Attack Surface Management Manager
- Nottingham
- Legal & Compliance
- Permanent
- Home
- Full Time
Experian Cyber Fusion Centre are looking for a new Manager of Attack Surface Management (ASM) to play a crucial role in our cybersecurity strategy.
You will guide the success of the Continuous Threat Exposure Management (CTEM) program and build business engagement across global teams. You will ensure CTEM delivers reliable, applicable insights by defining and maintaining processes, integrating services with enterprise systems.
Equally critical is leading the Business Engagement Team to establish trusted partnerships with regional infrastructure and application partners, aligning vulnerability management strategies with priorities. Through technical leadership and strategic influence, you will strengthen Experian's security posture and reduce risk across its global attack surface.
This is an UK based remote position reporting to the Information Security Director for Cloud and Attack Surface Management.
Primary Focus:-
Lead CTEM Service Delivery: Manage processes for the Continuous Threat Exposure Management (CTEM) service and its provider. Ensure integration with Experian systems, delivering, reliable, and applicable security insights that inform risk reduction across the enterprise.
Business Engagement: You will manage the Business Engagement Team and Service, providing expertise and strategic direction. Cultivate partnerships with regional infrastructure and application teams to ensure the vulnerability management strategy is understood, agreed upon, and implemented.
Other Responsibilities:-
- Maintain risk stratification model to guide vulnerability prioritization based on threat and asset criticality; Identify vulnerability prioritization and asset coverage trends, escalating to senior leadership when vulnerability trends are not improving over time.
- Help with response to cybersecurity incidents or threat informed actions, ensuring accurate identification of applicable internal and external risks. Will use a broad and diverse combination of tools, techniques, and data sources to support highest confidence in attack surface discovery.
- Guide team members' daily project and operational activities
- Contribute to security and technology strategic planning to mature our programmes
- Work with Risk & Compliance teams on SOC 2, PCI DSS, HIPAA, and other audits.
- Research and recommend policy and procedures as they relate to Attack Surface Management
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to achieve their financial goals and help them save time and money.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.
Internal Grade C
- Expert experience supporting Attack Surface Management in vulnerability, remediation, and mitigation as it applies to the following.
- Common web applications, APIs, misconfigurations, hosts, mobile, Internet of Things, endpoints, infrastructure, cloud, network appliance, OS, firmware and software supply-chain.
- Management experience in an enterprise-level cybersecurity function.
- Experience engaging and presenting security topics at senior levels in an enterprise organization
- Experience managing Risk-Based Vulnerability Management models.
- In-depth knowledge of architecture, engineering, and operations of one or more vulnerability management tools, such as: Qualys, Rapid7, Tanium, Axonius, Armis, or other.
- Experience applying the following models to an enterprise security program: CMMI, ISO/IEC 2700, OWASP SAMM, NIST, SMM SANS Security Maturity Model.
- Experience developing security reports, trends, and metrics analysis.
- Experience with the application of some of the following frameworks - SANS, NIST 800-61, CVSS, CIS, OSSTM, ISO 27001, MITRE ATT&CK, PCI, HIPAA, GDPR or similar.
- Experience with cloud security practices
- Experience with business and technical requirements analysis, business process modeling/mapping, methodology development, and data mapping
Benefits package includes:
- Great compensation package and discretionary bonus plan
- Core benefits include pension, bupa healthcare, sharesave scheme and more
- 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
Madrid, Spain
Experience Level
Associate
Employment
Permanent
Location
Madrid
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Experian
Remote working available
No
Description
The Product Manager -Analytics &Cloud platform-, plays a crucial role in shaping the overarching growth strategy for our data products in the region. You will be business focused, responsible for unde
Reference
bca18acf-e3a1-4ace-96a4-c575cdf001fc
Expiry Date
01/01/0001
Salary
Location
Sofia, Bulgaria
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
What you will do:We are looking for passionate and collaborative Site Reliability Engineers (SREs) to join our team. Whether you are an experienced professional or looking to grow into a senior role,
Reference
45d08b26-f7f5-4c4c-8eb3-725d36f542a5
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Mid-Senior Level
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$100,649 - $174,459
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
Yes
Description
Experian is looking for a motivated Solutions Engineer experienced in both technology transformation and relationship building. You will work with clients, sales, and internal teams to develop scalabl
Reference
49b0778e-6885-44b6-a5ae-652f89ca9862
Expiry Date
01/01/0001
Salary
Location
North Sydney, Australia
Experience Level
Not Applicable
Employment
Permanent
Location
Sydney
Role Type
Hybrid
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
