Vulnerability Management Lead – Contract
Duration: 6 months
IR35 status: Inside IR35
Location: London Hybrid 4 days per month
The role
We’re looking for a Vulnerability Management Lead to run an established vulnerability management service and lead a team of Threat and Vulnerability analysts.
The organisation has made significant progress in identifying vulnerabilities across its cloud, on-premises systems, external assets and web applications. The focus now is on keeping the service running effectively: maintaining coverage, prioritising the right risks and making sure remediation happens.
Key responsibilities
-
Lead and support the analysts, helping the team manage its workload and maintain a consistent service.
-
Oversee vulnerability scanning and monitoring, identifying gaps in coverage or data quality.
-
Prioritise findings using severity, threat intelligence, asset importance and business context.
-
Work with technology teams to agree remediation plans and track progress.
-
Follow up on overdue actions, escalate significant risks and manage exceptions.
-
Provide clear reporting on vulnerabilities, remediation progress and areas of exposure.
-
Keep the existing processes and tooling working well, making practical improvements where needed.
What we’re looking for
-
Strong experience running a vulnerability management service in a complex organisation.
-
Experience leading or coordinating vulnerability analysts.
-
Good technical understanding of scanning, asset coverage, risk prioritisation and remediation.
-
The ability to turn scan results into clear actions for technology teams.
-
A dependable, organised approach and the confidence to follow up on actions.
-
Experience with Tenable would be useful, but the priority is someone who can manage the service and team effectively.
#LI_DNI