Rothesay is the UK’s largest pensions insurance specialist, purpose-built to protect pension schemes and their members’ pensions. With over £60 billion of assets under management, we secure the pensions of more than 930,000 people and pay out, on average, approximately £200 million in pension payments each month.

Rothesay is dedicated to providing excellence in customer service alongside prudent underwriting, a conservative investment strategy and the careful management of risk. We are trusted by the pension schemes of some of the UK’s best known companies to provide pension solutions, including Asda, British Airways, Cadbury, the Civil Aviation Authority, the Co-operative Bank, National Grid, Morrisons, the Post Office and telent.

At Rothesay, we are striving to transform our industry. We believe deeply in creating real security for the future and our leadership in finding new and better ways to do that is the key to our success. To do that, we need the very brightest original thinkers to bring creativity as well as rigour. Rothesay is a rewarding place to work, where quality people can thrive and prosper. We pride ourselves on the connections our people build, many of whom have been with us for over ten years.

 

Job title:                Vulnerability Management Engineer

Contract:               Permanent

 

With significant executive support and sponsorship, Rothesay has launched a multi-year project to redevelop and modernize the full technology and security stack. To support this and maintain our risk exposure, we are making a significant investment in our Information Security team, processes, and technology.

This is a chance to join a small tight-knit Security Operations team at an exciting time where we are streamlining vulnerability management. You will play a key part in driving our approach to effectively managing threats at cloud-scale, continually improving and automating processes using the latest cloud native technologies.

Responsibilities:

  • Identify, triage, and prioritise vulnerability findings from a range of different tools.
  • Automate manual processes and reporting for vulnerability management.
  • Correlate data from vulnerability management tools with threats in the SOC to enrich findings and have more effective outcomes.
  • Ensure vulnerability management processes and procedures to have a tight integration with the processes and technologies used by relevant stakeholders across the business.
  • Automate vulnerability enrichment with threat intelligence and signals from multiple sources.
  • Provide technical subject matter expertise to asset owners and other stakeholders on vulnerabilities identified and their remediation.
  • Help to evaluate new security technologies and tools.

 

Skills & Experience

Required:

  • 5+ years of relevant experience.
  • Advanced knowledge of vulnerability management and cloud security posture management.
  • Strong cloud and cloud native experience.
  • Strong communication skills. Ability to communicate with both technical, non-technical, and executive stakeholders.
  • A good understanding of the latest security threats, threat actors, and the tactics and techniques adopted.

Desirable:

  • Possess a degree from a leading university in a relevant subject and/or have relevant industry qualifications.
  • Experience in financial services, risk management, pensions or insurance

 

Rothesay competencies

  • Dedication to role – Motivated to provide an effective support service across all facets of role
  • Team Player – Demonstrates evidence of being a strong team player, collaborates well with others and encourages other admin team members
  • Communication – Ability to communicate what is relevant and important in a clear, constructive and concise manner
  • Organised - Ability to work under pressure and prioritise workload in a fast paced environment. Ability to work autonomously with limited supervision
  • Creative and innovative – Looks for ways to improve current processes and help develop creative solutions that have practical value for the admin team
  • Judgement and Problem Solving – Proactive, sees the big picture and willing to be flexible to solve issues as they arise

 

Disclaimer This position description is intended to describe the duties most frequently performed by an individual in this position. It is not intended to be a complete list of assigned duties, but to describe a position level.  The role shall be performed within a professional office environment. Rothesay Life has health and safety polices that are available for all workers upon request.  There are no specific health risks associated with the role.

Inclusion Rothesay actively promotes diversity and inclusivity. We know that our success depends on our people and that by nurturing a culture that values difference, we create a stronger, more dynamic business. We welcome applications from all qualified candidates, regardless of race, colour, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability or age.

 

 

Apply for this Job

* Required
resume chosen  
(File types: pdf, doc, docx, txt, rtf)
cover_letter chosen  
(File types: pdf, doc, docx, txt, rtf)


Our system has flagged this application as potentially being associated with bot traffic. Please turn off any VPNs, clear your browser cache and cookies, or try submitting your application in a different browser. If this issue persists, please reach out to our support team via our help center.
Please complete the reCAPTCHA above.