Attack Surface Management Manager
- Nottingham
- Legal & Compliance
- Permanent
- Home
- Full Time
This vacancy has now expired. Please see similar roles below...
Experian Global Security Office are looking for a new Manager of Attack Surface Management (ASM) to play a crucial role in our cybersecurity strategy.
You will guide the success of the Continuous Threat Exposure Management (CTEM) program and build business engagement across global teams. You will ensure CTEM delivers reliable, applicable insights by defining and maintaining processes, integrating services with enterprise systems.
Equally critical is leading the Business Engagement Team to establish trusted partnerships with regional infrastructure and application partners, aligning vulnerability management strategies with priorities. Through technical leadership and strategic influence, you will strengthen Experian's security posture and reduce risk across its global attack surface.
This is an UK based hybrid (40% in office) position reporting to the Information Security Director for Cloud and Attack Surface Management.
Primary Focus:-
Lead CTEM Service Delivery: Manage processes for the Continuous Threat Exposure Management (CTEM) service and its provider. Ensure integration with Experian systems, delivering, reliable, and applicable security insights that inform risk reduction across the enterprise.
Business Engagement: You will manage the Business Engagement Team and Service, providing expertise and strategic direction. Cultivate partnerships with regional infrastructure and application teams to ensure the vulnerability management strategy is understood, agreed upon, and implemented.
Other Responsibilities:-
- Maintain risk stratification model to guide vulnerability prioritization based on threat and asset criticality; Identify vulnerability prioritization and asset coverage trends, escalating to senior leadership when vulnerability trends are not improving over time.
- Help with response to cybersecurity incidents or threat informed actions, ensuring accurate identification of applicable internal and external risks. Will use a broad and diverse combination of tools, techniques, and data sources to support highest confidence in attack surface discovery.
- Guide team members' daily project and operational activities
- Contribute to security and technology strategic planning to mature our programmes
- Work with Risk & Compliance teams on SOC 2, PCI DSS, HIPAA, and other audits.
- Research and recommend policy and procedures as they relate to Attack Surface Management
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to achieve their financial goals and help them save time and money.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.
Internal Grade C
- Expert experience supporting Attack Surface Management in vulnerability, remediation, and mitigation as it applies to the following.
- Common web applications, APIs, misconfigurations, hosts, mobile, Internet of Things, endpoints, infrastructure, cloud, network appliance, OS, firmware and software supply-chain.
- Management experience in an enterprise-level cybersecurity function.
- Experience engaging and presenting security topics at senior levels in an enterprise organization
- Experience managing Risk-Based Vulnerability Management models.
- In-depth knowledge of architecture, engineering, and operations of one or more vulnerability management tools, such as: Qualys, Rapid7, Tanium, Axonius, Armis, or other.
- Experience applying the following models to an enterprise security program: CMMI, ISO/IEC 2700, OWASP SAMM, NIST, SMM SANS Security Maturity Model.
- Experience developing security reports, trends, and metrics analysis.
- Experience with the application of some of the following frameworks - SANS, NIST 800-61, CVSS, CIS, OSSTM, ISO 27001, MITRE ATT&CK, PCI, HIPAA, GDPR or similar.
- Experience with cloud security practices
- Experience with business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping
Benefits package includes:
- Great compensation package and discretionary bonus plan
- Core benefits include pension, bupa healthcare, sharesave scheme and more
- 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
London, England
Experience Level
Not Applicable
Employment
Permanent
Location
London
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
No
Description
To provide enterprise-wide strategic leadership for the compliance policy and oversight agenda, owning the vision, standards, and governance that ensure regulatory compliance risks are effectively mit
Reference
1eed2ee9-a1b2-405b-be3f-b332552f9205
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Sales & Business Development
Brand
PagueVeloz
Remote working available
No
Description
Região: Santa Luzia/MGVenha fazer parte do time mais veloz desse Brasilzão com PagueVeloz by Serasa ExperianEstamos em busca de pessoas que respiram vendas externas (PAP), negociação, vivem o comércio
Reference
b51d55f7-f03b-4fd4-a60c-cd12bb68d9e1
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Sales & Business Development
Brand
PagueVeloz
Remote working available
No
Description
Região: Belo Horizonte/MG (Centro)Venha fazer parte do time mais veloz desse Brasilzão com PagueVeloz by Serasa ExperianBuscamos uma pessoa sênior, estratégica e influente, com domínio em adquirência
Reference
0ebc6533-aa02-44d6-a4fb-88e8e5d31121
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
PagueVeloz
Remote working available
No
Description
. Atuar como especialista com foco em produtos e operações reguladas pelo Banco Central do Brasil, garantindo a conformidade dos processos.. Propor e implementar melhorias nos processos regulatórios,
Reference
85eb6b36-c386-4398-a418-83296356614d
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Mid-Senior Level
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$80,237 - $139,077
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
Yes
Description
Reporting to the EDI leadership team, the Senior EDI Analyst will support Experian Health's Patient Access Curator team through monitoring, evaluating and optimizing performance of the product set by
Reference
13814041-3d7f-4d4c-acc8-d4a6480f9b84
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Serasa Experian
Remote working available
No
Description
As the FP&A Manager, you will play a critical leadership role in driving Corporate Functions and Capex financial consolidation, performance reporting, and strategic insights across the organization. Y
Reference
89171c58-c663-4219-8e9a-06ac799206d0
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Serasa Experian
Remote working available
No
Description
Atuar nas rotinas contábeis, com elevado grau de autonomia técnica, assegurando conformidade com as normas do BACEN, COSIF e CPCs aplicáveis ao setor financeiro, com foco em Instituições de Pagamento
Reference
d85a1da1-ad61-46b3-a675-efd262af8cec
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Associate
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$36,986 - $60,492
Schedule
Full Time
Department
Verification
Brand
Experian
Remote working available
Yes
Description
You are:Collaborative – Partner and build relationships and connect ideas across internal and external opportunitiesCreative and Curious – Challenge traditional approaches, inquisitive with a fondness
Reference
7ef5e6c5-7abc-4e9c-9699-fb95ee388d13
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Information Technology & Systems
Brand
Serasa Experian
Remote working available
Yes
Description
Atuação garantindo qualidade end-to-end das entregas do time.ResponsabilidadesPlanejamento e execução de testesCriação e manutenção de testes automatizadosTestes de APIs RESTValidação de dados em banc
Reference
aeda6520-2c12-4279-a78a-c3603b03d370
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Sales & Business Development
Brand
PagueVeloz
Remote working available
No
Description
Região: São João Del Rey/MGVenha fazer parte do time mais veloz desse Brasilzão com PagueVeloz by Serasa ExperianBuscamos uma pessoa sênior, estratégica e influente, com domínio em adquirência e forte
Reference
5481366b-4574-463f-8d75-8dc8c5fa421a
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
The Senior Business Analyst partners across Product, Operations, and Technology to help identify, design, and support the adoption of intelligent automation and AI-enabled solutions within the Health
Reference
e8b3dfb9-d079-4548-b042-6a2d92c1d28b
Expiry Date
01/01/0001
Salary
Location
Nottingham, England
Experience Level
Not Applicable
Employment
Permanent
Location
Nottingham
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
No
Description
Job descriptionWhy this role is important to usYou will play a critical part in protecting Experian's technology landscape, data, and reputation. The IT Audit Manager helps ensure that key technology
Reference
8f1bdc2d-3356-4cb3-9c1a-a90b6be9ac50
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Roam
Schedule
Full Time
Department
Sales & Business Development
Brand
Serasa Experian
Remote working available
No
Description
Atuar de forma estratégica e consultiva na geração de crescimento de receitas na Serasa Experian, gerenciando o portfólio de Bancos Digitais, com foco em soluções de dados, analytics, crédito, prevenç
Reference
f4747d55-8155-483f-8e25-67dc13bbdbab
Expiry Date
01/01/0001
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
No
Description
Descripción general del área: El área de Risk & Compliance se encarga de que los colaboradores de Experian Spanish LATAM conozcan y administren las situaciones que afectan los objetivos y la estrategi
Reference
d271bcb0-2649-4975-a4be-9efe99eb9ac7
Expiry Date
01/01/0001
Salary
Location
London, England
Experience Level
Not Applicable
Employment
Permanent
Location
London
Role Type
Hybrid
Schedule
Full Time
Department
Marketing and Communications
Brand
Experian
Remote working available
No
Description
When you think of Experian, you may think of credit. But our Experian Marketing Services (EMS) business works with leading brands, retailers, agencies, and media owners to help them understand audienc
Reference
938f5e06-1a38-4f5d-8d6a-7cdacc2d52b7
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Associate
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
See Pay Range
Schedule
Full Time
Department
Sales & Business Development
Pay Range
$68,000 - $112,000
Brand
Experian
Remote working available
Yes
Description
We are looking for a Relationship Manager with experience in building, retaining, and expanding long-term strategic client relationships. You will guide clients through the assessment, purchase, and i
Reference
30b0efa6-ee04-4ec6-b0c7-246e092e4da6
Expiry Date
01/01/0001