At a Glance
- Tasks: Manage and remediate cyber vulnerabilities, ensuring systems are secure and patched.
- Company: Join a globally recognised bank with over 10 million active customers.
- Benefits: Enjoy a hybrid work model with 3 days in the office and 2 days remote.
- Why this job: Be part of a dynamic team shaping cybersecurity strategies in a thriving environment.
- Qualifications: Bachelor’s degree in Computer Science or Cyber Security; relevant certifications preferred.
- Other info: Experience with Tenable.IO and cloud technologies like Azure is essential.
The predicted salary is between 36000 - 60000 £ per year.
Fixed Term Contract (Maternity Cover) 18 months. Must have experience working on Tenable.IO, analysed vulnerabilities from penetration testing reports, work with vendors to remediate vulnerabilities, has patch management experience, has patched/worked on Windows, Linux and Azure cloud systems, analyse and remediate SOC/NOC alerts.
Our Client is a globally recognised, successful bank who provide world-class services to various institutions and individuals. Offering a comprehensive range of retail and corporate financial services/products, this thriving business boasts over 10 million active customers in over 700 business locations. Due to business requirements, we are now looking to acquire the services of an experienced Senior Compliance Officer, Monitoring & Assurance.
Please note that this is a hybrid role with 3 days in the office and 2 days working from home.
Key Responsibilities:In this fixed term contract role, you will be part of the team supporting the IT & Cyber Security Manager to plan and deliver our business strategy in line with our long-term goals. The role of Cyber Vulnerability Management Analyst is to deal with all remediation work in relation to identified vulnerabilities inclusive of patch testing and implementation within SLA. The job holder will work very closely with all third-party vendors involved in the remediation process. The job holder will also prepare the necessary MI/Dashboard reports for the relevant stakeholders and alleviate the workload of the IT Service desk function when required.
The primary responsibilities of the role is to perform daily assessment of vulnerabilities identified by internal and external scans. Evaluate, risk assess and rate the results of the scan, prioritise all vulnerabilities discovered and remediate/patch within the established remediation timeline(s)/SLA. The role also requires the job holder to work closely with the SMEs/vendors of the relevant systems. Understanding of cloud technologies such as Azure/Amazon Web Services and Oracle Cloud Infra is essential.
Key Skills/Experience:- Essential: Bachelor’s degree, preferably in Computer Science, Cyber Security or Cyber Security Professional Qualifications/Certifications
- Desirable: General understanding of IT Security principles, standards and regulations (e.g. ISO 27001, NIST, CIS, PCI DSS and GDPR)
- CISM/CISSP
- Patch Management Applications, EDR/XDR systems. Antivirus, NAC - Forescout
- Vulnerability Scanning Tool e.g. Tenable One, Qualys
- Knowledge of vulnerability scoring systems (CVSS/CMSS)
- Incident/Response & Forensic Management Skills
- IT Technical Admin Support - Azure, Oracle Cloud Infrastructure (OCI Cloud)
- Microsoft Windows Support & administration, CE+, ISO27001
- Email and Information Security Filtering/Monitoring Solutions, Egress
- Hands on experience on Linux and Mac Administration Support
- Good understanding of Windows and Linux patching
Cyber Vulnerability Management Analyst employer: The Curve Group
Contact Detail:
The Curve Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Vulnerability Management Analyst
✨Tip Number 1
Familiarise yourself with Tenable.IO and other vulnerability scanning tools. Since the role requires experience in analysing vulnerabilities from penetration testing reports, having hands-on experience or certifications related to these tools can set you apart.
✨Tip Number 2
Brush up on your patch management skills, especially for Windows, Linux, and Azure systems. Being able to demonstrate your practical knowledge in patching and remediation processes will be crucial during interviews.
✨Tip Number 3
Network with professionals in the cyber security field, particularly those who have worked in similar roles. Engaging with industry groups or forums can provide insights and potentially lead to referrals that could help you land the job.
✨Tip Number 4
Prepare to discuss your experience with SOC/NOC alerts and how you've handled them in the past. Being able to articulate your approach to incident response and forensic management will demonstrate your readiness for this role.
We think you need these skills to ace Cyber Vulnerability Management Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with Tenable.IO, patch management, and vulnerability analysis. Use specific examples from your past roles that demonstrate your skills in these areas.
Craft a Strong Cover Letter: In your cover letter, explain why you are interested in the Cyber Vulnerability Management Analyst position. Mention your familiarity with cloud technologies like Azure and your experience working with vendors to remediate vulnerabilities.
Highlight Relevant Certifications: If you have any relevant certifications such as CISM or CISSP, be sure to include them in your application. This will show that you have the necessary qualifications for the role.
Showcase Your Technical Skills: Detail your technical skills related to Windows, Linux, and Azure systems in your application. Provide examples of how you've successfully patched or managed vulnerabilities in these environments.
How to prepare for a job interview at The Curve Group
✨Showcase Your Technical Skills
Make sure to highlight your experience with Tenable.IO and any vulnerability management tools you've used. Be prepared to discuss specific vulnerabilities you've analysed and how you approached remediation.
✨Demonstrate Your Understanding of Cloud Technologies
Since the role requires knowledge of Azure and other cloud systems, be ready to explain your experience with these platforms. Discuss any relevant projects or tasks where you managed vulnerabilities in cloud environments.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills. Prepare to walk through how you would handle a specific vulnerability scenario, including prioritisation and remediation steps within SLAs.
✨Familiarise Yourself with Compliance Standards
Brush up on key IT security principles and regulations like ISO 27001 and GDPR. Being able to discuss how these standards apply to vulnerability management will show your depth of knowledge in the field.