Enterprise Security Posture Management SME
knutsford wa16, United KingdomPosted Aug 3, 2026
Enterprise Security Posture Management SME
hackajob Knutsford, England, United KingdomEnterprise Security Posture Management SME
hackajob
Knutsford, England, United Kingdom
5 days ago
Be among the first 25 applicants
See who hackajob has hired for this role
Save
Use AI to assess how you fit
Get AI-powered advice on this job and more exclusive features.
hackajob is collaborating with Barclays to connect them with exceptional professionals for this role.Join our Proactive Defence team as an Enterprise Security Posture Management SME, leading capabilities across Attack Surface Management (ASM), Attack Path Management (APM), and Breach & Attack Simulation (BAS) within the CISO organization. You will drive a proactive, threat-informed approach to exposure management, helping the bank identify, prioritise, and reduce exploitable security risk through greater visibility, attack path analysis, and continuous control validation.
This role is critical to shifting from reactive vulnerability management to proactive exposure reduction by providing continuous visibility of the attack surface, mapping how attackers can move through the environment, and validating security controls through adversary simulation. In doing so, you will help the organization identify, prioritise, and reduce exploitable security risk in a way that is threat-informed, measurable, and directly tied to business impact.
To be successful in this role, you should have experience with:
- Attack surface discovery and asset attribution Ability to continuously identify internet-facing assets, shadow IT, domains, subdomains, certificates, cloud services, APIs, SaaS exposures, third-party-hosted assets, and assets with unclear ownership
- Risk-based exposure prioritisation Ability to prioritise the most material exposures by combining exploitability, business criticality, asset ownership, threat intelligence, vulnerability data, and likelihood of attack
- Threat-informed attack surface analysis Ability to enrich attack surface findings with attacker techniques, active exploitation trends, KEV data, offensive security teams findings, and sector-specific threat intelligence
- Hands-on experience with EASM/ASM platforms Experience using tools such as external attack surface management, CAASM, vulnerability management, cloud posture, and exposure management platforms
- Cloud, identity, SaaS, CI/CD and API exposure knowledge Understanding of common attack surface risks across AWS, Azure, GCP, Entra ID, Active Directory, Kubernetes, APIs, internet gateways, and exposed management interfaces
- Understanding of Breach and Attack Simulation techniques Ability to use BAS outputs to validate whether identified exposures are exploitable, test control effectiveness, simulate attacker behaviours, and support evidence-based prioritisation
Location : Knutsford.
Purpose of the role
To keep our customers, clients, and colleagues safe by identifying cyber-vulnerabilities across the Bank, using a risk-based approach to prioritise them, and to drive effective remediation activity.
Accountabilities
- Allocation of the correct risk rating and remediation prioritisation to a vulnerability based on industry standards for assessment, available threat intelligence concerning exploitation, the reachability of the host (or asset) and the value of the service(s) running on the impacted host.
- Development of vulnerability management operating model, policies and procedures to ensure consistency in vulnerability identification, remediation and reporting. Element owner of the Vulnerability Management Standard including Issues Management and Regulatory alignment.
- Communication of vulnerabilities to relevant parties including senior stakeholders, vendors, external security partners and affect business units using reports and dashboards and provide recommendations for improvement in vulnerability management practices.
- Collaboration with Threat intelligence and Cyber Operations teams to assess and contextualise exposure to latest threat trends and exploits and set appropriate remediation timescales.
- Definition of requirements and acceptance criteria for the implementation and maintenance of automation tools to streamline vulnerability management processes within operating systems and applications.
- Reporting of remediation status of Security Assurance Specialist team findings against Key Risk Indicators.
- To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and escalate breaches of policies/procedures..
- If managing a team, they define jobs and responsibilities, planning for the department’s future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements..
- If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L – Listen and be authentic, E – Energise and inspire, A – Align across the enterprise, D – Develop others..
- OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi-year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions..
- Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment.
- Manage and mitigate risks through assessment, in support of the control and governance agenda.
- Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does.
- Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business.
- Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies.
- Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions.
- Adopt and include the outcomes of extensive research in problem solving processes.
- Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes.
