At a Glance
- Tasks: Lead AI-driven security and vulnerability automation projects to enhance cybersecurity.
- Company: Join VodafoneThree, a diverse and inclusive employer committed to connecting communities.
- Benefits: Enjoy competitive pay, bonuses, flexible working, and generous leave policies.
- Other info: Embrace a culture of innovation and collaboration in a dynamic work environment.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge AI technologies.
- Qualifications: Degree in Computer Science or related field; strong AI and cybersecurity knowledge required.
The predicted salary is between 56700 - 69300 £ per year.
This job is with VodafoneThree, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community.
Location: Newbury or London or Stoke or Glasgow + Hybrid
Salary: Excellent basic salary plus bonus and Vodafone benefits
Working hours: Full time 37.5 hours per week - Monday to Friday
Hybrid working approach allows our people to work both in the office and at home, providing the flexibility and resources you need to succeed in your role. We don't require you to be in on specific days; instead, we ask people to come into the office 2-3 days each week, for at least 8 days per month.
Who We Are
We're here to build a network the UK can count on - one that connects people, places and potential. We're creating more than the UK's best network. We're helping close the digital divide, empower communities and drive meaningful progress.
We believe that everyone should feel they belong. We're building a workplace where different perspectives are welcomed, voices are heard, and everyone feels safe to show up as themselves.
You'll join a team that genuinely cares - about each other, about our customers, and about the future we're building. From day one, you'll be welcomed, valued and encouraged to bring your whole self to work.
Why VodafoneThree
Join us and you'll be at the heart of change. That means building responsibly, investing sustainably and creating opportunities that last. With £11bn invested in 5G and digital infrastructure, your work will directly power businesses, services, and communities across the country.
You'll work on real challenges, with real impact, across every corner of the country. Wherever you join us, whatever your role, you'll be helping to build a future that works better for everyone.
We move at pace, because what we're building matters - and we're learning as we go. We're proud of the progress we've made, but we're just getting started.
Join our IT teams, which is at the core of our digital future, analysing and operating all our internal and customer-facing systems, with the aim of delivering the best customer experience.
What you'll do
- The Cybersecurity function is responsible for identifying, assessing and reducing security risk across the organisation.
- Within this function, Vulnerability Management provides oversight of technology vulnerabilities, supports risk-based remediation and enables stakeholders to understand and manage their exposure.
- The AI Security & Vulnerability Automation Lead will combine operational Vulnerability Management responsibilities with a mandate to improve the service through artificial intelligence, automation, analytics and technical innovation.
- The role will retain ownership of selected business-as-usual activities, ensuring that innovation remains grounded in genuine operational needs.
- It will identify opportunities to simplify processes, improve data quality, enhance vulnerability prioritisation and accelerate remediation through the responsible application of AI and automation.
- The role will also provide specialist support for the secure adoption of AI and large language model technologies, working with cybersecurity, technology, data, risk and business teams to identify emerging threats and implement proportionate controls.
Main responsibilities:
- Own and deliver selected Vulnerability Management activities, including vulnerability analysis, triage, risk-based prioritisation, reporting, exception review and support for remediation campaigns.
- Identify, design and deliver opportunities to automate repetitive or data-intensive Vulnerability Management processes.
- Develop AI-enabled capabilities for vulnerability enrichment, classification, prioritisation, remediation guidance, reporting and workflow orchestration.
- Integrate vulnerability-management platforms with asset, configuration, threat-intelligence, ticketing and business-context data sources.
- Develop proofs of concept and work with relevant engineering, architecture and operational teams to transition successful solutions into secure, reliable and supportable services.
- Provide specialist advice on risks associated with AI, LLMs, retrieval-augmented generation, autonomous agents and other emerging AI technologies.
- Support security assessments and threat-modelling activities for internally developed or externally procured AI solutions.
- Establish appropriate controls for AI-enabled security processes, including human oversight, testing, validation, privacy, access control, auditability and secure data handling.
