National AI Awards 2025Discover AI's trailblazers! Join us to celebrate innovation and nominate industry leaders.

Nominate & Attend

Threat and Vulnerability Analyst

University of Glasgow
Glasgow
2 weeks ago
Create job alert

Join to apply for theThreat and Vulnerability Analystrole atUniversity of Glasgow

1 day ago Be among the first 25 applicants

Join to apply for theThreat and Vulnerability Analystrole atUniversity of Glasgow

Job details

Posted 23 May 2025 Salary Grade 7, £40,497 - £45,413 per annum End date 27 June 2025 LocationGlasgow Job Type Management Professional & Administrative Reference171552 Expiry 27 June 2025 at 23:45

Job Description

Job Purpose

The Threat and Vulnerability Analyst is responsible for supporting and delivering the operation of the vulnerability management function. The role will utilise vulnerability management tools and techniques to co-ordinate, categorise and prepare vulnerability remediation plans and present metrics / KPIs to senior stakeholders. The role will also analyse threat data from multiple sources to enrich vulnerability information and highlight emerging threat patterns.

This role will support the development of technologies, policies and procedures to build a high performing vulnerability management function.

Main Duties And Responsibilities

  • Monitor threats intelligence feeds from multiple sources identifying emerging trends or patterns and proactively recommend mitigations
  • Manage vulnerability scanning (scheduling, configuration) and ensuring all assets are compliant with vulnerability policy
  • Develop and continually improve vulnerability policy and strategy and innovate new approaches to embed these institutionally
  • Operate technical security infrastructure (Vulnerability Management, End-point Recovery) and ensure control effectiveness.
  • Collaborate with technology and business colleagues to embed vulnerability technologies throughout the organisation
  • In-conjunction with institutional peers, act as a subject matter expert to deliver threat reporting and agree technical remediation plans
  • Work closely in collaboration with IT & peers / stakeholders to plan and deliver vulnerability remediation based on risk assessment and business risk profile
  • Create and deliver usable metrics which visualise the overall vulnerability and risk trend as well as overall vulnerability management progress
  • Troubleshoot and undertaken detailed analysis complex technical problems, including issues with the design and operation of technical controls
  • Keep up to date with developments in vulnerability research and technical areas. Utilise specialist knowledge to contribute to overall vulnerability strategy

Knowledge/Qualifications

Knowledge, Qualifications, Skills and Experience

Essential:

A1 Ability to demonstrate the competencies required to undertake the duties associated with this level of post having acquired the necessary knowledge and skills in a similar or number of different roles OR Scottish Credit and Qualification Framework level 9, (ordinary/honours degree, Scottish Vocational Qualification level 4), or equivalent (including professional accreditation with relevant formal training), and experience of personal development in a similar or related role(s).

A2 Thorough understanding of security vulnerability tools, processes, and techniques.

A3 Specialist knowledge and understanding of best practice techniques for broader information technology systems and infrastructure.

Desirable:

B1 Accreditation in Cyber Security (CISSP, CISM) or related disciples.

B2 Knowledge of support ticket lifecycle and handling.

Skills

Essentials:

C1 Proven ability to devise, develop and innovate new working procedures embedding them into standard operations.

C2 Well developed ability to assess priorities and manage own workload effectively and convert strategic objectives into operational plans.

C3 Strong Interpersonal skills: with ability to communicate and liaise effectively with other technical specialists, business stakeholders and senior stakeholders.

C4 Ability to produce clear and concise assessments of technology matters, explaining technical subject matter to a non-technical audience.

C5 Advanced analytical and problem-solving capabilities.

C6 Demonstrable planning skills with the ability to plan own workload independently in a time-pressured environment.

Desirable:

D1 Ability to work with suppliers and collaborate effectively.

Experience

Essential:

E1 Ability to demonstrate the competencies required to undertake the duties associated with this level of post having acquired the necessary professional knowledge and management skills in a similar or number of different specialist roles.

E2 Significant proven experience working in fast paced diverse technology environment.

E3 Extensive and relevant experience of pragmatically applying technology solutions to real world challenges.

E4 Experience in managing competing priorities in a time-pressured environment.

E5 Experience of providing specialist advice and information to a wide range of audiences with differing levels of knowledge.

E6 Demonstrable experience of developing and implementing operational delivery plan for vulnerability management.

E7 Experience creating vulnerability remediation plans producing meaningful and insightful reports.

Desirable:

F1 Experience of working in the HE Sector.

F2 Experience of working with IT teams.

Informal enquiries should be directed to Alun McGlinchey, Chief Information Security Officer, .

Terms and Conditions

Salary will be Grade 7, £40,497 - £45,413 per annum.

This post is full time (35 hours p/w) and open ended. Relocation assistance will be provided where appropriate.

The University of Glasgow has a responsibility to ensure that all employees are eligible to live and work in the UK. If you require a Skilled Worker visa to work in the UK, you will be required to meet the eligibility requirements of the visa route to be assigned a Certificate of Sponsorship. Please note that this post may be eligible to be sponsored under the Skilled Worker visa route if tradeable points can be used under the Skilled Worker visa rules.For more information please visit:https://www.gov.uk/skilled-worker-visa.

As part of Team UofG you will be a member of a world changing, inclusive community, which values ambition, excellence, integrity and curiosity.

As a valued member of our team, you can expect:

1 A warm welcoming and engaging organisational culture, where your talents are developed and nurtured, and success is celebrated and shared.

