×
Register Here to Apply for Jobs or Post Jobs. X

Vulnerability Lead

Job in Glasgow, Glasgow City Area, G1, Scotland, UK
Listing for: Barclays
Full Time position
Listed on 2026-03-07
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security
Salary/Wage Range or Industry Benchmark: 80000 - 100000 GBP Yearly GBP 80000.00 100000.00 YEAR
Job Description & How to Apply Below
Position: Vulnerability Hunting Lead

Join us as a Vulnerability Hunting Lead, to support our cybersecurity function by identifying, assessing, and helping to address vulnerabilities across our enterprise environment. This role sits within our threat‑informed defence approach and contributes to improving our long‑term vulnerability discovery work. You will collaborate with teams across Technology, Engineering, and Cybersecurity to help reduce risk across the organisation.

To be successful as a Vulnerability Hunting Lead , you should have experience with:

  • Strategic Cybersecurity Leadership
    -Ability to define, influence, and execute a long‑term vulnerability discovery and remediation strategy across the enterprise. This includes shaping threat‑driven programs, securing funding, and aligning with CISO/CIO priorities.
  • Advanced Offensive Security Expertise - Deep understanding of vulnerability research, exploit development, red‑team tradecraft, adversary TTPs, and emerging threat landscapes. This includes the ability to assess and steer technical teams performing advanced hunting.
  • Enterprise‑Scale Risk Management & Governance
    -Skill in assessing business impact, prioritising vulnerabilities at scale, and embedding risk‑based decision making into engineering, infrastructure, and product teams. Strong stakeholder management across CTO, engineering, and risk functions is essential.

Some other highly valued skills may include:

  • AI‑Driven Detection & Automation - Experience leveraging machine learning/AI, automation frameworks, or data‑driven analytics to accelerate vulnerability discovery and reduce manual effort.
  • Cross‑Functional Influence & Executive Communication - Ability to translate complex technical findings into clear, actionable insights for senior executives, boards, and non‑technical stakeholders.
  • Industry Collaboration & Thought Leadership - Engagement with security communities (e.g., FIRST, CSA, OWASP), participation in disclosure programs, and maintaining external intelligence networks that enhance the organisation’s visibility and maturity.

You may be assessed on key skills that support success in this role, such as risk and controls, change and transformation, business acumen, strategic thinking, and digital and technology skills, in addition to job‑specific technical capabilities.

This role will be based in Glasgow

Purpose of the role

To keep our customers, clients, and colleagues safe by identifying cyber-vulnerabilities across the Bank, using a risk‑based approach to prioritise them, and to drive effective remediation activity.

Accountabilities
  • Allocation of the correct risk rating and remediation prioritisation to a vulnerability based on industry standards for assessment, available threat intelligence concerning exploitation, the reachability of the host (or asset) and the value of the service(s) running on the impacted host.
  • Development of vulnerability management operating model, policies and procedures to ensure consistency in vulnerability identification, remediation and reporting. Element owner of the Vulnerability Management Standard including Issues Management and Regulatory alignment.
  • Communication of vulnerabilities to relevant parties including senior stakeholders, vendors, external security partners and affect business units using reports and dashboards and provide recommendations for improvement in vulnerability management practices.
  • Collaboration with Threat intelligence and Cyber Operations teams to assess and contextualise exposure to latest threat trends and exploits and set appropriate remediation timescales.
  • Definition of requirements and acceptance criteria for the implementation and maintenance of automation tools to streamline vulnerability management processes within operating systems and applications.
  • Reporting of remediation status of Security Assurance Specialist team findings against Key Risk Indicators.
Vice President Expectations
  • To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and elevate breaches of policies/procedures..
  • If managing a team, they define jobs…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary