via ats_lever · 16 July 2026 ·5 days ago

Vulnerability Operation Center Lead

jobgether
UK Full-time
298 more jobs in UK.
Upload your CV and see which ones actually match you.
Upload CV

Accountabilities

  • Build and lead the Vulnerability Operations Center, defining processes, governance, and best practices for the complete vulnerability management lifecycle.

  • Manage vulnerability detection, validation, triage, remediation tracking, and reporting across cloud infrastructure, products, and hardware environments.

  • Improve automated vulnerability triage capabilities through data enrichment, AI-assisted workflows, contextual risk scoring, and vulnerability correlation techniques.

  • Perform hands-on validation and prioritization of critical and zero-day vulnerabilities to support rapid response efforts.

  • Collaborate closely with engineering, security, compliance, and operations teams to ensure timely remediation and continuous risk reduction.

  • Drive improvements in patch management processes and oversee remediation initiatives across multiple engineering teams.

  • Manage vulnerability intake from scanners, penetration testing, bug bounty programs, and threat intelligence sources.

  • Prioritize findings using industry-standard risk frameworks, including CVSS, EPSS, SSVC, exploitability, asset criticality, and business impact.

  • Contribute to the development and automation of internal vulnerability management and security orchestration platforms.

  • Define key vulnerability management metrics, monitor trends, and present actionable insights and KPIs to security leadership.

  • Coordinate organizational responses to critical security events and maintain integrations across the broader security ecosystem.

Requirements
  • 5–8 years of experience in information security, including at least 3 years focused on vulnerability management or security operations.

  • Strong expertise in vulnerability management processes across cloud-native and enterprise infrastructure environments.

  • Deep knowledge of vulnerability assessment methodologies, including CVE, NVD, CVSS, EPSS, SSVC, and risk-based prioritization frameworks.

  • Experience working with cloud platforms such as AWS, Google Cloud, Azure, or private cloud infrastructure.

  • Solid understanding of vulnerability scanning technologies, their capabilities, and their limitations in modern cloud environments.

  • Ability to write and review code, with experience or willingness to develop automation using Golang or similar programming languages.

  • Strong understanding of software and infrastructure vulnerability classes, exploitability analysis, and remediation validation.

  • Experience collaborating with engineering teams to drive remediation while balancing technical risk and operational priorities.

  • Excellent analytical, communication, and stakeholder management skills, with the ability to translate complex technical risks into business-focused recommendations.

  • Experience with Kubernetes security, container security, software supply chain security, SBOMs, dependency scanning, or bug bounty programs is considered an advantage.

  • Previous experience building or scaling a vulnerability management program from the ground up is highly desirable.
Benefits
  • Competitive compensation package, including equity participation opportunities.

  • Flexible remote-first working environment.

  • Opportunity to build and lead a strategic cybersecurity function from its inception.

  • High level of ownership and influence over security strategy, tooling, and operational processes.

  • Career growth, continuous learning, and professional development opportunities.

  • Collaborative, engineering-driven culture focused on innovation and technical excellence.

  • Opportunity to contribute to AI-powered security technologies and next-generation cloud infrastructure.

  • International work environment with highly experienced engineering and security professionals.

  • Fast-paced organization offering meaningful technical challenges and significant business impact.

The market for this type of role

Similar openings
298
jobs in UK
Full-time
80%
of roles in the UK
Remote possible
5%
of roles
jobgether

200 open positions · Argentina, Austria, Belgium, Denmark, France +11

📊 Job market · the UK
65,446
active jobs
8%
Remote
Ø 2d
avg. online

Frequently asked questions

How many jobs are available in UK?
Currently 298 roles in UK on AlmostHired, across 99 different companies. Our data is updated daily.
Do roles in the UK offer remote work?
5% of roles in the UK allow remote work, either partial or full. To filter specifically for remote positions, use AlmostHired.
How do I know if I match this role?
Upload your CV — our AI compares your profile to the job requirements and gives you a precise match score, with matching and missing skills.