← Back to job listings
IT
Vulnerability Management Analyst
Inspired Thinking Group · Birmingham, United Kingdom
About The Role
Join our information security and data protection team as a Vulnerability Management Analyst. In this full-time position, you will help find, prioritize, and fix security vulnerabilities across our global business and products. You will configure and tune our vulnerability tools, risk assess detections, and prioritize findings for fix. You will also help design and report on our detection and remediation activities. This is a great opportunity to make a visible difference in how we manage risk day to day.
- Configurer, tune, and maintain vulnerability tooling across scanning tools, working with platform and engineering teams to keep coverage accurate.
- Triage findings from vulnerability sources, confirming genuine issues and filtering out false positives, and risk-assess confirmed findings against severity, exploitability, and business context.
- Organise externally delivered IVS and Penetration Testing programmes, from scheduling and scoping, through to day-to-day contact with testing partners.
- Comfortable working across a global, multi-product environment
- Relevant certifications (e.g. CompTIA Security+, CompTIA CySA+, GIAC GFACT/GPEN, or CEH) are preferred but not essential
- Comfortable working within an agile enterprise environment
- Ability to work autonomously, use good judgement, and know when to escalate
- Organised enough to manage several scanning programmes, testing engagements, and remediation workstreams in parallel
- Comfortable explaining technical findings to both Developers and non-technical stakeholders
- Comfortable coordinating third-party engagements, such as scheduling and scoping penetration tests
- Ability to read and understand common coding languages is essential, the ability to write scripts and/or code is preferred
- Experience triaging and risk-assessing security findings, helping teams to prioritise remediation based on severity and business impact
- 2+ years' experience in vulnerability management, security operations, development, or a related security/IT role
- Hands-on experience with vulnerability scanning and management tooling (e.g. SAST, DAST, SCA, CSPM, or IVS)
- Solid understanding of common vulnerability types and remediation approaches, including familiarity with the Mitre ATT&CK Framework and OWASP Top 10
- Strong analytical and problem-solving mindset, with real attention to detail
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring