Attack Surface Management Manager
- Nottingham
- Legal & Compliance
- Permanent
- Home
- Full Time
Experian Global Security Office are looking for a new Manager of Attack Surface Management (ASM) to play a crucial role in our cybersecurity strategy.
You will guide the success of the Continuous Threat Exposure Management (CTEM) program and build business engagement across global teams. You will ensure CTEM delivers reliable, applicable insights by defining and maintaining processes, integrating services with enterprise systems.
Equally critical is leading the Business Engagement Team to establish trusted partnerships with regional infrastructure and application partners, aligning vulnerability management strategies with priorities. Through technical leadership and strategic influence, you will strengthen Experian's security posture and reduce risk across its global attack surface.
This is an UK based hybrid (40% in office) position reporting to the Information Security Director for Cloud and Attack Surface Management.
Primary Focus:-
Lead CTEM Service Delivery: Manage processes for the Continuous Threat Exposure Management (CTEM) service and its provider. Ensure integration with Experian systems, delivering, reliable, and applicable security insights that inform risk reduction across the enterprise.
Business Engagement: You will manage the Business Engagement Team and Service, providing expertise and strategic direction. Cultivate partnerships with regional infrastructure and application teams to ensure the vulnerability management strategy is understood, agreed upon, and implemented.
Other Responsibilities:-
- Maintain risk stratification model to guide vulnerability prioritization based on threat and asset criticality; Identify vulnerability prioritization and asset coverage trends, escalating to senior leadership when vulnerability trends are not improving over time.
- Help with response to cybersecurity incidents or threat informed actions, ensuring accurate identification of applicable internal and external risks. Will use a broad and diverse combination of tools, techniques, and data sources to support highest confidence in attack surface discovery.
- Guide team members' daily project and operational activities
- Contribute to security and technology strategic planning to mature our programmes
- Work with Risk & Compliance teams on SOC 2, PCI DSS, HIPAA, and other audits.
- Research and recommend policy and procedures as they relate to Attack Surface Management
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to achieve their financial goals and help them save time and money.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.
Internal Grade C
- Expert experience supporting Attack Surface Management in vulnerability, remediation, and mitigation as it applies to the following.
- Common web applications, APIs, misconfigurations, hosts, mobile, Internet of Things, endpoints, infrastructure, cloud, network appliance, OS, firmware and software supply-chain.
- Management experience in an enterprise-level cybersecurity function.
- Experience engaging and presenting security topics at senior levels in an enterprise organization
- Experience managing Risk-Based Vulnerability Management models.
- In-depth knowledge of architecture, engineering, and operations of one or more vulnerability management tools, such as: Qualys, Rapid7, Tanium, Axonius, Armis, or other.
- Experience applying the following models to an enterprise security program: CMMI, ISO/IEC 2700, OWASP SAMM, NIST, SMM SANS Security Maturity Model.
- Experience developing security reports, trends, and metrics analysis.
- Experience with the application of some of the following frameworks - SANS, NIST 800-61, CVSS, CIS, OSSTM, ISO 27001, MITRE ATT&CK, PCI, HIPAA, GDPR or similar.
