> Markdown version of [/jobs/ext/2615551-security-staff-manager-vulnerability-management](https://www.wearedevelopers.com/jobs/ext/2615551-security-staff-manager-vulnerability-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Staff Manager - Vulnerability Management - **Company:** The PNC Financial Services Group, Inc. - **Location:** Cleveland, OH, United States - **Experience:** Experienced - **Salary:** $65,000.0 - $144,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Data Governance, Disaster Recovery, Information Security Management, Network Security, Software Vulnerability Management, Vulnerability Analysis - **Published:** August 12, 2026 - **Apply:** https://www.financialjobbank.com/job.asp?id=3369803452&tx=UT5046TYT&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Explicit experience in vulnerability management or security testing * Must demonstrate direct involvement in vulnerability management programs (not just remediation participation) * Strong understanding of: * Vulnerability identification, triage, risk rating, and remediation coordination * Proven ability to: * Communicate security risk clearly to senior leadership and non-security stakeholders * Navigate difficult conversations and influence teams without direct authority * Exceptional soft skills with a personable, collaborative leadership style * Strong time management and prioritization skills * Experience working in a fast-paced, high-pressure environment requiring rapid pivots and decision-making, Successful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and required certifications/licensures needed to be successful in this position. Preferred Skills Access Control (AC), Building Architecture, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies, Security Testing, Vulnerability Assessments, Vulnerability Management Competencies Data Governance, Information Assurance, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization Work Experience Roles at this level typically require a university / college degree, with 5+ years of industry-relevant experience. At least 3 years of prior management experience is typically required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered. ## Description At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company's success. As a Security Staff Manager - Vulnerability Management within PNC's Enterprise Information Security organization, you will be based in Pittsburgh, PA; Birmingham, AL; and Cleveland, OH PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position., This role requires strong interpersonal leadership, as the team regularly engages with development, infrastructure, and platform owners to address vulnerabilities; often in high-pressure, time-sensitive situations. Core Responsibilities * Lead and manage the enterprise vulnerability management function within the Global Security Fusion Center * Serve as the central point of contact for all vulnerability-related risk across PNC * Guide the team in rapid decision-making, risk assessment, and prioritization of remediation activities * Make and communicate risk-based decisions in fast-moving, ambiguous situations * Partner with risk leaders and senior management to clearly communicate vulnerability exposure and remediation status * Coordinate enterprise-wide response to newly published vulnerabilities (e.g., software, platforms, enterprise tools) to ensure timely patching and mitigation * Apply out-of-the-box thinking to address novel or unanticipated security scenarios * Operate with a fire-prevention mindset, while responding with urgency similar to active security incidents * Determine vulnerability applicability, drive remediation ownership, and ensure weaknesses are resolved as quickly as possible, PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be: * Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions. * Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework. PNC also has fundamental expectations of our people managers. As a manager of talent in PNC, you will be expected to: * Include Intentionally - Cultivates diverse teams and inclusive workplaces to expand thinking. * Live the Values - Role models our values with transparency and courage. * Enable Change - Takes action to drive change and innovation that will transform our business. * Achieve Results - Takes personal ownership to deliver results. Empowers and trusts others in decision making. * Develop the Best - Raises the bar with every talent decision and guides the achievement of all employees and customers. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Data Governance in the Era of AI](https://www.wearedevelopers.com/videos/1622-data-governance-in-the-era-of-ai) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)