Haystack
← Back to Jobs
Temporary/Casual
Technology
ME

Senior Vulnerability Management specialist

Morson EdgeSouthampton, Hampshire🇬🇧United KingdomPosted 11 Sept 2026

Quick Overview

Salary
£600 - £650/mo
Seniority
Mid Senior
Employment type
Temporary/Casual
Work mode
On Site
Location
Southampton, Hampshire, United Kingdom
AWSAzureKubernetes

Job Description

Senior Vulnerability Management specialist/Cyber Security Analyst or Cyber Security Engineer

£600-£650 per day

Inside IR35

6 months initially

Remote (1-2 times onsite a month in central Southampton)

My client is looking for an experienced Senior Vulnerability Analyst to join their Cyber Security team, taking a lead role in identifying, assessing and managing vulnerabilities across a complex enterprise technology environment.

This is a senior position requiring someone who can go beyond simply identifying vulnerabilities. You'll be expected to understand the underlying risk, prioritise remediation and work closely with infrastructure, cloud, application and security teams to drive vulnerabilities through to resolution.

Security Clearance:
Eligibility for UK Security Check (SC) clearance is a mandatory requirement for this role. Candidates who already hold active SC clearance will be prioritised.

Key Responsibilities:

  • Lead the identification, assessment and prioritisation of vulnerabilities across infrastructure, applications, endpoints and cloud environments.
  • Analyse vulnerability scan results, distinguishing genuine risks from false positives and low-impact findings.
  • Assess vulnerabilities using CVSS, exploitability, asset criticality, exposure and business impact.
  • Monitor emerging vulnerabilities, zero-days and relevant threat intelligence.
  • Work closely with infrastructure, cloud, application, DevOps and IT operations teams to coordinate remediation.
  • Track vulnerabilities through to resolution, ensuring remediation is completed within agreed risk-based timescales.
  • Provide technical guidance and challenge remediation plans, risk acceptances and proposed compensating controls where appropriate.
  • Produce vulnerability reporting, dashboards and management information for technical and senior stakeholders.
  • Identify trends, recurring vulnerabilities and systemic weaknesses across the environment.
  • Help improve vulnerability management processes, tooling, automation and reporting.

Essential Experience:

  • Significant experience in vulnerability management, vulnerability assessment or cyber security operations.
  • Strong understanding of vulnerability assessment methodologies and risk-based prioritisation.
  • Hands-on experience with enterprise vulnerability management platforms such as Tenable, Qualys, Rapid7 or similar.
  • Strong understanding of CVSS, CVE, CWE and common vulnerability types.
  • Experience analysing vulnerabilities across Windows, Linux, network infrastructure, cloud and/or applications.
  • Good understanding of patching, configuration management and security controls.
  • Proven experience working with technical teams to drive vulnerability remediation.
  • Strong analytical and problem-solving skills, with the ability to communicate technical risk clearly to both technical and non-technical stakeholders.
  • Eligible for UK SC security clearance.

Desirable Experience:

  • Active UK SC security clearance.
  • Experience working within Defence, Nuclear, Critical National Infrastructure (CNI) or other highly regulated and security-conscious organisations.
  • Experience with Azure and/or AWS vulnerability management.
  • Experience with container, Kubernetes or DevSecOps security.
  • Knowledge of application security and common web application vulnerabilities.
  • Experience using SIEM, EDR and threat intelligence alongside vulnerability data.
  • Knowledge of NIST, CIS, ISO 27001 or Cyber Essentials.
  • Relevant security certifications such as CISSP, CISM, GIAC, OSCP or similar.

Similar jobs