> Markdown version of [/jobs/ext/2019732-cyber-security-vulnerability-manager](https://www.wearedevelopers.com/jobs/ext/2019732-cyber-security-vulnerability-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Vulnerability Manager - **Company:** Digital Health and Care Wales - **Location:** Cardiff, UK - **Salary:** £50,129.0 - £57,365.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cyber Security, Software Vulnerability Management, Vulnerability Analysis - **Published:** August 11, 2026 - **Apply:** https://find.jobs/jobs-near-me/apply/ats-redirect/?id=2918692275-2 ## About the Role The ability to speak Welsh is desirable for this post; Welsh and/or English speakers are equally welcome to apply. ## Description Are you passionate about cyber security and protecting critical digital services that make a real difference to people's lives? We are looking for a Cyber Vulnerability Manager to lead and develop our vulnerability management function, helping to identify, assess and reduce cyber risks across NHS Wales. In this highly influential role, you will oversee vulnerability scanning, assessment and remediation activities, ensuring systems and applications remain secure against existing and emerging threats. Working with a wide range of stakeholders, you will provide expert advice, develop improvement initiatives and support the delivery of a strong cyber security culture across the organisation. As a leader within the Cyber Security team, you will manage and support specialist staff, helping them to develop their skills while creating an inclusive and collaborative environment where everyone can thrive. You will also contribute to strategic cyber security planning, helping shape future security capabilities and continuously improving services for our users. This is an exciting opportunity for someone with strong technical expertise, excellent leadership skills and a passion for continuous improvement. If you enjoy solving complex challenges, influencing positive change and working in a role where your expertise directly supports vital public services, we would love to hear from you. Main duties of the job As Cyber Vulnerability Manager, you will lead the delivery of vulnerability management services across a complex digital environment. You will coordinate vulnerability assessments, analyse security findings and work closely with technical teams, suppliers and service owners to ensure risks are effectively managed and remediated. You will oversee vulnerability scanning tools, penetration testing activities and associated contracts, ensuring services remain effective, compliant and aligned with organisational objectives. Using data and intelligence from multiple sources, you will assess risk, identify trends and produce reports that support informed decision-making at operational and strategic levels. A key part of the role will involve developing policies, procedures and standards that strengthen cyber resilience and support continuous improvement. You will lead projects, manage priorities and contribute to cyber security improvement programmes, ensuring outcomes are delivered on time and to a high standard. The post holder will also build strong relationships across the organisation and wider NHS, providing expert guidance, delivering training and awareness activities, and helping teams understand and manage cyber security risks in a practical and collaborative way. Detailed job description and main responsibilities * Provide professional leadership, coaching and line management to specialist cyber security staff, supporting their development and performance. * Develop and maintain vulnerability management policies, processes and standards in line with organisational and national requirements. * Analyse complex security data, vulnerability reports and threat intelligence to identify risks, trends and opportunities for improvement. * Work collaboratively with technical teams, suppliers and stakeholders to coordinate remediation activity and improve security outcomes. * Manage cyber security projects and improvement programmes, balancing competing priorities and ensuring successful delivery. * Produce high-quality reports, dashboards, presentations and recommendations for a range of technical and non-technical audiences. * Act as a subject matter expert, providing specialist advice on vulnerability management, cyber security best practice and emerging threats. * Support governance, risk and compliance activities, including audits, security assessments and accreditation requirements. * Champion an inclusive, supportive and continuous improvement culture where diverse perspectives are valued and everyone is encouraged to contribute their best work. ## Related Videos - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [What is the real price of one successful line of code?](https://www.wearedevelopers.com/videos/1921-what-is-the-real-price-of-one-successful-line-of-code) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)