Quick Overview
Seniority
Mid Senior
Work mode
Hybrid
Location
Tallahassee, FL, United States
Posted
4 days ago
SOC 2Stakeholder Management
Job Description
Job Title :Vulnerability Management Lead (Looking for W2 Candidates only)
Location: Remote
Experience: 8+ years in Cybersecurity / Vulnerability Management
Job Description:
We are seeking an experienced Vulnerability Management Lead / SME to lead the governance and risk management aspects of the enterprise vulnerability management program. The role will focus on vulnerability prioritization, governance, stakeholder management, executive reporting, compliance, and audit support.
Key Responsibilities
- Lead and maintain the enterprise vulnerability management governance framework, policies, standards, processes, and remediation SLAs.
- Establish risk-based vulnerability prioritization using factors such as CVSS, exploitability, asset criticality, business impact, and threat intelligence.
- Coordinate with Infrastructure, Cloud, Application, Network, Endpoint, and Security teams to drive timely vulnerability remediation.
- Manage vulnerability remediation tracking, escalations, exceptions, risk acceptance, and overdue vulnerabilities.
- Develop and present executive-level dashboards, KPIs, KRIs, and risk reports to cybersecurity leadership and senior management.
- Identify vulnerability trends, risk concentrations, and areas requiring management attention.
- Serve as the primary Vulnerability Management SME for internal and external stakeholders.
- Support internal, external, regulatory, and customer audits, including evidence collection and remediation of audit findings.
- Monitor emerging and actively exploited vulnerabilities and coordinate organizational risk assessments and response.
- Continuously improve vulnerability management processes, metrics, controls, and overall program maturity.
- Provide SME guidance on vulnerability management platforms such as Tenable, Qualys, Rapid7, Microsoft Defender, or equivalent technologies.
Required Skills
- 8+ years of cybersecurity or vulnerability management experience.
- Strong experience in vulnerability governance and risk-based prioritization.
- Excellent stakeholder management and executive communication skills.
- Experience with vulnerability KPIs, KRIs, SLAs, dashboards, and reporting.
- Experience supporting cybersecurity audits and compliance assessments.
- Strong understanding of CVE, CVSS, vulnerability lifecycle, remediation, exceptions, and risk acceptance.
- Working knowledge of NIST, CIS Controls, ISO 27001, SOC 2, or similar security frameworks.
- Strong analytical, communication, and program management skills.
Preferred Certifications: CISSP, CISM, CRISC, or equivalent cybersecurity certification.
Thanks,
Nancy
US IT Technical Recruiter
Similar jobs
- IN
Senior Mobile QA Automation Analyst
NewInfoVision, Inc.
Irving, TX🇺🇸Hybrid17 hours agoSwiftScrumAgile+9Technology - PD
Informatica IDMC developer
NewPurple Drive Technologies LLC
Charlotte, NC🇺🇸Hybrid17 hours agoSQLSQL ServerETL+1Technology - IR
Web Developer / Web Accessibility Specialist
NewIndus River Technologies Inc.
Atlanta, GA🇺🇸On-site17 hours agoCSSHTMLJavaScript+1Technology - DD
Senior Software Engineer
NewDexian DISYS
Bedford, NH🇺🇸Hybrid17 hours agoSASSSQLSpring+11Technology - TT
Vulnerability Management & Security Analyst with Security Clearance
NewTorch Technologies Inc.
Huntsville, AL🇺🇸$105k - $128k/yrOn-site17 hours agoTechnology - 3B
Sr Fullstack Engineer(AWS, React, Typescript, GitHub, GitHub Actions)
New3S Business Corporation Inc.
Des Moines, IA🇺🇸Hybrid17 hours agoNext.jsNode.jsAWS+9Technology