Attack Surface Management Manager
- Nottingham
- Legal & Compliance
- Permanent
- Home
- Full Time
Experian Global Security Office are looking for a new Manager of Attack Surface Management (ASM) to play a crucial role in our cybersecurity strategy.
You will guide the success of the Continuous Threat Exposure Management (CTEM) program and build business engagement across global teams. You will ensure CTEM delivers reliable, applicable insights by defining and maintaining processes, integrating services with enterprise systems.
Equally critical is leading the Business Engagement Team to establish trusted partnerships with regional infrastructure and application partners, aligning vulnerability management strategies with priorities. Through technical leadership and strategic influence, you will strengthen Experian's security posture and reduce risk across its global attack surface.
This is an UK based remote position reporting to the Information Security Director for Cloud and Attack Surface Management.
Primary Focus:-
Lead CTEM Service Delivery: Manage processes for the Continuous Threat Exposure Management (CTEM) service and its provider. Ensure integration with Experian systems, delivering, reliable, and applicable security insights that inform risk reduction across the enterprise.
Business Engagement: You will manage the Business Engagement Team and Service, providing expertise and strategic direction. Cultivate partnerships with regional infrastructure and application teams to ensure the vulnerability management strategy is understood, agreed upon, and implemented.
Other Responsibilities:-
- Maintain risk stratification model to guide vulnerability prioritization based on threat and asset criticality; Identify vulnerability prioritization and asset coverage trends, escalating to senior leadership when vulnerability trends are not improving over time.
- Help with response to cybersecurity incidents or threat informed actions, ensuring accurate identification of applicable internal and external risks. Will use a broad and diverse combination of tools, techniques, and data sources to support highest confidence in attack surface discovery.
- Guide team members' daily project and operational activities
- Contribute to security and technology strategic planning to mature our programmes
- Work with Risk & Compliance teams on SOC 2, PCI DSS, HIPAA, and other audits.
- Research and recommend policy and procedures as they relate to Attack Surface Management
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to achieve their financial goals and help them save time and money.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.
Internal Grade C
- Expert experience supporting Attack Surface Management in vulnerability, remediation, and mitigation as it applies to the following.
- Common web applications, APIs, misconfigurations, hosts, mobile, Internet of Things, endpoints, infrastructure, cloud, network appliance, OS, firmware and software supply-chain.
- Management experience in an enterprise-level cybersecurity function.
- Experience engaging and presenting security topics at senior levels in an enterprise organization
- Experience managing Risk-Based Vulnerability Management models.
- In-depth knowledge of architecture, engineering, and operations of one or more vulnerability management tools, such as: Qualys, Rapid7, Tanium, Axonius, Armis, or other.
- Experience applying the following models to an enterprise security program: CMMI, ISO/IEC 2700, OWASP SAMM, NIST, SMM SANS Security Maturity Model.
- Experience developing security reports, trends, and metrics analysis.
- Experience with the application of some of the following frameworks - SANS, NIST 800-61, CVSS, CIS, OSSTM, ISO 27001, MITRE ATT&CK, PCI, HIPAA, GDPR or similar.
- Experience with cloud security practices
- Experience with business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping
Benefits package includes:
- Great compensation package and discretionary bonus plan
- Core benefits include pension, bupa healthcare, sharesave scheme and more
- 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
Istanbul, Turkey
Experience Level
Not Applicable
Employment
Permanent
Location
Istanbul
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
No
Description
We’re hiring a Senior Data Science Consultant for our Experian Turkey Analytics team in Istanbul. This is a consultative, client-facing role where you will blend analytical depth with business acumen
Reference
d292c408-d8d4-449d-887d-35d95d872caa
Expiry Date
01/01/0001
Salary
Location
Hyderabad, India
Experience Level
Not Applicable
Employment
Permanent
Location
Hyderabad
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
We are looking for a Senior Software Engineer to join our Decisioning team. You will design and implement cloud‑native applications on our platform using Node.js, Koa.js, React, TypeScript, and modern
Reference
9f3cca9b-1f59-4b69-88a5-ccba2c8a3bd8
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
$71,640 - $124,176
Schedule
Full Time
Department
Marketing and Communications
Brand
Experian
Remote working available
No
Description
OverviewWe are looking for an Organizational Communication and Culture Lead who will strengthen organizational clarity and effectiveness, promote a disciplined change management strategy, and improve
