Menu

Threat and Vulnerability Management Consultant

  • Hybrid - WFH/London 2 days a week
  • Outside IR35

Threat and Vulnerability Management Consultant required for a regulator. This role will focus on assessing current VM tooling, telemetry, and reporting capabilities, while identifying opportunities to enhance automation, exposure visibility, KEV intelligence integration, and executive-level assurance reporting. The successful candidate will play a key role in modernising VM processes through the adoption of AI-driven capabilities and best-practice security operations.

Key Responsibilities

  • Review and assess current Vulnerability Management processes, tooling, and telemetry across enterprise environments
  • Engage with Security Operations teams and Product Groups to identify process improvements and automation opportunities
  • Evaluate and enhance existing tooling including Qualys, Microsoft Defender, CrowdStrike, and cloud-native security capabilities
  • Support the testing, implementation, and optimisation of AI capabilities within the VM lifecycle
  • Improve threat exposure visibility, KEV intelligence integration, and continuous assurance reporting
  • Produce clear reporting and recommendations for both technical teams and executive stakeholders
  • Contribute to the development of scalable, proactive VM capabilities aligned to evolving threat landscapes and offensive AI trends

Required Skills & Experience

  • Proven experience as a Threat Exposure or Vulnerability Management Analyst/SME
  • Strong technical understanding of end-to-end Vulnerability Management processes
  • Hands-on experience across Azure and AWS cloud environments
  • Experience with VM and security tooling such as Qualys, Microsoft Defender, CrowdStrike, and cloud-native platforms
  • Broad understanding of AI technologies and their application within cybersecurity and VM processes
  • Ability to work autonomously and proactively drive initiatives forward
  • Strong stakeholder engagement and communication skills, with experience presenting findings to both technical and senior audiences

Desirable Experience

  • Experience implementing automation within security operations or VM programmes
  • Knowledge of KEV intelligence and threat prioritisation frameworks
  • Exposure to continuous assurance or executive cyber reporting initiatives

Barclay Simpson, worldwide specialists in Cyber Security jobs: https://www.barclaysimpson.com/specialisms/cyber-security-jobs/

This is an official job listing by Barclay Simpson: https://www.barclaysimpson.com/job/jem-44719/threat-and-vulnerability-management-consultant/

Apply for this job
Upload your CV/resume or any other relevant file. Max. file size: 2 MB.
I consent to the storing and processing of my personal data as detailed in Barclay Simpson’s Privacy Policy.

We seek individuals from a diverse talent pool and encourage applicants from underrepresented groups to apply to our vacancies. Our commitment to fair recruitment processes means that we welcome applicants from all backgrounds, regardless of their lived experience or personal characteristics. We also invite applicants who meet most of the listed requirements, even if not all, to apply. If you require any adjustments to the application process, please let us know.

Barclay Simpson acts as an Employment Agency for permanent positions and an Employment Business for temporary/contract engagements.