Senior Vulnerability Management specialist

Morson Group · Not specified, Southampton

Senior Vulnerability Management specialist at Morson Group, based in Not specified, Southampton, paying £600 - £650 per day. This is a permanent role.

Salary
£600 - £650 per day
Location
Not specified, Southampton
Contract
Permanent
Posted
1 day ago
Closes
8 Oct 2026
Sector
Security

About 88% above the going rate for security

Reference https://www.morson.com/jobs/it-and-digital/contract/southampton/senior-vulnerabi

About the role

Senior Vulnerability Management specialist/ Cyber Security Analyst or Cyber Security Engineer 

£600-£650 per day 

Inside IR35

6 Months initally 

Remote (1-2 times onsite a month in central Southampton)

My client is looking for an experienced Senior Vulnerability Analyst to join their Cyber Security team, taking a lead role in identifying, assessing and managing vulnerabilities across a complex enterprise technology environment.

This is a senior position requiring someone who can go beyond simply identifying vulnerabilities. You’ll be expected to understand the underlying risk, prioritise remediation and work closely with infrastructure, cloud, application and security teams to drive vulnerabilities through to resolution.

Security Clearance:
Eligibility for UK Security Check (SC) clearance is a mandatory requirement for this role. Candidates who already hold active SC clearance will be prioritised.

Key Responsibilities:

  • Lead the identification, assessment and prioritisation of vulnerabilities across infrastructure, applications, endpoints and cloud environments.
  • Analyse vulnerability scan results, distinguishing genuine risks from false positives and low-impact findings.
  • Assess vulnerabilities using CVSS, exploitability, asset criticality, exposure and business impact.
  • Monitor emerging vulnerabilities, zero-days and relevant threat intelligence.
  • Work closely with infrastructure, cloud, application, DevOps and IT operations teams to coordinate remediation.
  • Track vulnerabilities through to resolution, ensuring remediation is completed within agreed risk-based timescales.
  • Provide technical guidance and challenge remediation plans, risk acceptances and proposed compensating controls where appropriate.
  • Produce vulnerability reporting, dashboards and management information for technical and senior stakeholders.
  • Identify trends, recurring vulnerabilities and systemic weaknesses across the environment.
  • Help improve vulnerability management processes, tooling, automation and reporting.

Essential Experience:

  • Significant experience in vulnerability management, vulnerability assessment or cyber security operations.
  • Strong understanding of vulnerability assessment methodologies and risk-based prioritisation.
  • Hands-on experience with enterprise vulnerability management platforms such as Tenable, Qualys, Rapid7 or similar.
  • Strong understanding of CVSS, CVE, CWE and common vulnerability types.
  • Experience analysing vulnerabilities across Windows, Linux, network infrastructure, cloud and/or applications.
  • Good understanding of patching, configuration management and security controls.
  • Proven experience working with technical teams to drive vulnerability remediation.
  • Strong analytical and problem-solving skills, with the ability to communicate technical risk clearly to both technical and non-technical stakeholders.
  • Eligible for UK SC security clearance.

Desirable Experience:

  • Active UK SC security clearance.
  • Experience working within Defence, Nuclear, Critical National Infrastructure (CNI) or other highly regulated and security-conscious organisations.
  • Experience with Azure and/or AWS vulnerability management.
  • Experience with container, Kubernetes or DevSecOps security.
  • Knowledge of application security and common web application vulnerabilities.
  • Experience using SIEM, EDR and threat intelligence alongside vulnerability data.
  • Knowledge of NIST, CIS, ISO 27001 or Cyber Essentials.
  • Relevant security certifications such as CISSP, CISM, GIAC, OSCP or similar.

Reference: https://www.morson.com/jobs/it-and-digital/contract/southampton/senior-vulnerabi · Posted 1 day ago · Closes 8 Oct 2026 · Listed via Morson Group

Know someone who'd be great for this? Get a shareable card

Apply for this job

This role is listed via Morson Group. Applications are handled on the employer's site.

Apply on employer site

Opens the employer's website in a new tab.

Safe applying: a genuine employer will never ask you to pay for a DBS check, training or equipment, or move you onto WhatsApp before you are hired. If this listing does, report it and do not pay anything.

Report this job
Salary £600 - £650 per day
Apply now