Adecco
Vulnerability Management Service Lead

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Location: Preston OR Inverness (Hybrid Working)
Salary: £75,000 + Bonus + Benefits
Security Clearance: Eligible for SC Clearance Required (SOLE BRITISH NATIONAL)
Lead Enterprise Vulnerability Management in a Complex, Security-Critical Environment
We're seeking an experienced Vulnerability Management Service Lead to take ownership of a mature vulnerability management capability within a highly regulated enterprise environment.
This is an opportunity to play a critical role in protecting business-critical systems by driving governance, risk reduction, supplier accountability, and continuous improvement across a large-scale security operation. You'll work closely with senior stakeholders, security teams, and delivery partners to ensure vulnerabilities are effectively identified, prioritised, remediated, and reported across the organisation.
If you're passionate about cyber risk management, security governance, and influencing positive security outcomes at scale, we'd love to hear from you.
The Role
As the Vulnerability Management Service Lead, you will be responsible for owning and governing the end-to-end vulnerability management framework, ensuring effective risk management across complex technology estates.
Key Responsibilities Include
- Leading the enterprise vulnerability management service and governance framework
- Driving vulnerability remediation activities through internal teams and third-party suppliers
- Establishing and maintaining vulnerability reporting, metrics, KPIs, and executive dashboards
- Prioritising vulnerabilities using risk-based methodologies including CVSS, EPSS, Known Exploited Vulnerabilities (KEV), and business criticality
- Managing exception processes, remediation timelines, and security risk governance
- Providing assurance, oversight, and challenge across a multi-supplier service environment
- Presenting vulnerability trends, risk exposure, and remediation performance to senior stakeholders
- Ensuring audit readiness, evidence management, and compliance alignment
- Identifying opportunities for process improvement, automation, and service maturity enhancement
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
What We're Looking For
Essential Experience
- Significant experience in Vulnerability Management, Cyber Security Governance, GRC, or Security Operations Governance roles
- Strong understanding of the end-to-end vulnerability management lifecycle
- Experience implementing and governing risk-based remediation programmes
- Proven ability to work across complex enterprise environments and multiple delivery partners
- Strong stakeholder management skills with the ability to influence technical and non-technical audiences
- Experience producing executive-level reporting and communicating cyber risk to senior leadership
- Knowledge of recognised security frameworks and standards such as:
- NIST Cyber Security Framework
- ISO 27001
- NCSC guidance
- Secure by Design principles
Desirable Experience
- Hands-on experience with vulnerability management platforms such as:
- Tenable
- Qualys
- Brinqa
- Experience working within defence, government, public sector, or other highly regulated environments
- Relevant cyber security certifications


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Working Arrangement
This is a hybrid position requiring onsite attendance in either Preston or Inverness approximately two days per week, with flexibility depending on business requirements.
What's on Offer
- The opportunity to lead a critical cyber security function within a large-scale enterprise environment
- Exposure to complex and high-profile technology estates
- Ongoing professional development and training opportunities
- Access to experienced cyber security professionals across governance, operations, engineering, architecture, and compliance disciplines
- Flexible and hybrid working arrangements
- Comprehensive benefits package
- Long-term career progression within a growing cyber security practice
Security Requirements
Due to the nature of the work, successful applicants will be required to undergo pre-employment screening and must be eligible to obtain Security Check (SC) Clearance. Applicants will typically need to have resided continuously in the UK for the previous five years.
Apply Now
If you're an experienced cyber security professional with a strong background in vulnerability management, governance, and risk reduction, we'd love to hear from you.
Join a team where you'll have genuine influence over cyber security strategy, risk management, and the protection of critical services.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location