Vice President, Threat and Vulnerability Management Engineer

MUFGLondon, EnglandOn-siteFull-timePrincipal, 12–15+ yearsListed 1 hour ago

Apply now

About this role

Do you want your voice heard and your actions to count?

Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.

With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.

Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.

MUFG, one of the world’s leading financial groups with a rich heritage spanning over 350 years, are seeking a Vice President, Threat and Patch Management Engineer to join their Digital Engineering Services & Solutions team in London. This pivotal role offers you the opportunity to shape the future of vulnerability remediation, endpoint security compliance, and operating system patch management across the EMEA region. You will be at the forefront of technical leadership, guiding critical activities that ensure the organisation’s technology estate remains secure, resilient, and compliant with regulatory requirements. The environment is highly collaborative, with cross-functional teams working together to support operational resilience and cyber security compliance. If you are passionate about continuous improvement and eager to drive strategic adoption of advanced platforms such as Tanium, this position provides an exceptional platform for your professional growth. Enjoy flexible working opportunities, access to ongoing training, and the chance to make a meaningful impact within a supportive network.

* Take ownership of vulnerability remediation and endpoint security compliance services across a major financial institution’s EMEA operations, ensuring alignment with cyber security and regulatory standards.

* Work closely with Infrastructure, Cyber Security, Architecture, Engineering and Business Technology teams in a highly collaborative environment that values knowledge sharing and inclusive practices.

* Benefit from flexible working arrangements and extensive training opportunities designed to foster your professional development while contributing to operational resilience and service reliability.

What you'll do:

As Vice President, Threat and Patch Management Engineer, you will play a central role in delivering robust vulnerability remediation services while supporting endpoint security compliance across the EMEA region. Your day-to-day responsibilities will involve managing complex remediation activities on diverse technology platforms including Windows Server and Linux. You will review vulnerabilities from multiple sources such as Qualys or ServiceNow VR/AVR, prioritising them based on risk assessments before coordinating remediation efforts with various teams. Reporting is a key aspect of this role; you will produce detailed operational reports for management oversight. In addition to patch management duties—such as defining deployment schedules, assessing new releases from vendors like Microsoft, monitoring success rates—you will also contribute to maintaining endpoint governance standards. By supporting file integrity monitoring initiatives and collaborating with cyber security teams, you will help reduce operational risk while improving overall security posture. Your expertise will be instrumental in driving continuous improvement projects aimed at automating processes for patching, compliance monitoring, vulnerability remediation, reporting enhancements, operational controls optimisation, and governance visibility. You will also support the strategic adoption of advanced platforms like Tanium for enhanced endpoint visibility, inventory management, compliance monitoring, patch automation, third-party software patching integration with ServiceNow workflows—all while aligning global standards through close collaboration with international technology teams.

* Manage infrastructure vulnerability remediation activities across Windows, Linux and associated technology platforms by coordinating with multiple teams to ensure vulnerabilities are addressed promptly.

* Review, assess and prioritise vulnerabilities identified through Qualys, ServiceNow Vulnerability Response, cyber security advisories and vendor notifications to maintain a secure technology estate.

* Coordinate remediation activities across infrastructure, security and engineering teams to ensure effective collaboration and timely resolution of issues.

* Drive improvements in vulnerability remediation performance and compliance metrics by implementing best practices and monitoring progress against established benchmarks.

* Produce operational, management and governance reporting relating to vulnerability remediation activities for senior stakeholders and regulatory bodies.

* Own and coordinate enterprise operating system patching services across Bank and Securities environments by defining deployment schedules and maintenance activities.

* Assess Microsoft Patch Tuesday releases, emergency security updates and vendor security advisories to determine appropriate responses for patch management.

* Monitor patch deployment success rates, compliance levels and remediation activities to ensure all systems remain up-to-date and protected against threats.

* Ensure patching activities operate within approved change management and governance frameworks by adhering to organisational policies and procedures.

* Support endpoint security compliance monitoring and remediation activities by assisting in maintaining infrastructure security baselines and endpoint governance standards.

