This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Join us as a Vulnerability Remediation SME at Barclays where you will spearhead the evolution of our infrastructure and deployment pipelines, driving innovation and operational excellence. You will harness cutting-edge technology to build and manage robust, scalable and secure infrastructure, ensuring seamless delivery of our digital solutions.
Job Responsibility
Allocation of the correct risk rating and remediation prioritisation to a vulnerability based on industry standards for assessment, available threat intelligence concerning exploitation, the reachability of the host (or asset) and the value of the service(s) running on the impacted host
Development of vulnerability management operating model, policies and procedures to ensure consistency in vulnerability identification, remediation and reporting
Communication of vulnerabilities to relevant parties including senior stakeholders, vendors, external security partners and affect business units using reports and dashboards and provide recommendations for improvement in vulnerability management practices
Collaboration with Threat intelligence and Cyber Operations teams to assess and contextualise exposure to latest threat trends and exploits and set appropriate remediation timescales
Definition of requirements and acceptance criteria for the implementation and maintenance of automation tools to streamline vulnerability management processes within operating systems and applications
Reporting of remediation status of Security Assurance Specialist team findings against Key Risk Indicators
Requirements
Deepexpertisein Vulnerability Management and Remediation, includingprioritisationusingrisk‑basedmethodologies (severity, exploitability, threat intelligence, reachability, and business impact)
Strong understanding of CVSS, KEV, threat intelligence correlation, andexposure‑basedrisk reduction approaches to drive remediation outcomes
Ability to define, track, and enforce remediation SLAs, manage exceptions, and drive closure through structured escalation and governance forums
Demonstrated capability to define and own Vulnerability Management operating models, standards, policies, and procedures, including regulatory andissues‑managementalignment
Strong understanding of risk & control frameworks, audit expectations, and regulatory compliance in a global financial services environment
Nice to have
Confidentdecision‑makerwith the ability toprioritiseat pace, manage competing demands, and take ownership for risk reduction outcomes at scale
Strong senseof control ownership, accountability, and operational risk management