CrawlJobs Logo

Senior Cyber Security Specialist - Vulnerability Management

vodafone.com Logo

Vodafone

Location Icon

Location:
India , Bangalore

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are seeking a seasoned cyber security professional to lead the Vulnerability Management domain within our Cyber Defence team. This role is pivotal in enhancing Vodafone’s security posture across global and local entities, proactively identifying and mitigating vulnerabilities, and driving strategic initiatives to reduce cyber risk. The individual will lead a team of experts, manage cross-functional projects, and act as a subject matter expert in security scanning and penetration testing.

Job Responsibility:

  • Lead the Vulnerability Management and Responsible Disclosure team to strengthen Vodafone’s cyber defence capabilities
  • Drive vulnerability management initiatives, ensuring timely identification, communication, and remediation of threats
  • Oversee penetration testing activities related to responsible disclosures and support incident response during crises
  • Research emerging threats, including zero-day vulnerabilities, and ensure targeted scans and mitigation actions
  • Champion continuous improvement through automation and cross-functional collaboration
  • Act as a technical expert in security scanning and penetration testing
  • Foster team development through individual growth plans and maintain high engagement levels
  • Contribute to administrative and delivery initiatives across domains

Requirements:

  • Possess over 10 years of IT experience with a strong focus on cyber security, vulnerability management, and remediation
  • Proficient in tools such as QualysGuard VMDR, WAS, and cloud scanning solutions
  • Skilled in web application penetration testing and knowledgeable in OWASP, Kali Linux, Burp Suite, CVE, SSL PKI, IAM, SIEM, and perimeter security
  • Experienced in managing large-scale vulnerability scanning operations and reporting
  • Strong stakeholder management and communication skills
  • Solid understanding of networking and cyber security policies, standards, and procedures

Nice to have:

Advantageous if experienced in SOC, Endpoint Security, IAM, Information Protection, or the telecom industry

What we offer:
  • Opportunity to lead a high-impact domain within a global cyber security function
  • Exposure to cutting-edge vulnerability management tools and practices
  • Collaboration with international teams and stakeholders across Vodafone markets
  • A chance to influence Vodafone’s cyber risk strategy and operational resilience
  • A dynamic and inclusive work environment that values innovation and continuous improvement

Additional Information:

Job Posted:
January 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Cyber Security Specialist - Vulnerability Management

Head of cyber threat exposure and attack surface management

Lead the enterprise-wide Continuous Threat Exposure Management (CTEM) strategy, ...
Location
Location
United Kingdom , Knutsford
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in cybersecurity with direct exposure to vulnerability management, red teaming, or threat exposure reduction
  • Proven track record leading programs integrating CSPM, SSPM, ASM, BAS, or exposure correlation technologies
  • Strong understanding of attack paths, adversary emulation, and continuous validation concepts
Job Responsibility
Job Responsibility
  • Own and drive the global CTEM strategy, establishing a continuous, threat-driven exposure management lifecycle aligned with NIST, MITRE, and CISA Secure-by-Design principles
  • Lead and develop a high-performing CTEM team, fostering collaboration, technical excellence, and an outcome-driven culture
  • Integrate and oversee key exposure management technologies, including Cloud Security Posture Management (CSPM), SaaS Security Posture Management (SSPM), Attack Surface Management (ASM), Breach & Attack Simulation (BAS), and other exposure correlation platforms
  • Correlate assets, identity, vulnerability, and configuration to identify high-impact, exploitable attack paths and inform prioritized remediation strategies
  • Collaborate with Application Security, Vulnerability Management, Red Team, and Security Operations to synchronize discovery, validation, and remediation of exposures across the enterprise
  • Align CTEM outputs with real-world adversary behaviors, leveraging Red Team and Threat Intelligence input to validate attack paths and focus on exploitable conditions
  • Drive automation and AI-enabled analytics to continuously map, assess, and measure reductions in the organization’s attack surface
  • Translate technical findings into business risk language, enabling senior leadership and risk committees to make data-driven investment decisions
  • Define and lead CTEM governance and operating models, ensuring exposure assessments, validation, and remediation tracking are embedded in operational processes
  • Establish clear KRIs and maturity metrics that demonstrate continuous improvement in visibility, validation, and response effectiveness
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Vp, Information Security

