Jobs

Vulnerability & Exposure Manager (CTEM)


Job details
  • Tower, Greater London
  • 1 week ago

Ideas | People | Trust

We’re BDO. An accountancy and business advisory firm, providing the advice and solutions entrepreneurial organisations need to navigate today’s changing world.

We work with the companies that are Britain’s economic engine – ambitious, entrepreneurially-spirited and high‑growth businesses that fuel the economy - and directly advise the owners and management teams that lead them.

We’ll broaden your horizons

To ensure our services and applications are fit for the modern market, our IT team collaborates with every department. They develop, they explore and they implement the new ideas helping us to change the future of accounting, tax and business consulting. But, just as importantly, they maintain the tech that keeps us advancing. By testing and adopting the future of financial technical solutions, they find new and exciting ways to drive us forward. And you could too. In an IT role at BDO, you’ll become part of a team that act as the backbone for our business. No matter who you are or what your skillset is, we’ll give you the training and support you need to achieve whatever you put your mind to. 

We’ll help you succeed

Leading organisations trust us because of the quality of our advice. That quality grows from a thorough understanding of their business, and that understanding comes from working closely with them and building long-lasting relationships.

You’ll be someone who is both comfortable working proactively and managing your own tasks, as well as confident collaborating with others and communicating regularly with senior managers, directors, and BDO’s partners to help businesses effectively. You’ll be encouraged to identify and draw attention to opportunities for enhancing our delivery and providing additional services to organisations we work with.

The Vulnerability and Exposure Manager (CTEM) will lead collecting threat information relating to technology vulnerabilities that effect BDO. This includes conducting and analyzing output from continuous security assessments / security monitoring platforms and combining this, with relevant threat intelligence, producing risk-based and contextualized prioritization for remediation teams.

Additionally, the Vulnerability and Exposure Manager (CTEM) will understand the purpose and role of breach and attack simulation tools and their role in a modern security aware organization.

The role holder will utilise these platforms to continuously assess BDO’s overall cyber security posture, ptoviding insights to help drive the overall Cyber Security strategy and compliance obligations. In this role you’ll:

Lead on technical cyber security assurance activities

Conduct vulnerability and exposure assessments using CSPM (Cloud Security Posture Management) and Vulnerability management platforms following the CTEM (Continuous Threat Exposure Management) framework 

Work closely with the Governance team, providing guidance and ensuring technical vulnerabilities are understood and managed against defined standards and policies

Be a subject matter expert for technical (and technology) vulnerabilities and threat intelligence relevant to BDO

Create high quality supporting documentation for operational teams where required

Stay up-to-date on the latest cyber security threats and trends

Identify, review and continuously assure BDO security control effectiveness

Provide guidance to senior management on technical cyber security vulnerabilities, the associated risks and recommended remediations eg patches, reconfigurations etc  

Provide guidance / training to colleagues where required

Help develop, but not implement, Cyber security controls on IT platforms across BDO including: CASB, SWG, EDR/XDR, E-mail Security, Data Loss Prevention, Cloud-Native and Network-Based security controls

Engage with relevant 3rd party Technology partners where required

You’ll be someone with:

Pragmatism, investigative enthusiasm and a drive to discover.

Passion for Cyber security

Proven experience in Cybersecurity (Required)

Security experience in a Microsoft environment (Required)

ISC2 CISSP qualified - Certified Information Systems Security Professional (Desired)

Threat and Vulnerability Management vendor certifications (Desired)

To thrive in this role you’ll should have a strong background in end-to-end vulnerability management and a technical understanding that you’ll be able to prioritise, contextualise and describe in business terms (stakeholder management).

You’ll be able to be yourself; we’ll recognise and value you for who you are and celebrate and reward your contributions to the business. We’re committed to agile working, and we offer every colleague the opportunity to work in ways that suit you, your teams, and the task at hand.

At BDO, we’ll help you achieve your personal goals and career ambitions, and we have programmes, resources, and frameworks that provide clarity and structure around career development.

We’re in it together

Mutual support and respect is one of BDO’s core values and we’re proud of our distinctive, people-centred culture. From informal success conversations to formal mentoring and coaching, we’ll support you at every stage in your career, whatever your personal and professional needs.

Our agile working framework helps us stay connected, bringing teams together where and when it counts so they can share ideas and help one another. At BDO, you’ll always have access to the people and resources you need to do your best work.

We know that collaboration is the key to creating value for the companies we work with and satisfying experiences for our colleagues, so we’ve invested in state-of-the-art collaboration spaces in our offices. BDO’s people represent a wealth of knowledge and expertise, and we’ll encourage you to build your network, work alongside others, and share your skills and experiences. With a range of multidisciplinary events and dedicated resources, you’ll never stop learning at BDO.

We’re looking forward to the future

At BDO, we help entrepreneurial businesses to succeed, fuelling the UK economy.

Our success is powered by our people, which is why we’re always finding new ways to invest in you. Across the UK thousands of unique minds continue to come together to help companies we work with to achieve their ambitions

We’ve got a clear purpose, and we’re confident in our future, because we’re adapting and evolving to build on our strengths, ensuring we continue to find the right combination of global reach, integrity and expertise. We shape the future together with openness and clarity, because we believe in empowering people to think creatively about how we can do things better.

#TJ-JB1

#LI-JB1

Sign up for our newsletter

The latest news, articles, and resources, sent to your inbox weekly.

Similar Jobs

CSIRT Country Team Lead

Orange Cyberdefense is the expert cyber security business unit of the Orange Group, providing security consulting, solutions and services to organisations around the globe. We strive to protect freedom and build a safer digital society. We are looking for a CSIRT Country Team Lead to join our team in the...

Orange Cyberdefense London

IT & Cyber Security Manager London £75k

IT & Cyber Security Manager 14085Working with skilled teams across the business, focusing on initiatives and opportunities, using cloud & on prem technologies and modern security practices.As the Security Manager, you will liaise with security incident response experts, keep up to date with industry changes, and work directly with the...

Charterhouse Square

Information Security Architect / Manager

Job DescriptionInformation Security Architect / ManagerOur Client is an International company with offices in Central London.They are looking to bring on-board an Information Security Architect / Manager with at least 5 to 8 years proven expertise within Information Security.The function of the position will be as follows:Assess the current environment...

Nexus London

Principal OT Security Architect - UK

Hello. We’re Haleon.A new world-leading consumer health company. Shaped by all who join us. Together, we’re improving everyday health for billions of people. By growing and innovating our global portfolio of category-leading brands – including Sensodyne, Panadol, Advil, Voltaren, Theraflu, Otrivin, and Centrum – through a unique combination of deep...

Haleon Weybridge

Information Security Consultant

Information Security ConsultantLeeds – OnsiteUp to £70kKey Duties and ResponsibilitiesAssist with security incident management and response activitiesGeneral day-to-day support on managing and responding to security alerts from systems and end usersPerform daily, weekly, and monthly security checks, reconciliation and compliance checks and investigate exceptions Completing client security requirement questionnaires and...

Leap29 Leeds

Senior Attack Surface Remediation Analyst | S3 | Milton Keynes | T&D

Senior Attack Surface Remediation Analyst | S | Milton Keynes | T&DCountry: United KingdomInterested in part-time, job-share or flexible working ? We want to talk to you!Join our community.The difference you’ll make:Managing deliverables which are closely coordinated with and integrated across all UK CISO functions for strategy development, continuous learning...

Santander Milton Keynes