Manager, Vulnerability Management
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Experteer Overview In this role you will lead a Vulnerability Management team within a hybrid/multi-cloud environment to reduce Vanguard’s attack surface. You’ll drive CTEM, AI-enabled automation, and scalable guardrails, partnering across security and engineering to balance risk reduction with operational efficiency. You’ll shape the program, evolve processes, and deliver measurable security improvements at scale. This is a chance to lead a growing function and influence risk posture in a mission-driven, collaborative culture. Compensation / Benefits * Evolve and lead the Vulnerability Management program, integrating VulnOps concepts and AI-enabled operations. * Manage and develop a high-performing team capable of monitoring on-prem and multi-cloud assets for vulnerabilities and config weaknesses. * Collaborate with SOC, Cyber Threat Intelligence, Red/Blue teams, PatchOps, and other stakeholders to refine prioritization and remediation strategies. * Oversee false-positive investigations, risk-acceptance requests, and risk-rating adjustments. * Coordinate hardening of OS, database, and telecom infrastructure to ensure standards compliance. * Shape remediation SLAs, policies, and guardrails to enforce secure configurations. * Develop metrics, KPIs, and OKRs to measure program effectiveness. * Coordinate with engineering platform teams to tune scanning tools for better visibility and security alignment. * Drive continuous process improvement and automation to fuse data from different sources and streamline remediation ownership. * Provide industry expertise on emerging security practices and standards. Tasks * Minimum 6 years in cybersecurity domains (vulnerability management, DevSecOps, cloud security, or related) * At least 2 years managing vulnerabilities at scale * Excellent leadership and people-management track record * Strong understanding of CVSS, exploitability, and risk-based prioritization * Experience with AWS, Azure, or GCP and cloud security principles * Understanding of CI/CD pipelines and AI-assisted code development * Undergraduate degree in a related field (or equivalent) * Analytical and problem-solving skills with ability to mitigate complex risks * Excellent communication and collaboration skills across levels of an organization Key requirements * hybrid working model * mission-driven culture
Requirements
Overview risk-acceptance requests, and risk-rating adjustments. * Coordinate hardening of OS, database, and telecom infrastructure to ensure standards compliance. * Shape remediation SLAs, policies, and guardrails to enforce secure configurations. * Develop metrics, KPIs, and OKRs to measure program effectiveness. * Coordinate with engineering platform teams to tune scanning tools for better visibility and security alignment. * Drive continuous process improvement and automation to fuse data from different sources and streamline remediation ownership. * Provide industry expertise on emerging security practices and standards. Tasks * Minimum 6 years in cybersecurity domains (vulnerability management, DevSecOps, cloud security, or related) * At least 2 years managing vulnerabilities at scale * Excellent leadership and people-management track record * Strong understanding of CVSS, exploitability, and risk-based prioritization * Experience with AWS, Azure, or GCP and cloud security aaaaaaaa to * Understanding of CI/CD pipelines and AI-assisted code development * Undergraduate degree in a related field (or equivalent) * Analytical and problem-solving skills with ability to mitigate complex risks * Excellent communication and collaboration skills across levels of an organization Key requirements * hybrid working model * mission-driven culture
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on us.experteer.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
What Are The Top Skills Required For Azure Developers?
9 Ways to Make Money Hacking