About BlackRock: BlackRock’s purpose is to help more and more people experience ...
Location
Location
China , Shanghai
Salary
Salary:
Not provided
blackrock.com Logo
BlackRock Investments
Expiration Date
April 30, 2026
Flip Icon
Requirements
Requirements
  • At least 10 years of full-time work experience in information security management and/or related functions (Technology Risk Management, Technology Infrastructure Management) with information security management qualifications such as CISSP, SANs, CRISC, CISM etc.
  • Knowledge of enterprise technology platforms, from the desktop through to back end infrastructure would be considered an advantage
  • Exceptional interpersonal skills with ability to communicate with senior leaders and technology teams alike.
  • Ability to work independently and adapt to changing business priorities
  • Detail oriented individual, with a keen eye towards details
  • Experience and good knowledge of Identity Governance and Identity Lifecycle management
  • Proficiencies in one or more of the following technical IT security domains or equivalent: Network Security, Cloud Governance, Cyber Operations, Forensics, Access and Identity Management Governance etc.
  • Knowledge of domestic China cyber and technological regulations, or experience in dealing with regulators and clients in relation to cybersecurity focused topics during regulatory examinations or client due diligence sessions will be a plus
  • Strong proficiencies in both English and Mandarin (Verbal/Written)
  • Hands-on team leadership and management experience, ideally coupled with suitable management qualifications
Job Responsibility
Job Responsibility
  • Be responsible for providing information security leadership in the BEM, driving security activities and projects, as well as developing and optimizing the FMC’s capabilities across core disciplines of Information security
  • Information Security Governance and Reporting
  • Cyber Security Operations Management, in partnership with other BlackRock Entities in China
  • Security Risk Assessments and Vulnerability Management
  • Application Security
  • Maintain and evolve security policies and standards for the BlackRock China, in conjunction with evolving regulatory and operational security requirements
  • Provide security advisory to Business and IT partners in the development of security controls and solutions to manage cyber risks for the firm
  • Identity and Access Management, including privilege access management
  • Compliance to regulatory security requirements
  • Take on the pivotal role in overseeing and governing the AIM program spanning the realms of identity & access governance, entitlements recertification's and associated identity & access lifecycle management procedures. The individual will also be required to guide the AIM Program Lead and provide support in administering the access rights to China employees for required access to core systems where the need arises.
What we offer
What we offer
  • Strong retirement plan
  • Tuition reimbursement
  • Comprehensive healthcare
  • Support for working parents
  • Flexible Time Off (FTO)
  • Fulltime
Read More
Arrow Right

Senior Specialist Operational Technology Security

SIG is a leading provider of packaging systems and solutions. We work in partner...
Location
Location
Salary
Salary:
Not provided
sig.biz Logo
SIG Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Cybersecurity, Electrical/Mechanical Engineering, or related field
  • 3+ years of combined OT engineering and cybersecurity experience, including work in Aseptic & Chilled or BiB environments
  • Hands-on expertise with SCADA, PLC, DCS platforms and industrial protocols (Modbus, DNP3, OPC, Ethernet/IP)
  • Proven ability to implement and manage OT security frameworks (IEC 62443, NIST CSF, ISO 27001)
  • Experience with vulnerability assessment and penetration testing tools for OT (e.g., Nozomi, Claroty, SCADAfence)
  • Strong understanding of network segmentation, firewalls, IDS/IPS in industrial settings
  • Solid grasp of automation, mechanical, and electrical control systems
  • Excellent analytical, problem-solving, and communication skills
Job Responsibility
Job Responsibility
  • Discover and catalog OT assets, build and maintain accurate asset inventories, and develop and maintain full asset lifecycle management
  • Conduct risk management and vulnerability management on OT networks, devices, and processes
  • Collaborate with IT, Production, engineering, QC, and maintenance teams for the vulnerability management implementation
  • Extend IT security processes to OT environments. Develop, document, and enforce Global OT security policies and procedures aligned to IEC 62443, NIST CSF, and ISO 27001
  • Design and implement network segmentation, zone-based firewalls, and secure architectures for OT environments
  • Deploy and manage OT-focused security tools (Cyber Physical System Protection Platform) to detect and mitigate advanced threats
  • Coordinate with the global SOC for security incident and event monitoring and analysis in OT operations, including plan and execute penetration tests and red team exercises in OT landscapes
  • Supplier relationships security management and embedding security requirements into contracts
  • Define and roll out a global Secure Development Lifecycle (SDLC) for OT environment
  • Provide training and awareness sessions on secure OT practices and emergency response protocols
What we offer
What we offer
  • Competitive compensation
  • Opportunity to partially work from home
  • Part of a globally successful international company
  • Real work, real experience, real opportunities to build skills
  • Part of a highly motivated and dynamic team
  • Personal development opportunities
  • Trainings and coaching opportunities from senior team members
Read More
Arrow Right

