
Manager, Vulnerability Operations
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Lead the enterprise vulnerability management and continuous threat exposure program.
• Supervise the discovery, triage, risk prioritization, and remediation tracking of security vulnerabilities across multi-cloud, on-premises, and product environments.
• Take ownership of and enhance the enterprise vulnerability management lifecycle, strategy, and operating procedures.
• Manage routine and credentialed vulnerability scans across infrastructure, AWS/Azure cloud services, endpoints, and applications.
• Assess vulnerabilities using CVSS, EPSS, CISA Known Exploited Vulnerabilities (KEV), threat intelligence, and the criticality of business assets.
• Collaborate with system, network, and application engineering teams to establish SLAs, monitor remediation plans, and resolve POA&Ms.
• Oversee enterprise vulnerability platforms such as Tenable, Qualys, Rapid7, and Wiz.
• Enhance operational efficiencies through API-driven automation and scripting in Python/PowerShell.
• Create executive dashboards, KPIs, and exposure reduction metrics for leadership and compliance audits.
• Provide immediate exposure analysis and context regarding vulnerabilities during active cyber incident investigations.
• Connect security engineering with IT operations while working with cross-functional teams to lower risk exposure and ensure compliance.
• 5–7+ years of comprehensive experience in cybersecurity or IT operations.
• 3+ years in a senior operational position concentrating on vulnerability or exposure management.
• Extensive knowledge of vulnerability scanners and exposure management tools, including Tenable, Qualys, Rapid7, and Wiz.
• Familiarity with and practical experience in using Frontier AI models.
• Strong understanding of networking protocols, Windows/Linux operating systems, and cloud architecture.
• Excellent communication skills to convey complex technical risk information into insights suitable for executive levels.
• Preferred: CISSP, CISM, GIAC (GPEN, GEVA), or certifications specific to vendor platforms.
• Preferred: Experience in regulated sectors, including Financial Services, Healthcare, or adherence to Federal/NIST frameworks.
• Medical, dental, and vision coverage starting on day one.
• Basic life, accident, short-term and long-term disability, and business travel accident insurance.
• Aon Pooled Employer Plan (Aon PEP).
• 401(k) retirement savings plan.
• Investment options and financial education.
• Flexible Spending Accounts.
• Educational assistance programs.
• Paid holidays.
• Paid time off ranging from 20 to 35 days based on length of service.
• Family and medical leaves of absence.
• Paid parental leave.
• Commuting benefits.
• Employee Discount Program.
• Employee Assistance Program (EAP).
• Childcare benefits.
• Reasonable accommodations during the application or interview process.
Mercor
Mission Lane
ICF
The Cigna Group
Get handpicked remote jobs straight to your inbox weekly.