- Experience with cloud security practices
- Experience with business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping
Benefits package includes:
- Great compensation package and discretionary bonus plan
- Core benefits include pension, bupa healthcare, sharesave scheme and more
- 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Roam
Schedule
Full Time
Department
Sales & Business Development
Brand
Serasa Experian
Remote working available
No
Description
O Account Manager Sênior para o Setor Enterprise Accounts será responsável por conduzir relacionamentos estratégicos com os maiores players do Setor Indústria, liderando o ciclo completo de vendas e g
Reference
96bfb53d-a6ee-42df-80d5-9f2d1e45ee68
Expiry Date
01/01/0001
Salary
Location
New York, United States
Experience Level
Not Applicable
Employment
Permanent
Location
New York
Role Type
Hybrid
Salary Range
See Pay Range
Schedule
Full Time
Department
Marketing and Communications
Pay Range
$68,000 - $112,000
Brand
Experian
Remote working available
No
Description
Audigent, a part of Experian, is the leading data activation, curation, and identity platform. Audigent's pioneering data platform unlocks the power of privacy-safe, first- and third-party data, conte
Reference
c0302e61-d5bd-4db3-be11-a6a019f77993
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Analytics
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Estamos procurando por um profissional que é apaixonado por tecnologia e análise de dados e se motiva com o desafio de resolver problemas complexos. Principais Atividades: Atuar
Reference
8fd587cb-1ea3-44e8-baad-c9b84c363b9d
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Local: São Paulo/SP ou Brasil – modelo híbrido, conforme política vigente Tipo de contratação: CLTReporta a: Gerente de Produtos de IA – Software Solutions BrasilParcerias-chave
Reference
9d26387c-1b52-488e-bbde-2a32e089c024
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Serasa Experian
Remote working available
No
Description
Job description Formação o Ciência da Computação / Engenharia de Software / Sistemas de Informação / TI; o Matemática / Estatística / Ciência de dados; o ou áreas técnicas afins. Qualifi
Reference
f2401d3b-3975-4db2-ad6a-75cc81b3fec7
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Como será o seu dia a dia?Mapeamento e definição da estratégia de tagueamento, garantindo rastreamento eficiente e alinhado aos objetivos de negócio.Análise da jornada do cliente
Reference
76edbadd-d82d-4ea6-9c1a-3896356a7175
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Job description Job DescriptionEstamos à procura de um Engenheiro de Software Especialista com vasta e comprovada experiência para liderar e inspirar equipes de desenvolvimento de software. O profissi
Reference
46da86ba-0eb0-4b8e-b30a-04c63d1e6bcf
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Marketing and Communications
Brand
Serasa Experian
Remote working available
No
Description
Sobre a áreaA área de Digital Analytics Tech é responsável por garantir a implementação técnica necessária para medir performance digital, apoiar a tomada de decisão baseada em dados e estruturar o fu
Reference
0ffc4976-2f76-4bda-806a-99a6f5aa8750
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Descrição Estamos à procura de um Engenheiro de Software Especialista com vasta e comprovada experiência para liderar e inspirar equipes de desenvolvimento de software. O profiss
Reference
4be52c3b-b445-48d3-9354-3f360f6a830d
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Como será o seu dia a dia?Estruturação de modelos para acompanhamento de resultado, realização de forecast e assegurar o alinhamento da estratégia com os objetivos da companhiaDe
Reference
711f0b00-1868-4dbc-8d86-76e1ada3174d
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Analista SRE Descrição da empresaUm dos nossos objetivos é sermos reconhecidos como uma companhia ágil, voltada a tecnologia e inovação. Portanto, acreditamos que trabalhar conec
Reference
bf5780ce-8aec-4e07-81e3-27782b696b3d
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Descrição Estamos à procura de um Engenheiro de Software Especialista com vasta e comprovada experiência para liderar e inspirar equipes de desenvolvimento de software. O profiss
Reference
7f599390-8135-4aab-9c0a-a6ff30f2e067
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Atuar como Produto em uma squad responsável por toda a jornada do produtos de Monitoring. A atuação será voltada para estratégias consulta e evolução da experiência do cliente se
Reference
11aa6d37-1e69-4288-84d0-ef0eb2f272f5
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Automatização de processos e estruturação de bases Desenvolvimento de dashboards para acompanhamento de resultadoUtilização de dados para análises axuliando nas decisões estratég
Reference
b051c48d-8c84-449a-97be-ca54aab7ed87
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
Yes
Description
Estamos à procura de um Engenheiro de Software Especialista com vasta e comprovada experiência para liderar e inspirar equipes de desenvolvimento de software. O profissional será responsável por colab
Reference
9c53ac77-ed73-4ac5-a42a-d1a398b9f202
Expiry Date
01/01/0001
Salary
Location
São Carlos, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Carlo
Role Type
Home
Schedule
Full Time
Department
Analytics
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalho Descrição do EmpregoTrata-se de uma área dedicada à realização de estudos para demandas internas e externas, com ampla variedade de possibilidades. No dia a dia, compreendemos a
Reference
08c53dfc-a670-4327-be8b-d8a26220596d
Expiry Date
01/01/0001