Senior Information Security Incident Response Lead

The Senior Information Security Incident Response Lead is responsible for managi...
Location
Location
Mexico , Mexico
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree or equivalent in Information Technology, Computer Science or related preferred
  • SANS GIAC Security Essentials (GSEC) or equivalent preferred
  • SANS GIAC Certified Intrusion Analyst (GCIA) or equivalent preferred
  • SANS GIAC Certified Incident Handler (GCIH) or equivalent preferred
  • Advanced experience in a Technology Information Security Industry
  • Advanced experience or knowledge of SIEM and IPS technologies
  • Advanced experience with Wireshark or tcpdump to identify normal and abnormal/malicious traffic patterns and behaviors
  • Advanced understanding of End Point Protection Software
  • Advanced understanding of Enterprise Detection and Response software
  • Advanced knowledge of technological advances within the information security arena
Job Responsibility
Job Responsibility
  • Manages the prevention and resolution of security breaches and ensure incident and problem management processes are initiated
  • Performs access management activities according to the policy
  • Implements and discusses security service audit schedules, review access authorization and perform the required access controls and testing to identify security weaknesses
  • Interacts with a global team of Cyber Security Analysts and specialists
  • Manages 2nd level triaging of security alerts, events, and notifications
  • Manages notifications of internal and/or external teams according to agreed alert priority levels, and escalation trees
  • Communicates status of response, resolution and final root cause analysis to the appropriate stakeholders
  • Follows and updates established and/or ad-hoc processes and work instructions and create procedures where deficiencies are identified
  • Logs, manages and coordinates service requests through to resolution including the identification, isolation, resolution and escalation of IT infrastructure faults
  • Maintains an understanding of current and emerging threats, vulnerabilities, and trends
Read More
Arrow Right

Control Manager (Cyber CSAT)

The GCIO Chief Control Office (CCO) team plays an important role in enabling the...
Location
Location
Poland
Salary
Salary:
15025.00 - 23000.00 PLN / Month
https://www.hsbc.com Logo
HSBC
Expiration Date
March 12, 2026
Flip Icon
Requirements
Requirements
  • At least 3 years of hands-on experience with one or more or the control capabilities in the domain (Scanning, Cloud, Threat Modelling, Offensive Security, Assessment/ Vulnerability Management) either directly or as a 1/2/3LOD control management function
  • At least 3 years of hands-on experience and subject matter expertise in management of operational risk, non-financial risk and/or technology and information security risk
  • Experience across IT, Operations, Risk Management, and / or Audit roles requiring management of diverse risk types is desirable
  • Previous experience of identifying, defining and solving problems that have impact on your work or the wider business
  • Financial Services or other highly regulated industry experience/exposure is preferred
  • Strong communication skills to influence and challenge stakeholders
  • Ability to work independently with limited supervision and to present complex issues concisely to senior partners using non-technical language
  • Active industry recognized certificates will be an asset, e.g. CISA, CISSP, CRISC, CCSP etc.
Job Responsibility
Job Responsibility
  • Partnering with the CISO CCO to oversee the risk and control portfolio related to the services Cybersecurity Assessment & Testing (CSAT) provides to the Group
  • Act as trusted advisor for senior management by partnering to manage their operational risk i.e., risk assessments, control environment, issues management
  • Promote accountable risk and control decision-making based on quality data and analysis, actively challenging poor, inefficient or excessive controls, related tasks and behaviours
  • Provide specialist risk and control knowledge and insights, leading efforts to continuously improve the control environment and monitoring of risk, including behaviours
  • Advise and design process and controls in a commercially viable, practical and effective manner. Identify trends to anticipate future developments in the risk and control environment
  • Influence and shape the development and implementation of future-fit risk management and regulatory frameworks
  • Provide Senior Management with updates on any relevant changes to policy or projects related to operational risk that have an impact on their area of responsibility
What we offer
What we offer
  • Annual performance-based bonus
  • Additional bonuses for recognition awards
  • Multisport card
  • Private medical care
  • Life insurance
  • One-time reimbursement of home office set-up (up to 800 PLN)
  • Corporate parties & events
  • CSR initiatives
  • Nursery discounts
  • Financial support with trainings and education
  • Fulltime
!
Read More
Arrow Right