-
Seniority level
Mid-Senior level -
Employment type
Full-time -
Job function
Other, Information Technology, and Management -
Industries
Software Development
Referrals increase your chances of interviewing at hackajob by 2x
See who you know Get notified when a new job is posted.Similar jobs
-
Enterprise Security Posture Management SME
Enterprise Security Posture Management SME
Barclays
Knutsford, England, United Kingdom 1 month ago -
Security Enterprise Architect
Security Enterprise Architect
Barclays
Knutsford, England, United Kingdom 10 minutes ago -
Senior Vulnerability Manager
Senior Vulnerability Manager
UK Home Office
Sheffield, England, United Kingdom 1 week ago -
Senior Vulnerability Manager
Senior Vulnerability Manager
UK Home Office
Salford, England, United Kingdom 1 week ago -
Managed Cloud Security Lead
Managed Cloud Security Lead
SBS
Sheffield, England, United Kingdom 1 week ago -
Senior Threat & Vulnerability Analyst
Senior Threat & Vulnerability Analyst
Royal London
Alderley Edge, England, United Kingdom 1 week ago -
Principal Mobile Security Expert
Principal Mobile Security Expert
BlackBerry
Manchester, England, United Kingdom 3 weeks ago -
Senior Cyber Security Engineer
Senior Cyber Security Engineer
The Beauty Tech Group (CurrentBody, ZIIP, Tria)
Manchester, England, United Kingdom 1 week ago -
Security Consultant-Data Security
Security Consultant-Data Security
IBM
Manchester, England, United Kingdom 1 day ago -
Vice President, Information Security - Cyber Threat Simulation
Vice President, Information Security - Cyber Threat Simulation
BNY
Manchester, England, United Kingdom 1 week ago -
Security Consultant-Security Strategy, Risk & Compliance Services
Security Consultant-Security Strategy, Risk & Compliance Services
IBM
Manchester, England, United Kingdom 1 day ago -
Global Cyber Security Engineer
Global Cyber Security Engineer
UGI International
Chesterfield, England, United Kingdom 5 days ago -
Cyber Threat Intelligence (CTI) Lead - Senior Manager
Cyber Threat Intelligence (CTI) Lead - Senior Manager
Lloyds Banking Group
Manchester, England, United Kingdom £92,701.00 - £119,966.00 16 hours ago -
Cyber Risk and Compliance Lead (GRC) - Up to £80k
Cyber Risk and Compliance Lead (GRC) - Up to £80k
Few&Far
Manchester Area, United Kingdom £70,000.00 - £80,000.00 4 days ago -
Senior Vulnerability Manager
Senior Vulnerability Manager
Manchester Digital
Manchester, England, United Kingdom 3 days ago -
Lead Security & Compliance Analyst
Lead Security & Compliance Analyst
ev.energy
United Kingdom £85,900.00 - £105,200.00 5 days ago -
Senior Security Solutions Architect
Senior Security Solutions Architect
Qualys
United Kingdom 2 weeks ago -
Microsoft Security SME
Microsoft Security SME
PwC UK
Manchester, England, United Kingdom 4 months ago -
Senior Security Consultant
Senior Security Consultant
ANS Group
Manchester Area, United Kingdom 1 week ago -
Cybersecurity Specialist UKI
Cybersecurity Specialist UKI
Schneider Electric
Warrington, England, United Kingdom 2 weeks ago -
Senior Threat & Vulnerability Engineer | Remote (UK) | Cloud-Native SaaS
Senior Threat & Vulnerability Engineer | Remote (UK) | Cloud-Native SaaS
La Fosse
United Kingdom 4 weeks ago -
Lead Security Engineer
Lead Security Engineer
Made Tech
Greater Manchester, England, United Kingdom £75,000.00 - £90,000.00 4 weeks ago -
Information Security Engineer - Vulnerability Management
Information Security Engineer - Vulnerability Management
Starling
Manchester, England, United Kingdom 3 weeks ago -
Senior Security Engineer
Senior Security Engineer
NCC Group
Manchester, England, United Kingdom 3 weeks ago -
ServiceNow Risk, Cyber & Resilience Transformation Lead - Managing Consultant
ServiceNow Risk, Cyber & Resilience Transformation Lead - Managing Consultant
Capgemini Invent
Manchester, England, United Kingdom 1 week ago -
Senior Security Analyst
Senior Security Analyst
Digital Science
United Kingdom 3 weeks ago -
Security Architect
Security Architect
Advania UK
Manchester, England, United Kingdom 2 weeks ago
People also viewed
-
Information Security Analyst - Vulnerability Management
Information Security Analyst - Vulnerability Management
Manchester, England, United Kingdom 3 weeks ago -
Director Of Information Security
Director Of Information Security
Stockport, England, United Kingdom 1 week ago -
Head of Cyber Defence Centre
Head of Cyber Defence Centre
Manchester, England, United Kingdom 1 day ago -
DLP Specialist
DLP Specialist
West Yorkshire, England, United Kingdom £45,000.00 - £55,000.00 1 day ago -
Lead Security Engineer
Lead Security Engineer
Manchester Area, United Kingdom £75,000.00 - £90,000.00 4 days ago -
Digital Trust - Managing Consultant
Digital Trust - Managing Consultant
Manchester, England, United Kingdom 1 month ago -
Senior Staff Information Security Engineer
Senior Staff Information Security Engineer
United Kingdom 1 day ago -
Security Detection & Response II
Security Detection & Response II
Chester, England, United Kingdom 3 days ago -
Principal AI Security Specialist, UK&I
Principal AI Security Specialist, UK&I
United Kingdom 2 weeks ago -
Senior Manager, Product Security
Senior Manager, Product Security
Manchester, England, United Kingdom 2 weeks ago
Similar Searches
-
Security Coordinator jobs
1,650 open jobs -
Facilities Security Officer jobs
239 open jobs -
Physical Security Specialist jobs
1,686 open jobs -
Director of Security jobs
790 open jobs -
Therapeutic Staff Support jobs
1,303 open jobs -
Safety Security jobs
7,442 open jobs -
Security Researcher jobs
2,946 open jobs -
Network Security Specialist jobs
1,299 open jobs -
Security Operations Manager jobs
1,084 open jobs -
Information Security Specialist jobs
1,164 open jobs -
Security Analyst jobs
3,177 open jobs -
Security Technician jobs
1,453 open jobs -
Director of Safety And Security jobs
119 open jobs -
Regional Network Manager jobs
212 open jobs -
Security Engineer jobs
14,272 open jobs -
Firearms Instructor jobs
892 open jobs -
Cyber Security Specialist jobs
2,127 open jobs -
Facilities Security Manager jobs
313 open jobs -
Crime Prevention Officer jobs
245 open jobs -
Safety Supervisor jobs
2,978 open jobs -
Director of Corporate Security jobs
56 open jobs -
Loss Prevention Manager jobs
915 open jobs -
Security Sales Specialist jobs
263 open jobs -
Security Consultant jobs
4,183 open jobs -
Information System Security Officer jobs
441 open jobs