> Markdown version of [/jobs/ext/2102744-vulnerability-management-support-engineer-s2-chief-information-resilience-office-milton-keynes](https://www.wearedevelopers.com/jobs/ext/2102744-vulnerability-management-support-engineer-s2-chief-information-resilience-office-milton-keynes). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Vulnerability Management Support Engineer | S2 | Chief Information & Resilience Office | Milton Keynes - **Company:** Santander Bank - **Location:** Milton Keynes, UK - **Experience:** Expert - **Salary:** £44,496.0 - £66,744.0 - **Contract:** Permanent contract - **Skills:** JIRA, Spreadsheets, Configuration Management Databases, CompTIA Security+, Cyber Security, Issue Tracking Systems, Intrusion Detection Systems, Python (Programming Language), Windows PowerShell, Software Vulnerability Management, Scripting, Cloud Platform System, Information Technology, Servicenow - **Published:** August 18, 2026 - **Apply:** https://santander.wd3.myworkdayjobs.com/SantanderCareers/job/Milton-Keynes/Vulnerability-Management-Support-Engineer---S2---Chief-Information---Resilience-Office---Milton-Keynes_Req1595090-1 ## About the Role * Understanding of Information / Cyber Security Principles & Technologies. (Required) * Excellent Verbal & Written Communication Skills (Required) * Great analytical, problem-solving, and troubleshooting skills. (Required) * Understanding of scripting and automation (e.g., Python, PowerShell) to enhance vulnerability management processes. (Preferred) * An understanding of cyber risk and how cyber-attacks are conducted across endpoints, cloud and on-premise networks (Preferred) Education * Degree in Computer Science, Information Security, or related field (Preferred) * Relevant industry certifications (Preferred): Such as CompTIA Security+, CISSP, CISM, or similar. (Preferred) Languages * Spanish (Preferred) Hard Skills * Understanding of Information / Cyber Security Principles & Technologies. Knowledge of security concepts, vulnerability management, and risk assessment. (Required) * Scripting and Automation: Familiarity with scripting languages such as Python or PowerShell to automate vulnerability management tasks. (Preferred) * Knowledge of Cyber Risk and Attack Methods : Understanding how cyber-attacks are conducted across endpoints, cloud, and on-premise networks. (Preferred) * Experience with Ticketing Systems: Using tools like JIRA, ServiceNow, and Elastic for tracking and updating remediation status. (Preferred) * Reporting: Ability to generate weekly/monthly reports and maintain SOPs/runbooks. (Preferred) * Asset Management: Supporting CMDB and asset inventory updates related to scan coverage and tool integration. (Preferred) Soft Skills * Great Verbal & Written Communication Skills: Ability to communicate clearly with cross-functional teams and document processes. (Required) * Analytical, Problem-Solving, and Troubleshooting Skills: Capable of investigating issues, performing root cause analysis, and implementing corrective actions. (Required) * Collaboration: Experience working with multiple teams (security, IT, infrastructure) to coordinate remediation efforts. (Required) * Attention to Detail: Maintaining accurate documentation, tracking remediation status, and ensuring traceability. (Required) * Adaptability: Willingness to learn new technologies and adapt to evolving security threats and processes. (Required) * Proactive Attitude: Taking initiative in risk management and vulnerability remediation. (Required), * All candidates must have the right to work in the UK to commence employment with Santander. ## Description We are seeking a Vulnerability Management and Security Hardening Support Engineer to support on assessment and remediation of security vulnerabilities within infrastructure. The successful candidate will play a supporting role in analysing security vulnerabilities and security hardening, coordinating with cross-functional teams, and providing governance and oversight for implementing timely, effective remediation to reduce the organisation's risk exposure. We're shaping the way we work through innovation, cutting-edge technology, collaboration and the freedom to explore new ideas. To succeed in this role, you will be responsible for: * Support with system, application, and infrastructure teams to prioritise and remediate vulnerabilities across on-premise and cloud environments. * Assign, track and update remediation status in dashboards, spreadsheet and ticketing systems e.g. JIRA, ServiceNow & Elastic * Assisting in troubleshooting, performing root cause analysis, and implementing corrective actions under supervision. * Maintain documentation of exceptions, waivers, or risk acceptances. * Support CMDB and asset inventory updates related to scan coverage and tool integration. * Act as the liaison between the security function (who identifies vulnerabilities) and the IT teams (who implement fixes). * Link vulnerability IDs (CVEs) to corresponding tickets for traceability. * Generate weekly/monthly reports. * Maintain SOPs and runbooks for remediation tasks. WHAT YOU'LL BRING Our people are our greatest strength. Every individual contributes unique perspectives that make us greater as a team and as an organisation. We're enabling teams to go beyond by valuing who they are and empowering what they bring. The following requirements represent the knowledge, skills, and abilities essential for success in this role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. ## Related Videos - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)