Senior Security Architect

Rackspace Technology is looking for a Senior Security Architect to support 'Clou...
Location
Location
Egypt
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven track record in security consulting
  • Experience designing and securing Landing Zones (LZs) in cloud environments
  • Experience designing secure platforms on major hyperscalers (AWS, Azure, or GCP - GCP preferred)
  • Demonstrable experience designing secure cloud-native systems
  • Demonstrable experience in relevant legislation, industry regulations and standards (ISR, EU GDPR, HIPAA, ISO27001, ISO 22301, ISO/IEC 20000-1, ISO 22301, NCEMA, NIST CSF, PCI DSS, Cloud Security Alliance CCM, CIS, OWASP, Cyber Essentials)
  • In-depth knowledge of Well-architected frameworks and best practices of major cloud providers
  • Ability to lead engagements and take ownership for successful delivery
  • Specialist cloud security architectural knowledge in: Account governance, Identity and Access Management (IAM), Asset management and data protection, Infrastructure and platform security, Application security including threat modelling and secure CI/CD, Change management practice and detection capabilities, Boundary defence, Cloud Logging and Monitoring, Continues vulnerability and patch management systems, Incident response and threat mitigation, Cloud backup/recovery and disaster recovery (DR)
  • Client-facing consultancy experience within large enterprises
  • Ability to identify and plan to resolve technical and organizational challenges
Job Responsibility
Job Responsibility
  • Advise and guide customers on cloud security journey as Subject Matter Expert (SME)
  • Engage with customers to assess cloud security posture
  • Ensure subsequent cloud design and build is appropriately secured
  • Provide guidance on cloud security roadmap
  • Assist on defining right-size cloud security controls
  • Liaise with customer's architects and engineers
  • Advise, design and deliver innovative cloud security Proof of Concepts
  • Evolve existing Rackspace security services
  • Implement new services under 'Cloud Security Service' banner
  • Establish best-practices for consultancy
  • Fulltime
Read More
Arrow Right

Senior IT Security Engineer

An exciting opportunity has become available for a Senior IT Security Engineer t...
Location
Location
United Kingdom , Brierley Hill
Salary
Salary:
38682.00 - 46580.00 GBP / Year
wmas.nhs.uk Logo
West Midlands Ambulance Service University NHS...
Expiration Date
March 16, 2026
Flip Icon
Requirements
Requirements
  • At least 3 years experience in an IT role, which should include IT Security responsibility & dealing with vulnerabilities, risks & threats
  • Familiarity with an assortment of security technologies from different vendors (e.g., Tenable Nessus, Microsoft XDR, Forcepoint Web)
  • Achieved, or evidence of working towards & ability to obtain recognized IT Security qualifications such as CISMP, CISSP, CASP etc.
  • Evidence of continuing professional development
  • Full UK Driving Licence
  • Knowledge of NHS IT systems and services (desirable)
  • Current knowledge on latest cyber threats & mitigation of
  • Knowledge of hardening infrastructure systems both on premise & in the cloud
  • Familiarity with patch management methodologies
  • Familiarity with Microsoft cloud technologies (e.g., Microsoft Exchange, Azure, Intune, SharePoint, Teams)
Job Responsibility
Job Responsibility
  • Responsible for a range Trust IT Security policy implementation and development shaping the trusts long term IT patching cycle
  • Assist in the translation of Trust Long term strategic plans, objectives and policy decisions into operational activity
  • Maintain high awareness of developing standards and innovations in the area of IT Security
  • Ensure services are supported to agreed hours of service to agreed service levels by participation within the on-call rota
  • Act as an authority and provide specialist knowledge across the range of IT security procedures and practices
  • Work with stakeholders to ensure clear definition and agreement of service
  • Conduct risk assessments as appropriate and advise the Trust on IT Security concerns
  • Liaise with external/third parties to ensure the Trusts IT Security stance is not compromised
  • Provide specialist knowledge as required or requested by other departments on the procurement of new solutions
  • Work with the Heads of IT Services to ensure the IT systems and services are affordable and cost effective
What we offer
What we offer
  • 9.5% on-call allowance in addition to the band 6 salary & section 2 unsocial hours enhancements
  • Flexible working options
  • Mileage expense is available where appropriate for Trust business
  • Fulltime
!
Read More
Arrow Right

