About this role
Salary: £45,000 - 45,000 per year
Requirements: We have previous experience within vulnerability management, cyber security, information security or security governance.We have experience coordinating or tracking vulnerability remediation.We have a good understanding of CVSS, vulnerability severity, risk ratings and remediation processes.We are familiar with tools such as Qualys, Tenable, Brinqa, Rapid7 InsightVM or similar.We have strong reporting, data interpretation and documentation skills.We are confident engaging suppliers and technical stakeholders and following actions through to completion.Experience working within a structured, regulated or multi-supplier environment would be particularly useful.Vulnerability management or security qualifications would be advantageous.We are sole UK nationals / sole UK citizens and are eligible to obtain Security Check clearance (SC).We have lived continuously in the UK for the past five years. Responsibilities: We track vulnerabilities from identification through to remediation and closure.We work with suppliers and technical owners to agree actions and timescales.We prioritise issues using severity, CVSS scores, risk ratings and remediation SLAs.We escalate high-risk, overdue or repeatedly unresolved vulnerabilities.We produce dashboards and reports covering vulnerability ageing, trends and SLA performance.We maintain accurate records and audit-ready evidence.We support security governance, assurance and risk-exception processes.We help improve the effectiveness of the wider vulnerability management service. Technologies: SupportSecurityPLC More:
We are a growing cyber security team supporting a major client programme. This is a hybrid role based in Preston, with two to three days per week onsite at the client site. The position offers a salary of up to £47,000 and an excellent corporate benefits package. There are several positions available, and this is a great opportunity to join an expanding team and build a career within a large, established cyber security environment. This role is not a Penetration Tester position; it focuses on driving vulnerability remediation through prioritisation, stakeholder engagement and closure.
last updated 37 week of 2026