Specialist - Vulnerability Management
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
DeepLight AI is a specialist AI and data consultancy with extensive experience implementing intelligent enterprise systems across multiple industries, with particular depth in financial services and banking. Our team combines deep expertise in data science, statistical modeling, AI/ML technologies, workflow automation, and systems integration with a practical understanding of complex business operations. DeepLight AI is a specialist AI and data consultancy dedicated to transforming the regional corporate landscape through bespoke, high-impact intelligent systems. Based in the UAE, we partner with organizations across diverse sectors-with a deep-rooted expertise in Financial Services and Banking-to bridge the gap between complex data and actionable business strategy. At DeepLight, we don't believe in "off-the-shelf" fixes. We deliver tailored AI solutions designed to integrate seamlessly into existing enterprise architectures, ensuring that innovation is both scalable and secure. From building robust data foundations to deploying sophisticated AI platforms, we empower our clients to lead in an increasingly automated world. The Specialist - Vulnerability Management is a core operational security position within Deeplight consultancy, embedded directly within a major banking client. This role is responsible for the continuous discovery, analysis, and tracking of technical vulnerabilities across the bank's enterprise networks, systems, and applications. Serving as a crucial link between automated security detection and infrastructure engineering teams, this position ensures that security weaknesses are systematically prioritized and resolved in strict accordance with institutional SLAs and financial sector regulatory baselines. Responsibilities Vulnerability Assessment: Operate and maintain enterprise vulnerability scanning schedules across infrastructure, networks, and endpoints, interpreting complex data outputs to pinpoint systemic security gaps. Risk Prioritization: Analyze detected vulnerabilities using technical threat intelligence and business context to prioritize remediation tasks based on real-world exploitability and potential banking impact. Remediation Tracking: Partner directly with system administrators, infrastructure engineers, and application owners to coordinate, track, and validate patch management and risk mitigation activities. Compliance Monitoring: Verify that vulnerability remediation efforts strictly comply with internal corporate security policies and external banking regulations. Reporting & Visibility: Generate accurate, structured vulnerability metrics, aging reports, and technical risk summaries for technical teams and security management. Professional Execution: Represent Deeplight by maintaining high technical accuracy, process consistency, and professional accountability within the client's day-to-day security operations. As an AI consultancy, our greatest asset is the expertise of our people. While technical mastery is the foundation of what we do, the ability to bridge the gap between complex data science and actionable business value is what defines your success with Deeplight. We're looking for individuals who are not only world-class in their fields of specialism, but also compelling communicators and persuasive advocates for their own skills. You will be the face of our firm, tasked with building trust, articulating the "why" behind your technical decisions, and effectively "selling" your vision to high-level stakeholders. If you thrive on the challenge of presenting cutting-edge solutions as much as you do on building them, you will fit right in. We need you to have: Vulnerability Tool Proficiency: Technical competence in operating enterprise-scale vulnerability scanning platforms (e.g., Qualys, Tenable Nessus, Rapid7, or cloud-native security utilities). Risk Assessment: Advanced understanding of vulnerability scoring methodologies (such as CVSS v3/v4) and the ability to distinguish theoretical risk from actual exploitability within a corporate environment. Security Frameworks: Practical knowledge of foundational information security control frameworks (e.g., NIST CSF, CIS Benchmarks, ISO/IEC 27001). Technical Troubleshooting: Basic capability to understand operating system architectures, network configurations, and common software patches to support engineering remediation teams. Collaborative Communication: Strong interpersonal skills to effectively communicate technical security flaws and urgency to non-security engineering squads. Essential Experience Professional Tenure: Minimum of 4 years of experience in dedicated corporate cybersecurity roles, with at least 2 years focused directly on vulnerability identification, patch tracking, or technical security auditing. Financial Services Context: Practical experience operating within a regulated banking or financial services environment, working within formal change management structures (e.g., ITIL). Consulting Deliver
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at Deeplight? Share your experience