Rodeo
Get started

Laing O'Rourke

Cyber Security Vulnerability Manager

Dartford
Posted 1 day ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Help shape a resilient, risk-led cyber security environment at Laing O'Rourke.

We are looking for an experienced Cyber Security Vulnerability Manager to establish and lead an enterprise-wide vulnerability management programme. This is an opportunity to influence how vulnerabilities are identified, prioritised and resolved across a complex technology landscape, while helping colleagues make clear, informed decisions about cyber risk.

Laing O'Rourke's IT function has renewed its strategy to support the company's ambition to transform the construction industry, making it more sustainable, more productive, and fit for the future.

Technology has a critical role to play in achieving this ambition. Our focus is on applying digital capability in ways that genuinely matter, shaping how complex projects are delivered, how decisions are made, and how innovation improves outcomes for people, communities, and the environment.

Our mission is clear: to create a modern and resilient technology environment where trusted data informs every decision, AI enhances every process, and digital capability enables the organisation to operate with greater scale and productivity.

To deliver this, we are building a different kind of IT function, one that is trusted by the business, forward looking in its thinking, and deeply connected to operational outcomes. We are looking for individuals who are curious, thoughtful, and motivated by contributing to work that has real industry impact.

The Role

As Cyber Security Vulnerability Manager, you will develop, implement and continually improve Laing O'Rourke's vulnerability management capability across IT, cloud, operational technology and application environments.

You will provide clear oversight of security vulnerabilities and ensure they are prioritised according to business risk, addressed within agreed service levels and reported effectively to senior stakeholders. Through practical guidance and collaborative working, you will help strengthen security, support regulatory compliance and enable informed decision-making across the organisation.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Key Responsibilities

  • Design, implement and evolve an enterprise-wide vulnerability management strategy and programme covering discovery, assessment, risk prioritisation, remediation, validation and reporting.
  • Conduct and coordinate vulnerability assessments across IT infrastructure, cloud services, applications, software development and manufacturing environments.
  • Work collaboratively with technology colleagues to agree proportionate remediations, mitigations and compensating controls.
  • Improve the automation of vulnerability management workflows and support the continued development of the organisation's cyber security capability.
  • Establish clear measures and reporting that provide visibility of vulnerabilities, remediation progress and business risk.
  • Collaborate with Cyber Security Governance, Risk and Compliance colleagues to improve security across the supply chain and third-party providers.
  • Develop vulnerability management frameworks, policies and standards that support compliance with ISO 27001, Cyber Essentials Plus, Essential Eight and other relevant requirements.
  • Help improve mean time to detect and mean time to remediate while balancing cyber risk with operational availability.
  • Build trusted relationships with stakeholders, positioning cyber security as a practical enabler of the business.

Essential Requirements

  • Proven experience developing and implementing cyber security vulnerability management programmes within a large enterprise environment.
  • Practical experience using vulnerability scanning technologies across cloud, hybrid and complex technology environments.
  • Knowledge of threat intelligence and risk-based vulnerability prioritisation models.
  • Strong analytical and problem-solving skills, with the judgement to recommend practical and proportionate responses to risk.
  • The ability to translate technical vulnerabilities, security risks and compliance requirements into clear, business-relevant information.
  • Effective stakeholder management and communication skills, with experience working collaboratively across technical and non-technical teams.
  • The ability to work independently, remain accountable for outcomes and guide remediation activity through to completion.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Desirable Requirements

  • A relevant professional certification, such as Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP).
  • Experience working across multidisciplinary teams within a complex organisational environment.

What Makes This Role Compelling?

You will have the opportunity to build and shape a vulnerability management programme with broad organisational reach. Your work will improve visibility of cyber risk, support faster and more effective remediation, and help protect technology environments that are central to the delivery of complex engineering and construction projects.

This role offers a balance of strategy, technical insight and stakeholder influence, providing the opportunity to make a visible contribution to Laing O'Rourke's future security and resilience.

About Laing O'Rourke

Laing O'Rourke is an international engineering and construction business known for pushing boundaries in digital engineering, modern methods of construction and sustainable delivery. With more than 150 years of heritage, we are committed to creating environments in which diverse teams can excel and thrive.

Accessibility & Inclusion

We are proud to be part of the Disability Confident scheme. If you meet the essential criteria and would like to be considered through our Offer an Interview scheme, please let us know. We're also happy to provide reasonable adjustments throughout the recruitment process.

If you require an alternative format of this advert or need support during the application, please contact: resourcingteam@laingorourke.com

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

Dartford, England, United Kingdom

Sign up to applySee more jobs like this