decision making. You will produce and share high quality threat intelligence products with internal and external stakeholders and use this intelligence to support vulnerability management and threat hunting activities.
Additionally, you will contribute to incident response processes and provide support to colleagues responsible for the IPO’s protection, detection, and response capabilities.
If you have strong relevant expertise, excellent communication skills and a collaborative working style we would love to hear from you.
Working Style
This role will be carried out in-line with IPO Hybrid working arrangements where staff are currently expected to spend at least 20% of their time working onsite from one of our offices. This role is based in our Newport Office. The requirement for attendance at an office location can vary by role so we would encourage candidates to discuss working arrangements with the recruiting manager to agree a reasonable balance between working from home and the office.
Main duties consist of but are not limited to:
- Vulnerability Management (Primary Focus)
- Lead and enhance the organisation’s vulnerability management programme, including our Penetration Testing programme across a complex hybrid IT environment covering both infrastructure and applications. This will include scoping, scanning, prioritising work, engaging with stakeholders, and ensuring remediation activities happen in a timely fashion.
- Prioritise vulnerabilities using a risk‑based, threat‑informed approach to support organisational objectives, regulatory requirements, and audit needs.
- Oversee the full lifecycle of vulnerabilities, including triage, mitigation planning, remediation recommendations, and stakeholder coordination.
- Develop and maintain vulnerability management policies, procedures, standards, and best practice guidance.
- Produce high quality tactical, operational, and strategic intelligence assessments and briefings using analysis and interpretation of current threat intelligence. Utilising and liaising with internal stakeholders, commercial sources, open-source intelligence and government partners to provide a rounded, comprehensive view of the current threat landscape.
- Lead initiatives to strengthen the organisation’s intelligence capability and participate in information sharing communities.
- Play an integral part in Cyber Security risk management, conducting risk and threat assessments aligned with regulations. Using your knowledge of standards and expertise to support our stakeholders by providing pragmatic and proportionate advice and best practice guidance.
- Metrics & Reporting
- Develop and maintain actionable metrics that demonstrate the effectiveness of the organisation’s vulnerability management and threat intelligence capabilities.
- Contribute to and enhance our incident response processes, representing Cyber Security in operational incident calls, keeping stakeholders informed and liaising with government bodies to ensure timely and effective management of threat intelligence and threat hunting.
Person specification
- Strong understanding and experience of vulnerability management, threat intelligence and security operations within a complex enterprise environment.
- Experience of managing and developing penetration testing programs.
- Knowledge of secure development practices and where security testing for vulnerabilities fits into the Software Development Lifecycle (SDLC).
- Broad technical knowledge, especially around hybrid and cloud architectures, identity management and application security.
- Highly organised and self-motivated, able to manage and deliver on multiple concurrent tasks.
- Excellent communication and interpersonal skills. Ability to interact with stakeholders of all levels with the ability to explain complex security concepts to non-technical audiences.
- A team player who is enthusiastic about contributing to the overall success of the team and collaborating with stakeholders of all levels.
- Sense of urgency and an ability to respond to tasks proactively and promptly.
- Continually stay abreast of emerging security technologies, threats and trends. Self-motivated to drive their learning needs.
Alongside your salary of £47,766, Intellectual Property Office contributes £13,837 towards you being a member of the Civil Service Defined Benefit Pension scheme. Find out what benefits a Civil Service Pension provides.
- Unlimited Pluralsight video learning access.
- Access to Microsoft’s ESI training suite.
- Hybrid working with no core hours.
- Substantial support for career progression.
- 25 days annual leave moving to 30 days in annual increments.
- You will also get 8 days public leave and 1 day privilege leave.
Threat and Vulnerability Manager in Newport employer: Intellectual Property Office UK
The Intellectual Property Office (IPO) is an exceptional employer, offering a dynamic work environment in Newport where innovation meets collaboration. With a strong focus on employee growth, we provide unlimited access to learning resources, substantial support for career progression, and a generous leave policy, ensuring a healthy work-life balance. Our hybrid working model allows for flexibility while fostering a culture of teamwork and excellence in cyber security.
Contact Details:
Intellectual Property Office UK Recruitment Team
StudySmarter Expert Advice🤫
We think this is how you could land Threat and Vulnerability Manager in Newport
✨Tip Number 1
Network like a pro! Reach out to your connections in the cyber security field, attend industry events, and join relevant online forums. The more people you know, the better your chances of landing that Threat and Vulnerability Manager role.
✨Tip Number 2
Prepare for interviews by brushing up on your knowledge of vulnerability management and threat intelligence. Be ready to discuss your experience with penetration testing and how you've tackled security challenges in the past. We want to see your expertise shine!
✨Tip Number 3
Showcase your communication skills! Practice explaining complex security concepts in simple terms. This will help you connect with stakeholders during interviews and demonstrate that you're a team player who can collaborate effectively.
✨Tip Number 4
Don't forget to apply through our website! It's the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about their job search. So, get your application in before the deadline!
We think you need these skills to ace Threat and Vulnerability Manager in Newport
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the Threat and Vulnerability Manager role. Highlight your experience in vulnerability management and threat intelligence, and don’t forget to showcase your communication skills and collaborative working style!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for our Cyber Operations team. Mention specific examples of how you've led vulnerability management programmes or developed threat intelligence capabilities.
Showcase Your Technical Skills:We want to see your technical expertise! Make sure to include any relevant experience with penetration testing, hybrid IT environments, and secure development practices. This will help us understand how you can contribute to our security posture.
Apply Through Our Website:Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it gives you a chance to explore more about our company culture and values.
How to prepare for a job interview at Intellectual Property Office UK
✨Know Your Vulnerabilities
Before the interview, brush up on your knowledge of vulnerability management and threat intelligence. Be prepared to discuss specific methodologies you've used in past roles, especially in hybrid IT environments. This will show that you understand the complexities of the role and can hit the ground running.
✨Showcase Your Communication Skills
Since this role involves collaborating with various stakeholders, practice explaining complex security concepts in simple terms. Think of examples where you've successfully communicated technical information to non-technical audiences. This will demonstrate your ability to bridge the gap between technical and non-technical teams.
✨Prepare for Scenario-Based Questions
Expect questions that ask how you would handle specific situations related to vulnerability assessments or incident responses. Prepare by thinking through real-life scenarios you've faced and how you approached them. This will help you articulate your thought process and decision-making skills during the interview.
✨Stay Updated on Cyber Trends
Make sure you're aware of the latest trends and emerging threats in cybersecurity. Being able to discuss current events or recent vulnerabilities will show your passion for the field and your commitment to staying informed. It also demonstrates that you can bring valuable insights to the team.