At a Glance
- Tasks: Manage and optimise the Tenable vulnerability management platform for diverse clients.
- Company: Join Telefónica Tech, a leading NextGen Tech solutions provider with a global presence.
- Benefits: Flexible remote work, competitive salary, and continuous professional development.
- Other info: Collaborative environment with opportunities to grow your career in tech.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: 5+ years in cybersecurity, with expertise in Tenable products and vulnerability management.
The predicted salary is between 36000 - 60000 € per year.
Company Description
Telefónica Tech (part of the Telefónica Group) is a leading NextGen Tech solutions provider with a highly diversified team of over 6,000 exceptionally skilled employees and +60 nationalities. We serve more than 5.5m customers every day in over 175 countries, with a global ecosystem of market-leading partners. Global strategic hubs: Spain, Brazil, the UK, Germany. The Telefónica Tech UK&I hub has an end-to-end portfolio of market-leading services and develops integrated technology solutions to accelerate digital transformation through: Cloud, Data & AI, Enterprise Applications, Digital Workplace, Cyber Security & Networking.
Values: Open, Bold, Trusted
Job Description
This role offers flexibility with remote working options.
Reports To: SOC Manager
As a Vulnerability Manager at Telefónica Tech, you will be instrumental in identifying, assessing, prioritising, and facilitating the remediation of security vulnerabilities for our diverse client base. You will be the primary expert responsible for the end-to-end management of our Tenable vulnerability management platform (e.g., Tenable.io, Tenable.sc, Nessus), ensuring optimal performance, accurate reporting, and actionable insights for our clients. Your work will directly contribute to enhancing our clients' security posture and maintaining their compliance with industry standards.
Key Responsibilities:
- Tenable Platform Management: Administer, configure, and optimise the Tenable vulnerability management platform across multiple client environments. Develop, schedule, and execute regular vulnerability scans (internal, external, web application, cloud, container) using Tenable products. Manage Tenable agents, scanners, and integrations to ensure comprehensive asset coverage and accurate data collection. Troubleshoot and resolve any issues related to scan execution, data ingestion, or platform performance. Stay abreast of new Tenable features and updates, and implement them to enhance service delivery.
- Vulnerability Identification & Analysis: Analyse scan results from Tenable to identify and assess security vulnerabilities across diverse client infrastructures (on-premise, cloud, endpoints, applications, networks). Prioritise vulnerabilities based on risk, leveraging industry-standard frameworks (CVSS), threat intelligence, asset criticality, and client-specific context. Conduct in-depth research on identified Common Vulnerabilities and Exposures (CVEs) and their potential impact.
- Reporting & Communication: Generate clear, concise, and actionable vulnerability reports and dashboards for various client stakeholders (technical, management, executive). Present vulnerability findings, risk assessments, and remediation recommendations to clients, clearly articulating the business impact of security weaknesses. Track and report on remediation progress, compliance metrics, and overall vulnerability management program effectiveness for each client.
- Remediation & Advisory: Work closely with client IT, operations, and development teams to provide guidance and support for vulnerability remediation efforts. Recommend appropriate mitigation strategies, including patching, configuration changes, architectural improvements, and compensating controls. Facilitate the communication and coordination between clients and internal security teams (e.g., Incident Response, Security Architecture).
- Process Improvement & Compliance: Develop, maintain, and continuously improve vulnerability management policies, procedures, and runbooks within the MSSP framework. Ensure vulnerability management processes align with industry best practices (e.g., NIST, ISO 27001, CIS Controls) and regulatory requirements (e.g., GDPR, PCI DSS). Contribute to internal and external audits by providing documentation and evidence related to vulnerability management.
- Threat Intelligence & Research: Stay current with the latest cybersecurity threats, attack techniques, and vulnerability disclosures. Integrate threat intelligence into vulnerability assessments to enhance prioritisation and proactive defence.
Required Skills & Experience:
- Proven Experience: Minimum of 5 years of experience in cybersecurity, with at least 3 years specifically in vulnerability management within an MSSP or large enterprise environment.
- Tenable Expertise: Deep hands-on experience with Tenable products, including Tenable.io, Tenable.sc, Nessus Professional, and Nessus Agents. Experience with Tenable One is highly desirable.
- Technical Acumen: Strong understanding of network protocols, operating systems (Windows, Linux), cloud platforms (AWS, Azure, GCP), databases, and web applications.