- Maintain a prioritised innovation and automation backlog, supported by clear problem statements, anticipated benefits, delivery plans and measurable outcomes.
- Promote technical learning and innovation through documentation, demonstrations, mentoring, knowledge sharing and collaboration across Cybersecurity and the wider technology organisation.
Who you are
- Degree-level knowledge in Computer Science, Software Engineering, Artificial Intelligence, Cybersecurity or a related discipline, or equivalent relevant professional experience.
- Strong knowledge of AI and machine-learning technologies, particularly LLMs, prompt engineering, retrieval-augmented generation, model evaluation, AI agents and the limitations and risks of generative AI.
- Practical software-development or automation experience using relevant programming or scripting languages, APIs, structured data, source control, testing and modern development practices.
- Knowledge of the vulnerability-management lifecycle, including asset discovery, vulnerability identification, validation, risk assessment, prioritisation, remediation, exception management and reporting.
- Understanding cybersecurity principles and emerging AI security threats, including prompt injection, insecure output handling, sensitive-information disclosure, excessive agency, model abuse and supply-chain risk.
- Sufficient understanding of enterprise technology environments - including applications, operating systems, cloud services, networks and infrastructure - to analyse security issues and collaborate effectively with specialist technical teams.
- Commercial awareness of the cybersecurity, vulnerability-management and AI technology markets, including the capabilities and limitations of competing products, vendor services, open-source solutions and internally developed alternatives.
- Strong analytical, communication and stakeholder-management skills, with the ability to translate complex technical concepts into clear risks, recommendations, business benefits and delivery priorities.
Worried that you don't meet all the desired criteria exactly? We know that everyone is unique, with multiple aspects to their identity and different experiences behind them. We are passionate about Inclusion for All and creating a workplace where everyone can thrive, whatever their personal or professional background. If you're excited about this role but your experience doesn't align exactly with every part of the job description, we encourage you to apply as you may be the right candidate for this role or another role, and our recruitment team can help you see how your skills fit in.
What we offer
We care about our people's success by offering great pay, bonuses, up to 28 days off plus bank holidays, and paid time for charity work. You can personalise our benefits for you and your family, like discounts, vouchers, a pension plan and loads more. We help with your career through our amazing learning tools and top-notch parental leave policies.
Need to Know
We are regulated by the Financial Conduct Authority and all offers of employment for this role are subject to background checks, including criminal (DBS) and financial checks to meet the regulators standards.
If you require any reasonable adjustments or have an accessibility request as part of your recruitment journey, please refer to the Accessibility section of our Careers website for guidance.
We use AI in different parts of our business to boost innovation, improve efficiency, and create new opportunities. During the interview, we want you to rely on your own knowledge and skills to show us who you really are - your personality, creativity, and abilities. Above all, we're looking for authenticity and can't wait to get to know the real you.
VodafoneThree - AI Security & Vulnerability Automation Lead in Manchester employer: VodafoneThree
VodafoneThree is an exceptional employer that champions inclusivity and innovation, making it a fantastic place for professionals in the AI Security & Vulnerability Automation field. With a hybrid working model, employees enjoy the flexibility to balance their work and personal lives while contributing to meaningful projects that enhance connectivity across the UK. The company prioritises employee growth through comprehensive learning tools, generous benefits, and a supportive culture that values diverse perspectives, ensuring everyone feels welcomed and empowered to thrive.
StudySmarter Expert Advice🤫
We think this is how you could land VodafoneThree - AI Security & Vulnerability Automation Lead in Manchester
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including VodafoneThree, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through VodafoneThree
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at VodafoneThree. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace VodafoneThree - AI Security & Vulnerability Automation Lead in Manchester
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at VodafoneThree insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to VodafoneThree that you’re committed to staying ahead in the game.
How to prepare for a job interview at VodafoneThree
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at VodafoneThree to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at VodafoneThree.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.