Vulnerability Management Consultant - MUST HAVE SC CLEARANCE - Inverness or Preston - 6 months+
Quick Overview
Job Description
Vulnerability Management Consultant - MUST HAVE SC CLEARANCE - Inverness or Preston - 6 months+/RATE: £565 per day inside IR35
One of our Blue Chip Clients is urgently looking for a Vulnerability Management Consultant.
Please note this role is to start end of September/early October.
Please find some details below:
Description:
CONTRACTOR MUST BE SC CLEARED (active) AND BE A SOLE UK NATIONAL
The candidate hasn't been outside the UK for more than 28 consecutive days during the last 5 years
Role Title: Vulnerability Management Consultant (x3 seats)
Location: Inverness or Preston, 5 days onsite
MUST BE PAYE THROUGH UMBRELLA
Role Description:
About the role you're considering
The Vulnerability Management Consultant operates within the Operational Integrator (OI) function in a multi-supplier (SIAM) environment, supporting the governance and coordination of vulnerability management activities across suppliers.
The role assists in ensuring vulnerabilities are identified, tracked, prioritised, and reported in accordance with client policies and agreed remediation timelines. Working with suppliers, service teams and security stakeholders, the consultant provides visibility of vulnerability status and supports the maintenance of accurate reporting and audit evidence.
This is a governance and coordination role and does not perform vulnerability scanning, security testing, patch deployment, or technical remediation activities.
Key Responsibilities:
Vulnerability Tracking & Coordination
- Support the monitoring of vulnerabilities from identification through to closure
- Ensure vulnerability records are maintained and updated by suppliers
- Assist in tracking remediation progress against agreed service levels
- Escalate overdue or high-risk vulnerabilities through agreed governance channels
Supplier Engagement (SIAM Model)
- Coordinate with suppliers to obtain vulnerability status updates
- Support the collection and validation of supplier vulnerability reports
- Ensure reporting formats and data standards are applied consistently
- Identify gaps in vulnerability information, ownership, or reporting
Vulnerability Reporting & Visibility
- Produce routine vulnerability management reports
- Support development of dashboards and metrics
- Assist in identifying:
- Aging vulnerabilities
- Recurring issues
- SLA breaches
- Emerging vulnerability trends
Governance & Process Compliance
- Support adherence to agreed vulnerability management processes
- Ensure supplier activities align with client policies and standards
- Assist with documenting risk acceptance and exception processes
- Maintain evidence required for audits and assurance activities
Assurance & Evidence Support
- Collect and organise vulnerability management evidence
- Support compliance and assurance reviews
- Maintain audit-ready documentation and reporting records
- Assist in demonstrating process effectiveness to stakeholders
Your skills and experience
Essential
- Experience in cyber security, information security, service management, or governance roles
- Understanding of vulnerability management principles
- Knowledge of basic vulnerability risk concepts including:
- CVSS, KEV etc
- Risk ratings
- Remediation tracking
- Strong analytical and reporting skills
- Experience working with multiple stakeholders
Desirable
- Exposure to SIAM or multi-supplier environments
- Familiarity with vulnerability management tooling and reporting outputs
- Understanding of cyber security governance and assurance
- Experience in regulated or defence environments
Key Deliverables
- Vulnerability reporting packs
- Vulnerability status and remediation tracking
- Supplier vulnerability performance metrics
- Audit-ready evidence and reporting records
- Governance inputs to security forums
Role Definition
The role supports the governance and visibility of vulnerability management activities across suppliers, ensuring risks are tracked, reported, and evidenced consistently without performing technical vulnerability remediation.
What This Role Does/Does Not Do
Does
- Track and coordinate vulnerabilities
- Support reporting and governance activities
- Validate supplier information
- Maintain visibility of remediation progress
Does Not
- Perform vulnerability scanning
- Deploy patches or fixes
- Conduct penetration testing
- Own technical remediation activities
Please send CV for full details and immediate interviews. We are a preferred supplier to the client.
Skills
Similar jobs
Senior Manager, Business Insights & Strategy
Wild Berry Associates · London, United Kingdom
10 hours agoDigital Certificate Management Consultant
Stealth IT Consulting · Preston, United Kingdom
17 hours ago£535 - £580/moVulnerability Management Consultant
Damia Group LTD · Preston, United Kingdom
Yesterday£500 - £568/moVulnerability Management Consultant
eTeam Workforce Limited · Preston, United Kingdom
2 days ago£581/hrManagement Consultant - Access Network Consultant
Accenture · london, United Kingdom
5 days agoSAP Asset Management Consultant
Experis · United Kingdom
6 days ago£600 - £625/mo