Senior Cybersecurity Analyst – Vulnerability Management
- london, england, United Kingdom
- £75 - £110 Per Hour
Job Description
Senior Cybersecurity Analyst – Vulnerability Management
London – UK (Hybrid)
About The Role
As part of the continued expansion of our cybersecurity program, we are seeking a Senior Analyst, Threat & Vulnerability Management with a primary focus on applications and cloud environments. In this role, you will support and execute vulnerability management activities across the full lifecycle – from identification through remediation – helping prioritize risks based on business and operational impact across application, cloud, and broader technology environments. You will work closely with Cybersecurity, IT, application, cloud, engineering, and business stakeholders to strengthen the organization’s security posture and contribute to the continuous improvement of our Threat & Vulnerability Management program.
Key Responsibilities
- Execute vulnerability management activities across the full lifecycle, including discovery, assessment, prioritization, tracking, and remediation validation.
- Analyze vulnerability and threat data to identify high‑risk exposures, trends, and remediation priorities across application and cloud environments.
- Review vulnerabilities affecting web applications, APIs, cloud services, virtual machines, containers, and cloud‑native platforms to support risk‑based prioritization and response.
- Coordinate with application teams, cloud engineering, DevOps, infrastructure, cybersecurity, and business stakeholders to assess impact and drive timely remediation, including validation of fixes and follow‑up on outstanding issues.
- Develop and maintain dashboards, metrics, and reports, and prepare summaries and briefings for both technical teams and leadership stakeholders.
- Support policy and process adherence related to vulnerability management, remediation, exception handling, and risk treatment, and serve as a point of coordination for complex issues.
- Participate in incident response or urgent risk mitigation activities when vulnerabilities present elevated operational or security risk.
- Contribute to the continuous improvement of Threat & Vulnerability Management processes, workflows, and reporting capabilities, particularly for application and cloud security.
Qualifications
- 3–5+ years of experience in threat and vulnerability management, cybersecurity operations, application security, cloud security, security engineering, or related cybersecurity roles.
- Experience working with vulnerability management and scanning tools such as Tenable (Nessus), Qualys, Wiz, Cloudflare, or similar.
- Experience assessing, prioritizing, and tracking vulnerabilities through remediation in enterprise application and cloud environments.
- Experience working in or supporting application security, cloud security, infrastructure security, or DevSecOps environments is strongly preferred.
- Strong understanding of CVSS scoring and the ability to interpret severity ratings in the context of business impact, exploitability, asset criticality, and remediation prioritization.
- Familiarity with vulnerabilities affecting web applications, APIs, operating systems, cloud platforms, containers, and misconfigurations in cloud‑native environments.
- Ability to analyze technical findings and translate them into clear, actionable insights for both technical and non‑technical stakeholders.
- Strong analytical, organizational, and communication skills, with the ability to collaborate across cybersecurity, IT, application development, cloud, engineering, and business teams.
- Demonstrated ability to work independently, support process maturity, and contribute to a proactive, risk‑informed security culture.
- Relevant certifications such as CISSP, CEH, OSCP, CISM, CCSP, AWS/Azure security certifications, or similar are preferred.
Equal Opportunities
Digital Realty is an equal opportunity employer, EOE/AA/M/F/Vets/Disabled. All applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability or protected veteran status, or other status protected by law or Company policy.
#J-18808-Ljbffr

