Find & Fix Vulnerability Engineer

Reference: PR/064752
Find & Fix / Vulnerability Engineer:

Active UK SC Clearance is essential
Hybrid – 1 day onsite per week from Stevenage or Filton

We are seeking a Vulnerability Management Engineer to take ownership of the full lifecycle of vulnerability management across both internal systems and client environments. This is a key role focused on improving security posture through effective identification, prioritisation, and remediation of vulnerabilities across cloud and on-prem environments.

The Role
You will be responsible for driving vulnerabilities through to full resolution—ensuring issues are not just identified but properly remediated, verified, and evidenced. Working closely with cross-functional teams, you will help balance risk reduction with operational stability while embedding secure practices at scale.

Key Responsibilities

  • Own the end-to-end vulnerability remediation lifecycle — from identification and validation through to remediation, verification, and closure
  • Remediate cloud security issues using tools such as:
  • Microsoft Defender for Cloud
  • Azure Advisor
  • AWS Inspector & Security Hub
  • Conduct on-prem vulnerability scanning and coordinate remediation activities
  • Translate security advisories into clear, actionable remediation tasks for engineering teams
  • Resolve OS and application vulnerabilities via patching, hardening, and control implementation
  • Collaborate with infrastructure, platform, and application teams to deploy fixes safely (including change control, testing, and rollback planning)
  • Maintain comprehensive documentation and audit evidence, including root cause analysis and validation
  • Produce regular reporting on vulnerability trends, SLA performance, and residual risk
  • Deliver remediation at scale using DevOps practices and Infrastructure as Code (Terraform)
  • Continuously improve vulnerability management processes and security baselines

Environment

  • Hybrid cloudAzure & AWS
  • On-prem infrastructure environments
  • Security tooling and enterprise vulnerability management frameworks
  • Cross-functional collaboration across engineering, security, and operations teams

Key Requirements

  • Proven experience in vulnerability management and remediation
  • Strong exposure to Azure, AWS, and on-prem environments
  • Experience with vulnerability scanning and security tools
  • Understanding of security frameworks and best practices
  • DevOps mindset with experience in automation, IaC (Terraform), and scalable solutions
  • Strong stakeholder management and communication skills
  • Active UK SC Clearance is essential
£55,000.00
Per annum
£55000 per annum

Stevenage

Permanent

Added 22/05/2026
Reference: PR/064752

Find & Fix Vulnerability Engineer

Stevenage
Permanent

Other similar jobs

DevOps Engineer

Added 22/06/2026

Role: DevOps EngineerLocation: Newcastle (Hybrid)Type: ContractDuration: 12 monthsRole OverviewWe are seeking an experienced DevOps Engineer to join our team in Newcastle on a 12-month contract. You will play a key role in building and maintaining development environments, implementing automation, and supporting continuous integration and delivery pipelines.You will work closely with development and testing teams to ensure efficient, reliable, and scalable software delivery.Key ResponsibilitiesCollaborate with DevOps, development, and client teams to deliver robust environments and tools.Set up, configure, and maintain tools such as GitLab, Jenkins, SonarQube, and testing platforms.Design and implement CI/CD pipelines to enable continuous integration, testing, and delivery.Automate software...

Learn more
Required for two factor authentication
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.