Service Operations Specialist

To assure SITA's competitive strength and business growth through the provision ...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
sita.aero Logo
SITA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 3 -5 years of proven experience in the network and/or application/system support domain, IT System Administrator and application support role, or in a similar infrastructure-focused role
  • Must have dealt directly with external customers delivering to SLAs
  • A background in hybrid IT environments (on-premises and cloud), with practical knowledge of virtualization platforms (e.g., VMware) and cloud services (e.g., AWS)
  • Strong hands-on experience in managing and troubleshooting servers, network infrastructure, enterprise applications, and client systems in complex IT environments
  • Experience in operation and maintenance of airport IT systems, networking and airline-specific applications is highly preferred
  • A background in Airport IATA standards, airline infrastructure/applications, SBD, E-Gates, and airport passenger/baggage (Pax/Bags) systems would be an added advantage
  • Proficiency in Windows and Linux server environments, including installation, configuration, and administration
  • Strong knowledge of networking concepts and protocols such as TCP/IP, DNS, DHCP, and VPN
  • Strong hardware knowledge such as server, router, switch etc.
  • Knowledge on web server such as Apache, Tomcat
Job Responsibility
Job Responsibility
  • Provide Service Operations support to internal and external customers in accordance with the terms of the customer contract and Service Level Agreements (SLAs)
  • Ensure the correct functioning and maintenance of all internal and external systems and products serviced by Service Operations
  • When required act as the customer SPOC and co-ordinate the scheduling of intervention with Customer's internal resolver groups and the Service Desk ensuring the highest level of customer services and communications are maintained to resolve the fault and incident within the prescribed SLA
  • Carry out incident and problem management support to the highest standards and co-ordinate the resolution with the appropriate resolver groups
  • Ensure shortest restoral times possible initiating the timely escalations to specialized resolver groups inside and outside SITA according to the customer contracts SLAs and monitoring requirements
  • To ensure the Service Operations team adheres to the highest working standards for all incidents and problems by providing guidance support and direct management
  • Proactively detect problems related to service and infrastructure operations and delivery services conduct diagnostics and provide service request ownership to ensure resolution of customer problems
  • Support the senior team members in the management reporting and co-ordination of day-day tasks during absence of the Lead Engineer
  • Adhere to installation guidelines and industry best practices in order to deliver quality service and infrastructure operations
  • Use the appropriate tools and equipment to perform the installation intervention and repairs in accordance with Service Operations and Delivery guidelines and instructions where provided
What we offer
What we offer
  • Flex Week: Work from home up to 2 days/week (depending on your team's needs)
  • Flex Day: Make your workday suit your life and plans
  • Flex-Location: Take up to 30 days a year to work from any location in the world
  • Employee Wellbeing: Employee Assistance Program (EAP), for you and your dependents 24/7, 365 days/year
  • Champion Health - a personalized platform that supports a range of wellbeing needs
  • Professional Development: Level up your skills with our training platforms, including LinkedIn Learning
  • Competitive Benefits: Competitive benefits that make sense with both your local market and employment status
  • Fulltime
Read More
Arrow Right