We are easyJet – a FTSE listed, multi-billion low-cost airline that serves tens of millions of customers every single year. If you’re reading this, you have probably already been an easyJet customer, and you’ll know that there is no more iconic (or Orange!) travel brand in Europe.We fly more than 1,
JSfirm
Attack Surface Management Analyst
Job Description:

We are easyJet – a FTSE listed, multi-billion low-cost airline that serves tens of millions of customers every single year. If you’re reading this, you have probably already been an easyJet customer, and you’ll know that there is no more iconic (or Orange!) travel brand in Europe.

We fly more than 1,207 routes, connecting 38 countries across Europe, and employ more than 18,000 colleagues. We’re on a mission to make low-cost travel easy – and whatever your role here, you’ll connect millions of people to what they love using Europe’s best airline network, great value fares, and friendly service.

What makes us easyJet? Our Promise Behaviours - we are Safe, Bold, Welcoming and Challenging. Four Behaviours. One Spirit. One easyJet.

Read on if you

  • Have experience in vulnerability management, attack surface management or cybersecurity
  • Enjoy solving complex security challenges and reducing cyber risk
  • Thrive in a fast-paced, collaborative environment
  • Are passionate about emerging technologies and secure innovation
  • Want to make a real impact across a large, complex digital estate

THE TEAM

You’ll join the Attack Surface Management (ASM) team within easyJet’s Cyber Threat Exposure Management (CTEM) function. The team is focused on identifying, validating and reducing cyber exposures across cloud, on-prem and third-party environments.

Working closely with Cyber Threat Intelligence, Advanced Threat Protection, SOC, Engineering and business teams, you’ll help deliver threat-led vulnerability management and measurable risk reduction across the organisation.

THE ROLE

As an Attack Surface Management Analyst, you’ll play a key role in helping easyJet identify and reduce cyber exposures across our technology landscape. You’ll turn vulnerability and exposure data into clear, prioritised actions and work closely with stakeholders across technology and the wider business to drive remediation and reduce risk.

You’ll also support the development of vulnerability management capabilities in emerging technology areas, including AI-enabled systems, helping ensure new technologies are deployed securely and responsibly.

Key responsibilities include:

  • Identifying, validating and assessing exposures across cloud, on-prem and third-party assets
  • Triaging vulnerabilities and prioritising remediation based on threat, exploitability and business impact
  • Partnering with IT, Engineering and business teams to drive remediation through to resolution
  • Tracking remediation activity and helping remove blockers to progress
  • Supporting analysis of recurring vulnerabilities and exposure trends to reduce repeat issues
  • Helping improve secure build and deployment practices across the software development lifecycle
  • Supporting the identification and management of vulnerabilities within AI-enabled systems and supporting pipelines
  • Assisting with vulnerability disclosure programme submissions and remediation workflows
  • Producing clear reporting and dashboards on vulnerability trends and remediation progress
  • Supporting the effective use and optimisation of vulnerability management and CNAPP tooling
  • Collaborating across Cyber Threat Exposure Management teams to strengthen detection and response capabilities
Job Requirements:

WHAT WE’RE LOOKING FOR

  • Understanding of cloud environments including AWS, Azure and GCP, and associated security risks
  • Knowledge of common security exposures such as misconfiguration, identity risk, secrets exposure and API security
  • Familiarity with vulnerability management tooling and/or CNAPP platforms
  • Strong analytical, communication and problem-solving skills
  • Understanding of vulnerability scoring, prioritisation and remediation processes
  • Ability to build strong working relationships across multidisciplinary teams
  • A proactive mindset and confidence working in a dynamic environment

DESIRABLE EXPERIENCE

  • Experience within vulnerability management, attack surface management or a related cybersecurity field
  • Knowledge of frameworks such as MITRE ATT&CK and Cyber Kill Chain
  • Awareness of security and compliance standards such as PCI-DSS
  • Relevant security certifications including GIAC, AWS or CompTIA
  • Experience with application security testing tools such as SAST or DAST

WHAT YOU’LL GET IN RETURN

  • Up to 20% bonus
  • 25 days holiday
  • BAYE, SAYE and Performance Share schemes
  • PMI
  • 7% Pension 
  • Life assurance
  • Flexible benefits package
  • Flexible working
  • Excellent staff travel benefits

PRACTICALITIES

This is a full-time position. We support hybrid working and spend time together as a team in our Luton HQ offices.

REASONABLE ADJUSTMENTS

At easyJet, we are dedicated to fostering an inclusive workplace that reflects the diverse customers we serve across Europe. We welcome candidates from all backgrounds. If you require specific adjustments or support during the application or recruitment process, such as extra time for assessments or accessible interview locations, please contact us at ma.recruitment@easyjet.com. We are committed to providing reasonable adjustments throughout the recruitment process to ensure accessibility and accommodation.

#LI-CH1 #LI-HYBRID

Company Details
easyJet Airline Company Limited
Airport Way
Luton, England United Kingdom, International LU2 9LY International
www.easyjet.com/en
68 Open Jobs Available
We are Europe's leading airline, operating on over 600 routes across more than 30 countries with our fleet of over 200 Airbus aircraft. We employ over 8,000 people including 2,000 pilots and 4,500+ cabin crew. Last year we flew over 60 million passengers. We...

Benefits:
TBD

Supported Manufacturers:
Airbus

Supported Models:
A319-100, A320-200, A320neo
(Job and company information not to be copied, shared, scraped, or otherwise disseminated/distributed without explicit consent of JSfirm, LLC)
Job Info
Location
Luton, England United Kingdom, International, United Kingdom
Type
Permanent
Company Details
easyJet Airline Company Limited
Airport Way
Luton, England United Kingdom, International LU2 9LY International
www.easyjet.com/en
68 Open Jobs Available
We are Europe's leading airline, operating on over 600 routes across more than 30 countries with our fleet of over 200 Airbus aircraft. We employ over 8,000 people including 2,000 pilots and 4,500+ cabin crew. Last year we flew over 60 million passengers. We...

Benefits:
TBD

Supported Manufacturers:
Airbus

Supported Models:
A319-100, A320-200, A320neo

JSfirm, LLC

Roanoke, TX

jobs@jsfirm.com

JSfirm LLC, Privacy Policy

All rights reserved. 2001-2026 JSfirm