Reference
f52da31b-f3dd-4a0f-ace4-ca0443dc1c48
Expiry Date
01/01/0001
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
No
Description
Descripción del trabajo1. Garantizar el cumplimiento y presentación de los medios magnéticos nacionales y distritales al respecto, la información contable de Experian Colombia debe estar detallada
Reference
b964fd18-434b-4ded-be0a-98b3b5f69cc6
Expiry Date
01/01/0001
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
No
Description
Job descriptionCoordinar y supervisar los procesos de facturación en los países asignados, asegurando el cumplimiento de políticas internas, normativas locales y estándares de calidad, con enfoque en
Reference
3032df62-3b51-4a52-9187-fefa3c70cd39
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Executive
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$100,649 - $174,459
Schedule
Full Time
Department
Marketing and Communications
Brand
Experian
Remote working available
Yes
Description
We are looking for a strategic marketing professional to lead partner marketing programs that support revenue growth, retention and partner engagement. You bring marketing strategy, project management
Reference
68ef19b8-a7d2-4bc0-b1b4-8f73760285c0
Expiry Date
01/01/0001
Salary
Location
São Carlos, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Carlo
Role Type
Home
Schedule
Full Time
Department
Analytics
Brand
Serasa Experian
Remote working available
Yes
Description
Quais serão suas principais entregas?Realizar análises de dados para apoiar iniciativas de qualificação e melhoria da qualidade dos dados.Gerar insights que contribuam para a tomada de decisão e evolu
Reference
744bc354-6c08-4f00-8a73-38e474fbb6e6
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Serasa Experian
Remote working available
No
Description
Estamos em busca de um(a) Gerente de Modelagem Estatística para liderar a área de modelagem com foco no segmento de Seguradoras. Esta é uma posição estratégica, com forte interface comercial e atuação
Reference
847d083d-4196-41b0-bd05-cc330767181e
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Home
Schedule
Full Time
Department
Product Development
Brand
Experian
Remote working available
No
Description
We are looking for an experienced API DevOps Engineer to join our dynamic team. You will have hands-on experience in building, testing, deploying, and maintaining API platforms and infrastructure in a
Reference
9ad7de4f-6523-4d39-9d99-7a03e495fe3c
Expiry Date
01/01/0001
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
Descripción del ÁreaLa organización de Tecnología e Innovación (T&I) es responsable de ofrecer capacidades tecnológicas seguras, confiables e innovadoras que permitan el crecimiento estratégico de Exp
Reference
2bd5cd55-0011-4321-a271-3758afa47ca7
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Human Resources
Brand
Experian
Remote working available
No
Description
The Service Quality Analyst plays a critical role in strengthening service quality, employee experience, and operational effectiveness across Global People Services (GPS) as the organization continues
Reference
17dc4b1f-0774-486a-8805-faec2d72ba27
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
No
Description
The Engineering Excellence & Transformation Manager is a program manager responsible for shaping, driving, and governing engineering productivity, quality, and SDLC modernization across Experian’s Nor
Reference
eb539c07-0a48-46e9-befc-301ea7006438
Expiry Date
01/01/0001
Salary
Location
Düsseldorf, Germany
Experience Level
Not Applicable
Employment
Permanent
Location
Dusseldorf
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
No
Description
Wir suchen einen Senior Analytical Consultant (m/w/d) mit Erfahrung in der Versicherungsbranche für unser Customer Analytics-Team, das datengestützte Lösungen für unsere Kunden erstellt. Diese Positio
Reference
1911f46a-68c0-40d0-9b8e-61084bda223a
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Roam
Schedule
Full Time
Department
Sales & Business Development
Brand
Serasa Experian
Remote working available
No
Description
Responsabilidades:• Gerenciar negociações mais complexas e contratos com clientes de médio e grande porte.• Desenvolver propostas customizadas para atender às necessidades específicas dos clientes.• A
Reference
ddfa1494-3907-482e-b96f-a6f7de2d4ff9
Expiry Date
01/01/0001
Salary
Location
Sofia, Bulgaria
Experience Level
Entry Level
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
No
Description
The Credit Controller makes sure that all Experian clients are paying on time. Also, you will constantly work for reducing the aged debt and maximise the cash collection of the company.What you'll be
Reference
eb1bc1c9-da56-4934-b327-1e140f520a4c
Expiry Date
01/01/0001
Salary
Location
Sofia, Bulgaria
Experience Level
Entry Level
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
No
Description
The Credit Controller makes sure that all Experian clients are paying on time. Also, you will constantly work for reducing the aged debt and maximise the cash collection of the company.What you'll be
Reference
e26b7083-81a6-4756-a988-7894d4576db8
Expiry Date
01/01/0001