Vulnerability Management Support Engineer | S2 | Chief Information & Resilience Office | Milton Keynes

Vulnerability Management Support Engineer | S2 | Chief Information & Resilience Office | Milton Keynes

Full-Time 49600 - 66744 £ / year (est.) No working from home possible
Santander UK

At a Glance

  • Tasks: Support security vulnerability assessments and coordinate remediation efforts across teams.
  • Company: Join Santander UK, a tech-driven organisation with a focus on innovation and inclusivity.
  • Benefits: Competitive salary, generous holiday, and a £500 annual cash allowance for benefits.
  • Other info: Opportunities for professional growth and a supportive, diverse workplace culture.
  • Why this job: Make a real impact in cybersecurity while growing your skills in a dynamic environment.
  • Qualifications: Understanding of cyber security principles and excellent communication skills required.

The predicted salary is between 49600 - 66744 £ per year.

This job is with Santander UK, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community.

IT STARTS HERE. Santander is evolving from a global, high-impact brand into a technology-driven organisation, and our people are at the heart of this journey. Together, we are driving a customer-centric transformation that values bold thinking, innovation, and the courage to challenge what's possible. This is more than a strategic shift. It's a chance for driven professionals to grow, learn, and make a real difference. Our mission is to contribute to help more people and businesses prosper. We embrace a robust risk culture and all our professionals at all levels are expected to take a proactive and responsible approach toward risk management.

THE DIFFERENCE YOU MAKE. Santander UK is looking for a Vulnerability Management Support Engineer based out of Milton Keynes. We are seeking a Vulnerability Management and Security Hardening Support Engineer to support on assessment and remediation of security vulnerabilities within infrastructure. The successful candidate will play a supporting role in analysing security vulnerabilities and security hardening, coordinating with cross-functional teams, and providing governance and oversight for implementing timely, effective remediation to reduce the organisation's risk exposure.

To succeed in this role, you will be responsible for:

  • Support with system, application, and infrastructure teams to prioritise and remediate vulnerabilities across on-premise and cloud environments.
  • Assign, track and update remediation status in dashboards, spreadsheet and ticketing systems e.g. JIRA, ServiceNow & Elastic.
  • Assisting in troubleshooting, performing root cause analysis, and implementing corrective actions under supervision.
  • Maintain documentation of exceptions, waivers, or risk acceptances.
  • Support CMDB and asset inventory updates related to scan coverage and tool integration.
  • Act as the liaison between the security function (who identifies vulnerabilities) and the IT teams (who implement fixes).
  • Link vulnerability IDs (CVEs) to corresponding tickets for traceability.
  • Generate weekly/monthly reports.
  • Maintain SOPs and runbooks for remediation tasks.

WHAT YOU'LL BRING. Our people are our greatest strength. Every individual contributes unique perspectives that make us greater as a team and as an organisation. We're enabling teams to go beyond by valuing who they are and empowering what they bring. The following requirements represent the knowledge, skills, and abilities essential for success in this role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Professional Experience:

  • Understanding of Information / Cyber Security Principles & Technologies. (Required)
  • Excellent Verbal & Written Communication Skills (Required)
  • Great analytical, problem-solving, and troubleshooting skills. (Required)
  • Understanding of scripting and automation (e.g., Python, PowerShell) to enhance vulnerability management processes. (Preferred)
  • An understanding of cyber risk and how cyber-attacks are conducted across endpoints, cloud and on-premise networks (Preferred)

Education:

  • Degree in Computer Science, Information Security, or related field (Preferred)
  • Relevant industry certifications (Preferred): Such as CompTIA Security+, CISSP, CISM, or similar. (Preferred)

Hard Skills:

  • Understanding of Information / Cyber Security Principles & Technologies. Knowledge of security concepts, vulnerability management, and risk assessment. (Required)
  • Scripting and Automation: Familiarity with scripting languages such as Python or PowerShell to automate vulnerability management tasks. (Preferred)
  • Knowledge of Cyber Risk and Attack Methods: Understanding how cyber-attacks are conducted across endpoints, cloud, and on-premise networks. (Preferred)
  • Experience with Ticketing Systems: Using tools like JIRA, ServiceNow, and Elastic for tracking and updating remediation status. (Preferred)
  • Reporting: Ability to generate weekly/monthly reports and maintain SOPs/runbooks. (Preferred)
  • Asset Management: Supporting CMDB and asset inventory updates related to scan coverage and tool integration. (Preferred)

Soft Skills:

  • Great Verbal & Written Communication Skills: Ability to communicate clearly with cross-functional teams and document processes. (Required)
  • Analytical, Problem-Solving, and Troubleshooting Skills: Capable of investigating issues, performing root cause analysis, and implementing corrective actions. (Required)
  • Collaboration: Experience working with multiple teams (security, IT, infrastructure) to coordinate remediation efforts. (Required)
  • Attention to Detail: Maintaining accurate documentation, tracking remediation status, and ensuring traceability. (Required)
  • Adaptability: Willingness to learn new technologies and adapt to evolving security threats and processes. (Required)
  • Proactive Attitude: Taking initiative in risk management and vulnerability remediation. (Required)

WE VALUE YOUR IMPACT. At Santander, your contribution matters. We recognise the difference you make every day, and we make sure you feel valued, supported and rewarded in return. Here, recognition goes beyond pay. It's about the pride you feel in your work, the impact you have on customers and communities, and the opportunities you have to grow and thrive - personally and professionally.

Salary Range: £44,496.00 - £66,744.00 per annum (depending on experience). This salary range represents the expected remuneration for the role. Annual salary is based on a standard 35-hour working week. Actual salary offered will depend on skills, experience, qualifications and location.

£500 annual cash allowance to spend on our great range of benefits. 27 days' holiday plus

Vulnerability Management Support Engineer | S2 | Chief Information & Resilience Office | Milton Keynes employer: Santander UK

Santander UK is an excellent employer, offering a vibrant work culture that fosters innovation and collaboration within the financial services sector. Employees benefit from a competitive salary, generous holiday allowance, and comprehensive health coverage, alongside opportunities for professional growth in a supportive environment. Working in this dynamic location not only enhances career prospects but also allows for meaningful contributions to risk management in technology and operations.

Santander UK

Contact Details:

Santander UK Recruitment Team

We think you need these skills to ace Vulnerability Management Support Engineer | S2 | Chief Information & Resilience Office | Milton Keynes

Understanding of Information / Cyber Security Principles & Technologies
Excellent Verbal & Written Communication Skills
Analytical Skills
Problem-Solving Skills
Troubleshooting Skills
Scripting and Automation (e.g., Python, PowerShell)
Knowledge of Cyber Risk and Attack Methods