Job Description
Cloud Vulnerability Lead
/n
/n
Rate - Β£600 - Β£650 Inside IR35
/n Duration - 6 months initial
/n Location - London (3 days a week on site)
/n
/n
We're looking for a Cloud Vulnerability Lead to own and mature our cloud vulnerability management and CSPM capability across AWS and GCP.
/n
/n
This role combines hands-on technical expertise with leadership responsibility. You'll be the go-to SME for Qualys, ensuring the platform is being used effectively, while providing oversight of vulnerability management, cloud security posture and remediation activity across the organisation.
/n
/n
You'll also manage a small team and work closely with Cloud Engineering, Infrastructure and Security stakeholders to drive continuous improvement and reduce cloud security risk.
/n
/n
Key Responsibilities
/n
/n
- Lead the cloud vulnerability management and CSPM function across AWS and GCP.
/n
- Own and optimise the use of Qualys VMDR, CSAM, TotalCloud and CSPM capabilities.
/n
- Assess current processes, tooling and coverage, identifying opportunities to improve effectiveness and maturity.
/n
- Provide technical oversight of vulnerability prioritisation, remediation tracking and risk reporting.
/n
- Identify cloud misconfigurations, exposure risks and compliance gaps, driving remediation with key stakeholders.
/n
- Manage and develop a small team, providing technical guidance and support.
/n
- Produce metrics and reporting to demonstrate security posture and risk reduction.
/n
- Act as the senior point of contact for cloud vulnerability and posture management activities.
/n
/n
/n
Required Experience
/n
/n
- Strong hands-on experience with Qualys VMDR, CSAM and CSPM.
/n
- Deep understanding of AWS and GCP security and cloud risk management.
/n
- Experience leading or improving vulnerability management and CSPM programmes.
/n
- Ability to balance technical delivery with oversight and governance responsibilities.
/n
- Previous experience managing or mentoring a small team.
/n
- Strong stakeholder engagement skills with the ability to influence technical and non-technical audiences.
/n
/n
Reasonable Adjustments:
/n
Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.
/n
If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.
Cloud Vulnerability Lead in London employer: Sanderson
At Sanderson, we pride ourselves on being an excellent employer, offering a dynamic work culture that fosters collaboration and innovation in the heart of Belfast. Our commitment to employee growth is evident through tailored development programmes and opportunities for advancement, ensuring that our team members thrive in their careers while enjoying competitive rewards and a strong focus on health and safety compliance. Join us to take ownership of impactful projects and be part of a supportive environment that values your contributions.