No
Description
The Manager – Client Technical Support is a critical leadership role within Client Operations. You will manage a team of client-facing technical specialists who assist clients daily with requests rela
Reference
4b4423ad-f8ae-408d-bdbb-13baa656dbb8
Expiry Date
01/01/0001
Salary
Location
Southbank VIC, Australia
Experience Level
Not Applicable
Employment
Permanent
Location
Southbank
Role Type
Hybrid
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
No
Description
The Manager – Client Technical Support is a critical leadership role within Client Operations. You will manage a team of client-facing technical specialists who assist clients daily with requests rela
Reference
dd7146ba-6286-40bd-937e-70c523d3b54f
Expiry Date
01/01/0001
Salary
Location
Costa Mesa, United States
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Costa Mesa
Role Type
Hybrid
Salary Range
$71,640 - $124,176
Schedule
Full Time
Department
Marketing and Communications
Brand
Experian
Remote working available
Yes
Description
OverviewWe are looking for an experienced Corporate Events Specialist to work collaboratively, with energy and creativity, to manage important functions in the successful execution of world-class Corp
Reference
5918a062-567e-4290-b638-6e4d6158b789
Expiry Date
01/01/0001
Salary
Location
Heredia , Costa Rica
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
We are looking for an experienced Senior Network Security Operations Engineer to join our team. You will be a part of a wider edge security operations group responsible for protecting our edge global
Reference
56752c88-4146-4212-be6e-4ed1f24824da
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Human Resources
Brand
Experian
Remote working available
Yes
Description
The Work Relations Partner manages and resolves employee relations issues to guarantee a fair, respectful, and legally compliant workplace. You will support us by promoting a positive work environment
Reference
e4ec3ae5-41ba-4e9b-9c61-8b9acc75cf35
Expiry Date
01/01/0001
Salary
Location
Recife, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Recife
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
Estamos em busca de um(a) Analista de Desenvolvimento II com experiência em desenvolvimento backend utilizando Java e Spring Boot. A pessoa ideal para essa posição é curiosa, proativa e comprometida c
Reference
a1c0e742-5783-4872-a5d6-94176044655c
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Not Applicable
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$115,747 - $208,344
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
Yes
Description
The role is with NeuroID, part of Experian North America. We create products that detect fraud by analyzing how people type data on web forms and mobile apps (how cool is that?). We are powered by dat
Reference
ffcb5e99-2c6c-489e-9502-135392ce1e70
Expiry Date
01/01/0001
Salary
Location
Nottingham, England
Experience Level
Director
Employment
Permanent
Location
Nottingham
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
No
Description
Experian Global Security Office are looking for a Third-party Security Specialist to perform support activities to help complete assessments and delivery of the TPS Programme and participate in specia
Reference
59e93c37-9342-4e4b-beb9-5e62e157ee4a
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Legal & Compliance
Brand
Serasa Experian
Remote working available
No
Description
Principais responsabilidades: • Condução de processos judiciais estratégicos com ênfase em Direito Civil, Processo Civil, Direito do Consumidor, Direito Empresarial e Recuperação Judicial e Falências
Reference
e9510b8f-4e7f-4263-ba88-eb1a8d49bfef
Expiry Date
01/01/0001
Salary
Location
Rome, Italy
Experience Level
Not Applicable
Employment
Permanent
Location
Rome
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Experian
Remote working available
No
Description
We are looking for a Product & Proposition Manager with focus on Digital Onboarding solutions to join our Product & Proposition team. You will be responsible for shaping, managing, and evolving Experi
Reference
8ce86f13-28ba-4268-835a-540e064d6a1c
Expiry Date
01/01/0001
Salary
Location
Cyberjaya, Malaysia
Experience Level
Not Applicable
Employment
Permanent
Location
Cyberjaya
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
No
Description
What You'll Do:Handle all intercompany in Global (including APAC, UK&I, EMEA, NA&3Cs & LATAM) transactions, accounting, confirmations and reconciliations. The process must be completely timely and at
Reference
ebfc8d50-85f7-4a5a-b4f1-f5954b664b26
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Associate
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$115,747 - $208,344
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
Yes
Description
As the Application Owner, you will report to Experian Automotive's Senior Director of IT. This role is considered "Hybrid", whereby you will work in our Franklin, TN office 1-2 days/week with our mana
Reference
d68b7922-3c6b-4294-a8c7-89e6b3e9cd69
Expiry Date
01/01/0001
Salary
Location
United States
Experience Level
Not Applicable
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
$153,075 - $275,535
Schedule
Full Time
Department
Data Management
Brand
Experian
Remote working available
Yes
Description
Experian Employer Services DescriptionAs the world of work evolves, human capital management must keep pace. Employers have been looking for scalable, client-focused alternatives. In response, Experia
Reference
3cb88a81-ddb3-4ed2-b427-d16308f9d629
Expiry Date
01/01/0001