At i-confidential we are always looking for top-tier talent to meet the requirements of our ever-growing list of clients, which includes several of the UK’s best-known firms.
We specialise in delivering first-class cyber security and risk solutions to support a range of exciting businesses, and we are always looking for talented individuals to join us on that journey.
We currently have a requirement for a Vulnerability Management Engineer to work on key SOC transformation project within a key team reporting directly into the CISO. The role is with one of our financial services clients and will run for 3 months initially inside IR35.
- Inside IR35
- Remote UK only
- 3 months (with chance of extension)
Responsibilities:
- Perform periodic and on-demand system audits and vulnerability assessments of systems, internal applications, and Cloud services to identify security vulnerabilities.
- Document, prioritize and formally report on asset and vulnerability state as remediation activities progress.
- Analyse cyber threat intelligence and make recommendations to mitigate threats and or improve security posture.
- Partner with Infrastructure partners in Infrastructure Ops, Workplace Technology, Networks, and others to track and report on vulnerability remediation activities.
- Maintain and create metrics reporting for governance purposes.
- Operate with a focus to enable teams to meet or exceed patching SLAs; continuously seeking process improvements to achieve operational objectives.
- Contribute to establishing, developing, and revising processes to build and strengthen the overall company operational security posture.
- Contribute to threat management, and threat modelling, identify threat vectors and develop use cases for security vulnerability monitoring.
Experience & Skills:
- Ability to perform data analysis with a variety of tools including scripting, databases, and spreadsheets Log analysis and experience reviewing security events
- Hands-on experience with major vulnerability scanning platforms such as Tenable, Qualys, and other tools like Nuclei, OpenVAS, nmap
- Experience with graph databases, OLAP and other analytical database backends.
- Knowledge of key components and the security models for OS, applications, databases and middleware to address security vulnerabilities.
- Excellent communication and teamwork skills.
Please note this requirement does not support overseas working and is Inside IR35.
#LI-DNI