At a Glance
- Tasks: Manage vulnerabilities across cloud and infrastructure, ensuring security and risk assessment.
- Company: Join Qube Research & Technologies, a leading global investment manager with a tech-driven culture.
- Benefits: Enjoy a supportive work environment, competitive salary, and initiatives for work-life balance.
- Other info: Diverse and inclusive workplace with excellent career growth opportunities.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technology and innovative teams.
- Qualifications: 3-6 years in vulnerability management, strong technical skills, and scripting experience.
The predicted salary is between 60000 - 80000 £ per year.
Qube Research & Technologies (QRT) is a global quantitative and systematic investment manager, operating in all liquid asset classes across the world. We are a technology- and data-driven group implementing a scientific approach to investing. Combining data, research, technology, and trading expertise has shaped our collaborative mindset, which enables us to solve the most complex challenges. QRT’s culture of innovation continuously drives our ambition to deliver high-quality returns for our investors.
You will join the security function responsible for running the vulnerability management programme across infrastructure and cloud environments. You will work closely with Engineering and Infrastructure/Operations teams to identify, validate, prioritise, and track remediation of vulnerabilities in line with defined risk standards.
Your Future Role within QRT
- Vulnerability Discovery & Analysis
- Operate and maintain vulnerability scanning tools across on-premise, cloud, and hybrid environments.
- Analyse and validate vulnerability findings, reducing false positives and ensuring accurate risk assessment.
- Enrich findings with context such as exploitability, exposure, asset criticality, and compensating controls.
- Technical Validation & Verification
- Perform manual validation of vulnerabilities where required, including configuration review and targeted testing.
- Support pre-deployment testing and post-remediation verification to confirm vulnerabilities have been effectively addressed.
- Validate patching outcomes and configuration changes using appropriate tools and techniques.
- Remediation Support
- Work closely with infrastructure, cloud, and engineering teams to support remediation efforts.
- Provide clear technical guidance on vulnerability remediation, configuration changes, and patching approaches.
- Assist in the development of remediation playbooks and standard operating procedures.
- Tooling & Automation
- Support the implementation and ongoing improvement of vulnerability management tooling.
- Develop scripts, queries, and automation to improve coverage, accuracy, and efficiency.
- Integrate vulnerability data with other security and operational systems where appropriate.
- Reporting & Metrics
- Produce accurate vulnerability data, metrics, and dashboards to support reporting and tracking.
- Ensure vulnerability records are kept up to date and remediation status is accurately reflected.
- Continuous Improvement & Threat Awareness
- Stay current on emerging vulnerabilities, attack techniques, and exploitation trends.
- Contribute to process improvements and technical enhancements within the vulnerability management function.
- Incident & Security Support
- Support security incidents by identifying relevant vulnerabilities and providing technical context.
- Assist in rapid assessment and validation of vulnerabilities under active exploitation.
Your Present Skillset
- 3–6 years’ experience in vulnerability management, infrastructure security, or a related technical security role
- Hands-on experience with vulnerability scanning and assessment tools
- Strong understanding of operating systems, networking, and common infrastructure technologies
- Experience working in cloud environments (AWS and/or Azure)
- Ability to assess real-world risk beyond CVSS (exploitability, exposure, environment context)
- Scripting/automation capability (e.g., Python, PowerShell, or similar)
- Experience collaborating with engineering and operations teams to drive remediation
- Familiarity with patch management and configuration management practices
- Exposure to security standards or frameworks (e.g., NIST, ISO 27001)
- Experience in large-scale or enterprise environments
- Relevant technical certifications (optional)
QRT is an equal opportunity employer. We welcome diversity as essential to our success. QRT empowers employees to work openly and respectfully to achieve collective success. In addition to professional achievement, we are offering initiatives and programs to enable employees achieve a healthy work-life balance.
Vulnerability Management Engineer employer: Quberesearchandtechnologies
At Qube Research & Technologies, we pride ourselves on being an exceptional employer that fosters a collaborative and innovative work culture. Our commitment to employee growth is evident through continuous learning opportunities and a supportive environment that encourages professional development. Located in a vibrant area, we offer competitive benefits and the chance to work with cutting-edge technologies in identity and access management, making your role both meaningful and rewarding.
Contact Details:
Quberesearchandtechnologies Recruitment Team
StudySmarter Expert Advice🤫
We think this is how you could land Vulnerability Management Engineer
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Quberesearchandtechnologies, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Quberesearchandtechnologies
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Quberesearchandtechnologies. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Vulnerability Management Engineer
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Quberesearchandtechnologies insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Quberesearchandtechnologies that you’re committed to staying ahead in the game.
How to prepare for a job interview at Quberesearchandtechnologies
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Quberesearchandtechnologies to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Quberesearchandtechnologies.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.