What you bring:

Your proven experience as Vice President, Threat and Patch Management Engineer will demonstrate your ability to deliver enterprise-level vulnerability management solutions within complex environments. You bring deep technical knowledge of operating system patch management—especially across Windows Server technologies—and have successfully managed large-scale deployments involving both routine updates (such as Microsoft Patch Tuesday) as well as emergency releases from vendors. Your familiarity with tools like Qualys or ServiceNow VR/AVR enables you to identify vulnerabilities efficiently while integrating workflows for seamless remediation processes. You possess comprehensive understanding of cyber security controls necessary for maintaining infrastructure security baselines; this includes file integrity monitoring techniques used in endpoint control initiatives. Your excellent stakeholder engagement skills allow you to communicate effectively across departments—from Infrastructure through Cyber Security—ensuring collaborative problem-solving approaches that enhance operational resilience. Experience working within regulated financial services environments means you are comfortable navigating strict governance frameworks while supporting compliance objectives. Ideally you have exposure to advanced platforms such as Tanium or Ivanti/LANDesk plus PowerShell scripting abilities which enable automation of repetitive tasks; these skills further support continuous improvement efforts aimed at optimising reporting mechanisms/monitoring systems/operational controls/governance visibility.

* Enterprise vulnerability management experience demonstrated through successful delivery of remediation projects within large-scale environments.

* Proven track record in enterprise operating system patch management across both Windows Server technologies and Linux platforms.

* Strong understanding of Windows Server technologies including patching methodologies relevant to regulated financial services environments.

* Experience using Qualys or similar vulnerability management platforms for identifying risks and prioritising remediation actions.

* Hands-on experience with ServiceNow ITSM modules or Vulnerability Response (VR/AVR) for workflow integration in vulnerability management processes.

* Comprehensive knowledge of cyber security controls including infrastructure security practices required for maintaining compliance standards.

* Excellent stakeholder management skills supported by clear communication abilities when engaging cross-functional teams or senior leaders.

* Experience operating within regulated financial services environments where adherence to strict governance frameworks is essential.

* Desirable: Familiarity with Tanium platform technologies/modules for endpoint visibility/inventory/vulnerability management/patching/compliance monitoring/remediation/file integrity monitoring/service integration.

* Desirable: Experience with Ivanti/LANDesk endpoint management platforms plus PowerShell scripting/automation capabilities for process improvement initiatives.

What sets this company apart:

The organisation’s Digital Engineering Services & Solutions department is renowned for its commitment to providing cutting-edge technology platforms alongside dependable engineering services that underpin application development throughout EMEA operations. Employees benefit from a culture that emphasises collaboration between Infrastructure, Cyber Security, Architecture, Engineering and Business Technology teams—creating an inclusive environment where knowledge sharing is encouraged at every level. The department plays a vital role in supporting operational resilience initiatives while ensuring cyber security compliance remains at the heart of all activities; this focus on reducing vulnerabilities translates into improved service reliability across the entire technology estate. Flexible working opportunities are available so you can balance professional commitments with personal priorities; ongoing training programmes empower you to continually develop your skills while staying abreast of industry advancements. The supportive leadership structure ensures you always have access to guidance from knowledgeable colleagues who value teamwork above individual achievement—making it an ideal place for those who thrive in communal settings where everyone’s contribution is recognised.

What's next:

If you are ready to take your career forward by joining a collaborative team dedicated to operational resilience and cyber security excellence in London’s financial sector—apply now!

Apply today by clicking on the link provided.

We are open to considering flexible working requests in line with organisational requirements.

MUFG is committed to embracing diversity and building an inclusive culture where all employees are valued, respected and their opinions count. We support the principles of equality, diversity and inclusion in recruitment and employment, and oppose all forms of discrimination on the grounds of age, sex, gender, sexual orientation, disability, pregnancy and maternity, race, gender reassignment, religion or belief and marriage or civil partnership.

We make our recruitment decisions in a non-discriminatory manner in accordance with our commitment to identifying the right skills for the right role and our obligations under the law.