Head of Security Testing and Vulnerability Management at Kantar leading enterprise-wide strategy for security testing and vulnerability assessment. Ensuring robust security posture across all technology environments.
Responsibilities
Lead the enterprise-wide strategy and execution for security testing, vulnerability assessment, and remediation programs.
Ensure the organisation maintains a robust security posture by proactively identifying, assessing, and mitigating vulnerabilities across infrastructure, applications, and cloud environments.
Define and implement a global security testing and vulnerability management strategy aligned with enterprise risk objectives.
Establish governance frameworks, KPIs, and reporting mechanisms for security testing and vulnerability management.
Oversee penetration testing, red teaming, and application security testing programs.
Manage vulnerability scanning, prioritisation, and remediation workflows across all technology stacks.
Ensure timely patching and mitigation of critical vulnerabilities in collaboration with IT, engineering teams and wider business units.
Align vulnerability management practices with regulatory requirements (e.g., ISO 27001, NIST, CIS).
Provide executive level reporting on risk exposure and remediation progress.
Drive automation and integration of vulnerability management tools into CI/CD pipelines.
Stay ahead of emerging threats and testing methodologies to enhance security resilience.
Build and lead a team of security testing and vulnerability management professionals.
Foster a culture of accountability, collaboration, and continuous learning.
Requirements
Proven experience in leading global security testing and vulnerability management programs.
Strong knowledge of penetration testing, vulnerability scanning tools (e.g., Qualys, Microsoft Defender Vulnerability Management, etc), and secure development practices.
Expertise in integration with risk management frameworks.
Excellent team leadership, stakeholder management, and communication skills.
Ability to operate in a complex, multi-regional environment with diverse technology landscapes.
Preferred Qualifications: CISSP, OSCP, or equivalent certifications.
Experience with cloud security (Azure) and DevSecOps practices.
Background in large-scale enterprise environments.
Benefits
Opportunity to shape global security strategy in a high-impact leadership role.
Work with cutting-edge technologies and a world-class cyber security team.
Competitive compensation and benefits package.
Job title
Head of Security Testing – Vulnerability Management
Security Dispatcher ensuring the safety, security, and welfare at Children's Healthcare of Atlanta. Engaging in emergency communications, coordinating security personnel, and monitoring alarms.
Cybersecurity Manager leading compliance and operational security for classified information systems at Boeing. Overseeing analysis, risk management, and security policy enforcement.
Senior Cybersecurity Engineer at TDCX monitoring and responding to cybersecurity incidents. Collaborating with security teams to ensure compliance and protection of organizational data and systems.
Cybersecurity Engineer advancing security posture with real - time threat monitoring using SIEM tools like Splunk. Managing incident response and vulnerability management lifecycle across networks and applications.
Senior Network Security Engineer focusing on MFA services for Verizon's Global Network & Technology team. Collaborating on technical implementation and providing ongoing operational support.
Director managing strategic stakeholder engagement for cyber security initiatives in Australia. Collaborating across governments and industry to drive national cyber preparedness and awareness.
Information Systems Security Officer ensuring operational security for information systems. Collaborating with ISSM and ISO while managing security operations and compliance.
Cybersecurity Engineer Principal at GDIT leads enterprise initiatives for improving identity and access security. Collaborates with leadership to architect modern IAM solutions per Zero Trust Principles.
Manager role supporting Cybersecurity and Technology Risk Oversight Center of Excellence. Leading regulatory exams and audits while collaborating with cross - functional risk management teams.
Cybersecurity Specialist protecting DSV Contract Logistics IT platforms. Manage cybersecurity risks and embed security into IT solutions while ensuring operational continuity.