- Vulnerability Assessment: Proficient in interpreting vulnerability scan results, performing risk assessments, and applying vulnerability scoring systems (e.g., CVSS).
- Cybersecurity Frameworks: Familiarity with common security frameworks and standards (e.g., NIST CSF, ISO 27001, CIS Controls, OWASP Top 10).
- Analytical & Problem-Solving: Excellent analytical skills with the ability to identify trends, root causes, and develop effective solutions.
- Communication: Exceptional written and verbal communication skills, with the ability to translate complex technical information into clear, actionable insights for both technical and non-technical audiences.
- Collaboration: Proven ability to work effectively in a fast-paced, client-facing environment, collaborating with internal teams and external stakeholders.
- Certifications (Highly Desirable): Tenable Certifications (e.g., Tenable Certified Nessus User, Tenable Certified SC User, Tenable.io Certified Professional) Industry certifications such as CISSP, CISM, CompTIA Security+, CEH.
- Clearance: Ability to pass SC.
- Education: Bachelor's degree in Computer Science, Information Security, or a related technical field, or equivalent practical experience.
What We Offer:
- Opportunity to work with a leading global MSSP and manage cutting-edge security technologies.
- Exposure to a diverse range of client environments and industries.
- Continuous professional development and training opportunities.
- A collaborative and innovative work environment.
- Competitive salary and benefits package.
We don’t believe hiring is a tick box exercise, so if you feel that you don’t match the job description 100%, but would still be a great fit for the role, please get in touch.
Locations
Vulnerability Manager (Hiring Immediately) in Cheshire, Daresbury employer: telefonicatech
Telefónica Tech is an exceptional employer, offering a dynamic work culture that values openness, boldness, and trust. Located in Daresbury, Warrington, the company provides flexible remote working options, competitive salaries, and continuous professional development opportunities, making it an ideal place for those looking to grow their careers in cybersecurity while working with cutting-edge technologies and a diverse client base.
StudySmarter Expert Advice🤫
We think this is how you could land Vulnerability Manager (Hiring Immediately) in Cheshire, Daresbury
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend meetups, and connect with current employees at Telefónica Tech. A friendly chat can sometimes lead to job opportunities that aren’t even advertised!
✨Tip Number 2
Show off your skills! Prepare a portfolio or case studies showcasing your experience with vulnerability management and Tenable products. This will help you stand out during interviews and demonstrate your hands-on expertise.
✨Tip Number 3
Practice makes perfect! Get ready for those interviews by doing mock sessions with friends or using online platforms. Focus on articulating your thought process when tackling vulnerability assessments and remediation strategies.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you’re genuinely interested in joining the Telefónica Tech team.
We think you need these skills to ace Vulnerability Manager (Hiring Immediately) in Cheshire, Daresbury
Some tips for your application 🫡
Tailor Your CV:Make sure your CV reflects the skills and experiences that match the Vulnerability Manager role. Highlight your hands-on experience with Tenable products and any relevant certifications to catch our eye!
Craft a Compelling Cover Letter:Use your cover letter to tell us why you're passionate about cybersecurity and how your background makes you a great fit for our team. Be sure to mention specific projects or achievements that showcase your expertise.
Showcase Your Communication Skills:Since you'll be presenting findings to clients, it's crucial to demonstrate your ability to communicate complex information clearly. Use your application to show off your writing skills and how you can make technical details accessible.
Apply Through Our Website:We encourage you to apply directly through our website for the best chance of getting noticed. It’s the quickest way for us to see your application and get you in the door for an interview!
How to prepare for a job interview at telefonicatech
✨Know Your Tenable Inside Out
Make sure you’re well-versed in the Tenable platform, including Tenable.io and Nessus. Familiarise yourself with its features and functionalities, as you’ll likely be asked to discuss how you’ve used these tools in past roles.
✨Showcase Your Analytical Skills
Prepare to demonstrate your analytical abilities by discussing specific examples of how you've identified and prioritised vulnerabilities. Be ready to explain your thought process and the frameworks you used, like CVSS, to assess risk.
✨Communicate Clearly and Confidently
Practice articulating complex technical information in a way that’s easy to understand. You might need to present findings to both technical and non-technical stakeholders, so being clear and concise is key.
✨Stay Updated on Cybersecurity Trends
Brush up on the latest cybersecurity threats and trends. Being able to discuss current events in the industry will show your passion for the field and your commitment to staying informed.