Sr. Analyst, OT Vulnerability Management
Chessington - UK
Job Summary
Senior Analyst Threat & Vulnerability Management (OT Security)
London UK
About the Role
As part of the continued expansion of our cybersecurity program we are seeking a Senior Analyst Threat & Vulnerability Management with a strong focus on Operational Technology (OT) security.
In this role you will be responsible for supporting and executing vulnerability management activities across the full vulnerability lifecycle with particular emphasis on OT environments within our data center operations. You will help identify assess prioritize and drive remediation of vulnerabilities affecting critical OT assets such as security systems access control devices power monitoring equipment and other operational technologies.
Working closely with Cybersecurity IT Engineering Data Center Operations and external vendors you will play a key role in strengthening the organizations security posture and reducing cyber risk across both IT and OT environments.
Key Responsibilities
Execute vulnerability management activities across the full lifecycle including discovery assessment prioritization remediation tracking and validation of fixes.
Support vulnerability identification risk assessment and remediation efforts across Operational Technology (OT) environments while contributing to broader Threat & Vulnerability Management initiatives.
Analyze vulnerability and threat intelligence data to identify high-risk exposures emerging trends and remediation priorities.
Partner with Cybersecurity IT Infrastructure Engineering Data Center Operations and business stakeholders to assess impacts and drive timely remediation activities.
Coordinate remediation and patch management efforts including validation of corrective actions and follow-up on outstanding issues.
Work with vendors and operational teams to address vulnerabilities affecting OT assets where patching and maintenance processes may require specialized coordination.
Develop and maintain dashboards metrics and reports to measure program effectiveness remediation progress and overall risk posture.
Prepare technical and executive-level summaries reports and presentations for a variety of stakeholders.
Support compliance with vulnerability management policies standards and risk management processes.
Act as a point of coordination and subject matter resource for complex vulnerability management issues.
Participate in incident response and urgent risk mitigation activities when vulnerabilities present elevated operational or security risks.
Contribute to the continuous improvement of Threat & Vulnerability Management processes workflows reporting capabilities and overall program maturity.
Profile
35 years of experience in Threat & Vulnerability Management Cybersecurity Operations Security Engineering or related cybersecurity disciplines.
Hands-on experience with vulnerability management and security scanning platforms such as Tenable (Nessus) Claroty or similar technologies.
Proven experience assessing prioritizing and tracking vulnerabilities through remediation in enterprise environments.
Strong understanding of vulnerability management methodologies and risk-based prioritization practices.
Solid knowledge of CVSS scoring and the ability to evaluate vulnerabilities based on business impact exploitability operational risk and remediation complexity.
Ability to analyze technical findings and translate them into clear actionable recommendations for both technical and non-technical stakeholders.
Experience working in or supporting Operational Technology (OT) industrial critical infrastructure or data center environments is highly preferred.
Strong analytical organizational and problem-solving skills with the ability to manage multiple priorities in a fast-paced environment.
Excellent collaboration and communication skills with the ability to work effectively across Cybersecurity IT OT Engineering Operations and vendor teams.
Self-motivated and capable of working independently while contributing to the maturity and continuous improvement of security processes.
Relevant industry certifications such as CISSP CISM CEH OSCP or equivalent are considered a plus.
A bit about us
Digital Realty is the leading provider of carrier and cloud neutral data centre services by delivering the full spectrum of data center colocation and interconnection solutions. PlatformDIGITAL the companys global data center platform provides customers with a secure data meeting place and a proven Pervasive Datacenter Architecture (PDx) solution methodology for powering innovation and efficiently managing Data Gravity challenges. Digital Realty gives its customers access to the connected data communities that matter to them with a global data center footprint of 300 facilities in50metros across28countries on6continents. Weve3500colleagues around the world who work together come up with life-changing solutions and create connections that matter every day.
What we can offer you
Our rapidly evolving business sector offers the opportunity to be part of a courageous and passionate team who work together to understand and meet the changing needs of our global customers. Join us and youll be part of a supportive and inclusive environment where you can bring your whole self to work. As part of our team youll get to work with people from different business areas challenge the way we do things and put your ideas into action. Well also give you plenty of development opportunities so you can build a rewarding and successful career with us. This is an exciting time to join our business so apply now and make your mark on our future.
Responsibilities
The specialist is responsible for monitoring and ensuring IT systems adhere to internal and external compliance requirements. They conduct risk assessments and participate in compliance audits identifying gaps and recommending improvements to processes and controls. The role requires the development and implementation of procedures that align with information and cyber security standards. Working closely with other IT and business units the specialist helps maintain a secure and compliant environment. They must skilfully manage multiple priorities and communicate findings diplomatically to stakeholders. The position also involves staying updated on regulatory changes and best practices to proactively address potential compliance issues.
Qualifications
2-4 Years of experience in IT privacy compliance or systems engineering. Bachelors degree in Information Technology Computer Science or related field. Familiarity with SOX audits and cyber security standards. Strong organizational and analytical skills. Effective communication and teamwork abilities.
Required Experience:
Senior IC
About Company
With Digital Realty, you can leverage our full interconnection capabilities across our global ecosystem including data centers, connectivity and cloud services.