Vulnerability Management Specialist in Southampton

Vulnerability Management Specialist in Southampton

Southampton Temporary 55000 - 65000 £ / year (est.) Home office (partial)
Quilter plc

At a Glance

  • Tasks: Drive a risk-based vulnerability management programme and improve security processes.
  • Company: Quilter plc, a leading financial advice and wealth management provider.
  • Benefits: 26 days holiday, performance incentives, pension scheme, and flexible benefits.
  • Other info: Inclusive workplace that values diversity and offers excellent career growth.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
  • Qualifications: Experience with vulnerability management tools and strong communication skills.

The predicted salary is between 55000 - 65000 £ per year.

About the Business

Quilter plc is a leading provider of financial advice, investments, and wealth management. It oversees £141.9 billion in customer investments and serves affluent and high net‑worth clients with financial planning, investment platforms, multi‑asset solutions and discretionary fund management.

About the Role

Level: 4 • Department: Security Operations (Information Security) • Reports to: Head of Security Operations • Location: Southampton / London / England – Home Worker • Contract Type: Fixed Term 12 months

The Vulnerability Management Specialist will drive a risk‑based vulnerability management programme across on‑prem, cloud and external estate, prioritising remediation and delivering measurable outcomes.

Key Responsibilities

  • Operate and continuously improve vulnerability scanning and prioritisation using Qualys VMDR and associated capabilities, performing daily/weekly triage of new and emerging vulnerabilities, applying consistent severity mapping, and keeping up to date with emerging threats.
  • Own day‑to‑day CSPM triage and oversight, ensuring cloud posture findings are actionable, risk‑rated, and routed for remediation. Monitor compliance against cloud benchmarks and track “attack path” findings to closure.
  • Ingest and operationalise Attack Surface Management findings to identify and reduce risk from internet‑facing assets, unknown services and misconfigurations, working with infrastructure, cloud and network teams to validate exposure and drive remediation or risk acceptance.
  • Drive remediation outcomes through structured engagement with platform, infrastructure, application, endpoint and cloud teams, maintaining an exception and risk‑acceptance approach for non‑remediated vulnerabilities and overseeing major disclosure and zero‑day responses.
  • Produce accurate reporting and stakeholder communication, including trends, SLA performance, backlog health, and risk‑based prioritisation views, translating technical exposure into business impact.
  • Continuously improve vulnerability and CSPM processes, ensuring effective cadence and maintaining playbooks/runbooks for disclosure response.

Key Stakeholders

Security Operations / Detection Engineering, Cyber Threat, Infrastructure & Platform and Cloud Engineering, Application Owners, End User Computing, Risk & Governance partners, and relevant third‑party suppliers/MSSPs.

About You – Essential

  • Hands‑on experience operating enterprise vulnerability management tooling, especially Qualys VMDR, across complex environments.
  • Strong experience with Azure CSPM operations, including triage, prioritisation, remediation routing, and assurance.
  • Practical experience with Attack Surface Management concepts and workflows, validating exposed assets and driving remediation.
  • Deep understanding of code‑based and software component vulnerabilities and their exploitability.
  • Proven ability to run a risk‑based vulnerability programme, with stakeholder management, remediation tracking and clear reporting.
  • Excellent communicator able to explain technical vulnerabilities and remediation options to varied audiences.

About You – Desirable

  • Experience integrating vulnerability management with broader security tooling and control frameworks.
  • Experience in regulated environments, with evidence‑led reporting and governance expectations.

Qualifications / Certifications (optional)

Relevant security certification(s) such as CISSP/CCSP, Azure Security, vulnerability management or cloud security certifications.

Benefits

  • Holiday: 182 hours (26 days)
  • Quilter Incentive Scheme: eligibility for all employees to incentivise business performance.
  • Pension Scheme: non‑contributory company pension that can be boosted through personal contributions.
  • Healthcare Cash Plan: available to Jersey employees.
  • Benefit Allowance: cash benefit allowance payable in lieu of some core benefits.
  • Flexible benefits available to UK employees via salary deduction.

Inclusion & Diversity

We value diversity and promote inclusivity. We provide equal opportunities to all applicants and encourage a respectful, nurturing environment for everyone. We are committed to treating all job applicants fairly and with respect, welcoming people regardless of belief, culture, gender identity, ethnicity, sexual orientation or disability. Reasonable adjustments for the recruitment process are available upon request.

Vulnerability Management Specialist in Southampton employer: Quilter plc

Quilter plc is an exceptional employer, offering a dynamic work environment that prioritises employee growth and inclusivity. With a strong focus on professional development, employees in the Vulnerability Management Specialist role benefit from comprehensive training opportunities and a supportive culture that encourages collaboration across teams. Located in vibrant cities like Southampton and London, Quilter provides flexible working arrangements and a competitive benefits package, making it an attractive choice for those seeking meaningful and rewarding careers in financial services.

Quilter plc

Contact Details:

Quilter plc Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Vulnerability Management Specialist in Southampton

Tip Number 1

Network like a pro! Reach out to folks in the industry, especially those already working at Quilter plc. A friendly chat can open doors and give you insider info on the role.

Tip Number 2

Prepare for the interview by brushing up on your knowledge of vulnerability management tools, especially Qualys VMDR. We want to see you shine when discussing your hands-on experience!

Tip Number 3

Showcase your communication skills! Be ready to explain complex technical concepts in simple terms. This will help us see how well you can engage with different stakeholders.

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets the attention it deserves. Plus, we love seeing candidates who take that extra step.

We think you need these skills to ace Vulnerability Management Specialist in Southampton

Vulnerability Management
Qualys VMDR
CSPM Operations
Attack Surface Management
Risk Assessment
Stakeholder Management
Technical Communication

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Vulnerability Management Specialist role. Highlight your hands-on experience with tools like Qualys VMDR and any relevant cloud security operations you've managed. We want to see how your skills match up with what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about vulnerability management and how your experience aligns with our needs. Don’t forget to mention your ability to communicate technical details to various audiences – that’s a big plus for us!

Showcase Your Achievements:When detailing your past roles, focus on measurable outcomes. Did you reduce vulnerabilities by a certain percentage? Did you improve compliance metrics? We love seeing concrete examples of your impact in previous positions.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining our team at Quilter plc!

How to prepare for a job interview at Quilter plc

Know Your Tools Inside Out

Make sure you’re well-versed in the tools mentioned in the job description, especially Qualys VMDR. Familiarise yourself with its features and how it integrates into vulnerability management processes. Being able to discuss your hands-on experience with these tools will show that you're ready to hit the ground running.

Understand the Cloud Landscape

Since the role involves Azure CSPM operations, brush up on your knowledge of cloud security posture management. Be prepared to discuss how you would triage and prioritise vulnerabilities in a cloud environment. This shows you can think critically about risk management in modern infrastructures.

Communicate Clearly

You’ll need to explain technical vulnerabilities to various stakeholders, so practice articulating complex concepts in simple terms. Think of examples from your past experiences where you successfully communicated technical issues to non-technical audiences. This will demonstrate your ability to bridge the gap between tech and business.

Show Your Problem-Solving Skills

Prepare to discuss specific instances where you’ve driven remediation outcomes or improved processes in vulnerability management. Use the STAR method (Situation, Task, Action, Result) to structure your answers. This will help interviewers see your proactive approach and problem-solving capabilities.