At a Glance
- Tasks: Lead vulnerability management for EMEA, ensuring compliance and risk reduction.
- Company: Join MUFG, a global leader in finance with a commitment to innovation.
- Benefits: Flexible working options, competitive salary, and a diverse, inclusive culture.
- Why this job: Make a real impact in cybersecurity within a trusted financial institution.
- Qualifications: 10+ years in vulnerability management and strong leadership skills required.
- Other info: Dynamic environment with opportunities for professional growth and development.
The predicted salary is between 43200 - 72000 Β£ per year.
Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, weβre 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world's most trusted financial group, itβs part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career. Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
Main purpose of the role: Vulnerability Management Lead to oversee and execute the end-to-end vulnerability management program for the EMEA region within a global financial institution. The role requires strong hands-on experience in vulnerability scanning, policy compliance, and the ServiceNow SecOps Vulnerability Response (VR) module, along with proven leadership in managing hybrid teams.
Key Responsibilities:
- Lead EMEA vulnerability management and policy compliance lifecycle: scanning, prioritization, reporting, and remediation governance.
- Perform hands-on vulnerability analysis across infrastructure, cloud, and applications.
- Provide comprehensive solutions to complex problems, lead major initiatives in risk reduction surrounding vulnerabilities.
- Manage and guide offshore vulnerability analysts, ensuring high-quality and timely delivery.
- Operate and enhance ServiceNow SecOps VR workflows, dashboards, and automation.
- Ensure compliance with internal security policies and EMEA regulatory requirements (e.g., EBA, DORA, FCA).
- Collaborate with other information security functions within the MUS international business and MUFG group to ensure a consistent approach to all controls, standards and policies is adopted across the organisation.
- Collaborate with IT and application teams globally to drive remediation and risk reduction.
- Support reporting relationships between Technology and internal and external bodies e.g. auditors, management committees, Tokyo head office, regulators (via Compliance), Operational Risk.
- Provide reporting, KPIs, and executive visibility on vulnerability posture.
- Support audits, risk assessments, and emerging vulnerability (zero-day) response.
Work Experience:
- Proven experience (10+ years) in Vulnerability Management & Policy Compliance.
- Hands-on experience with ServiceNow SecOps VR module.
- Deep understanding of cybersecurity frameworks, governance, and risk management practices.
- Strong understanding of CVE/CVSS, threat intelligence, and remediation workflows.
- Experience managing offshore/onshore teams.
- Excellent communication and stakeholder management skills.
- Background in financial services or regulated environments preferred.
- Relevant certifications (CISSP, CISM, Security+, ServiceNow SecOps) are a plus.
Skills and Experience:
- Experience as a Vulnerability Management & Policy Compliance SME.
- Understanding of Vulnerability Management principles.
- Understanding of Risk Assessment Methodologies.
- Knowledge of industry standard scoring models such as CVSS (Common Vulnerability Scoring System) or CCSS (Common Configuration Scoring System).
- Knowledge of industry standard data models such as CPE (Collection Processing Engine) and data normalization tools.
- Process oriented with keen attention to detail.
- Knowledge of common vulnerabilities, attack vectors and mitigation techniques.
- Ability to proactively anticipate problems and execute solutions at a strategic level.
- Wide knowledge of application and IT products, interoperability, and extensive knowledge of IT security.
- Knowledge of application development platforms.
- Knowledge of vulnerability attack methods, exploit results, attack chains.
- Ability to think strategically.
- Active involvement in internal and external audits and experience of managing Audit relationships.
Education / Qualifications:
- Degree educated and / or equivalent experience.
Personal Requirements:
- Excellent communication skills.
- Results driven, with a strong sense of accountability.
- A proactive, motivated approach.
- The ability to operate with urgency and prioritise work accordingly.
- Strong decision making skills, the ability to demonstrate sound judgement.
- A structured and logical approach to work.
- Strong problem solving skills.
- A creative and innovative approach to work.
- Excellent interpersonal skills.
- The ability to manage large workloads and tight deadlines.
- Excellent attention to detail and accuracy.
- A calm approach, with the ability to perform well in a pressurised environment.
We are open to considering flexible working requests in line with organisational requirements. MUFG is committed to embracing diversity and building an inclusive culture where all employees are valued, respected and their opinions count. We support the principles of equality, diversity and inclusion in recruitment and employment, and oppose all forms of discrimination on the grounds of age, sex, gender, sexual orientation, disability, pregnancy and maternity, race, gender reassignment, religion or belief and marriage or civil partnership.
Vice President, Vulnerability Management Lead in London employer: WeAreTechWomen
Contact Detail:
WeAreTechWomen Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Vice President, Vulnerability Management Lead in London
β¨Tip Number 1
Network like a pro! Reach out to your connections in the industry, attend events, and engage on platforms like LinkedIn. We all know that sometimes itβs not just what you know, but who you know that can help you land that dream job.
β¨Tip Number 2
Prepare for interviews by researching MUFG and understanding their values and culture. We want to see how you can fit into our team, so be ready to share how your experience aligns with our mission of making a meaningful impact.
β¨Tip Number 3
Showcase your skills through practical examples. When discussing your experience, focus on specific projects or challenges you've tackled in vulnerability management. We love hearing about real-world applications of your expertise!
β¨Tip Number 4
Donβt forget to follow up after interviews! A simple thank-you email can go a long way in showing your enthusiasm for the role. Plus, it keeps you fresh in the minds of the hiring team at MUFG.
We think you need these skills to ace Vice President, Vulnerability Management Lead in London
Some tips for your application π«‘
Tailor Your CV: Make sure your CV is tailored to the role of Vice President, Vulnerability Management Lead. Highlight your relevant experience in vulnerability management and policy compliance, and donβt forget to mention any hands-on experience with ServiceNow SecOps!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to express your passion for cybersecurity and how your skills align with MUFG's values. Be sure to mention your leadership experience and ability to manage teams effectively.
Showcase Your Achievements: When detailing your work experience, focus on specific achievements that demonstrate your impact in previous roles. Use metrics where possible to quantify your success in vulnerability management and risk reduction.
Apply Through Our Website: We encourage you to apply through our website for a seamless application process. Itβs the best way to ensure your application gets the attention it deserves, so donβt miss out!
How to prepare for a job interview at WeAreTechWomen
β¨Know Your Vulnerability Management Inside Out
Make sure you have a solid grasp of vulnerability management principles and practices. Brush up on your knowledge of CVE/CVSS, threat intelligence, and remediation workflows. Being able to discuss these topics confidently will show that you're not just familiar with the concepts but can also apply them effectively.
β¨Showcase Your Leadership Skills
As a Vice President, you'll need to demonstrate strong leadership capabilities. Prepare examples of how you've successfully managed teams, especially in hybrid environments. Highlight your experience guiding offshore analysts and ensuring high-quality delivery, as this will resonate well with the interviewers.
β¨Familiarise Yourself with ServiceNow SecOps
Since hands-on experience with the ServiceNow SecOps VR module is essential, make sure you can discuss your previous work with it. Be ready to explain how you've operated and enhanced workflows, dashboards, and automation within the platform. This will show that you can hit the ground running.
β¨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills and strategic thinking. Think about complex vulnerabilities you've encountered and how you approached them. Use the STAR method (Situation, Task, Action, Result) to structure your answers, making it easier for the interviewers to follow your thought process.