2 An excellent employment package with generous terms and conditions including 41 days of leave for full time staff, pension - pensions handbook https://www.gla.ac.uk/myglasgow/payandpensions/pensions/, benefits and discount packages.

3 A flexible approach to working.

4 A commitment to support your health and wellbeing, including a free 6-month UofG Sport membership for all new staff joining the University https://www.gla.ac.uk/myglasgow/staff/healthwellbeing/.

We believe that we can only reach our full potential through the talents of all. Equality, diversity and inclusion are at the heart of our values. Applications are particularly welcome from across our communities and in particular people from the Black, Asian and Minority Ethnic (BAME) community, and other protected characteristics who are under-represented within the University. Read more on how the University promotes and embeds all aspects of equality and diversity within our community https://www.gla.ac.uk/myglasgow/humanresources/equalitydiversity/.

We endorse the principles of Athena Swan https://www.gla.ac.uk/myglasgow/humanresources/equalitydiversity/athenaswan/ and hold bronze, silver and gold awards across the University.

We are investing in our organisation, and we will invest in you too. Please visit our website https://www.gla.ac.uk/explore/jobs/ for more information.

Closing date : 27 June 2025 @23:45Seniority level

  • Seniority levelMid-Senior level

Employment type

  • Employment typeFull-time

Job function

  • Job functionInformation Technology
  • IndustriesHigher Education

Referrals increase your chances of interviewing at University of Glasgow by 2x

Sign in to set job alerts for “Cyber Security Analyst” roles.Cyber and Information Security Technician

Stirling, Scotland, United Kingdom 4 days ago

Glasgow, Scotland, United Kingdom 6 days ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Erskine, Scotland, United Kingdom 2 days ago

Glasgow, Scotland, United Kingdom 2 days ago

Erskine, Scotland, United Kingdom 5 days ago

Glasgow, Scotland, United Kingdom 4 days ago

Glasgow, Scotland, United Kingdom 4 weeks ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 4 weeks ago

Glasgow City, Scotland, United Kingdom 2 days ago

Glasgow, Scotland, United Kingdom 4 days ago

Glasgow, Scotland, United Kingdom 1 day ago

Glasgow, Scotland, United Kingdom 1 week ago

Glasgow, Scotland, United Kingdom 1 week ago

Glasgow, Scotland, United Kingdom 2 weeks ago

Glasgow, Scotland, United Kingdom 1 day ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 1 week ago

Glasgow, Scotland, United Kingdom 1 month ago

Senior Information and Cyber Security Officer

Glasgow, Scotland, United Kingdom 2 months ago

Bathgate, Scotland, United Kingdom 4 days ago

Glasgow, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 5 days ago

Glasgow, Scotland, United Kingdom 5 days ago

Assistant Security Consultants / Security Engineers - Property and Buildings

Glasgow, Scotland, United Kingdom 3 days ago

Glasgow, Scotland, United Kingdom 3 weeks ago

Glasgow, Scotland, United Kingdom 3 months ago

Glasgow, Scotland, United Kingdom 1 month ago

Glasgow, Scotland, United Kingdom 5 days ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.


#J-18808-Ljbffr

Related Jobs

View all jobs

Vulnerability Analyst

SOC and Vulnerability Analyst

SOC and Vulnerability Analyst

SOC and Vulnerability Analyst

SOC and Vulnerability Analyst

Vulnerability Analyst

National AI Awards 2025

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cyber Security Jobs Skills Radar 2026: Emerging Frameworks, Tools & Certifications to Learn Now

Cyber threats are evolving—and so must the people defending against them. As ransomware, AI-enhanced phishing, and supply chain attacks grow more advanced, UK employers are urgently hiring cyber security professionals with the right mix of strategic and hands-on skills. Welcome to the Cyber Security Jobs Skills Radar 2026, your go-to guide for the most in-demand tools, frameworks, certifications, and technologies shaping the UK's cyber workforce. Whether you're a SOC analyst, penetration tester, or cloud security architect, this annual radar is designed to help you stay ahead of the market.

How to Find Hidden Cyber Security Jobs in the UK Using Professional Bodies like BCS, CIISec & More

The demand for skilled cyber security professionals in the UK has never been higher. With threats increasing in sophistication and frequency, organisations are urgently hiring ethical hackers, threat analysts, GRC specialists, and security architects. But many of the most valuable roles—particularly in government, defence, and critical infrastructure—are never publicly advertised. Instead, these jobs are shared behind the scenes through trusted networks, private communities, and professional bodies. In this article, we explore how to uncover hidden cyber security jobs in the UK using organisations like the BCS (The Chartered Institute for IT), CIISec (The Chartered Institute of Information Security), ISACA, and ISC² UK Chapter. We’ll show you how to use membership directories, special interest groups, CPD events and informal networks to gain early access to roles most people never see.

How to Get a Better Cyber Security Job After a Lay-Off or Redundancy

Redundancy is never easy—especially in a fast-moving field like cyber security, where your skills and experience are constantly evolving. But if you’ve recently been made redundant from a cyber security role, know this: the UK cyber workforce remains in high demand, and your expertise is more valuable than ever. Whether you’re a SOC analyst, penetration tester, incident responder, security architect or GRC specialist, there are still thousands of opportunities across sectors including finance, defence, government, retail, and critical infrastructure. This guide will help you turn redundancy into a career relaunch, with a clear action plan tailored to the UK cyber security job market.