169 vulnerability program manager jobs at 136 companies in United States
2mo
Save
Mark Applied
Hide
2mo
Vulnerability & Cloud Security Program Manager
California or Colorado or Connecticut or Florida or Georgia or Illinois or Kansas or Maine or Massachusetts or Maryland or New Jersey or North Carolina or New York or Oregon or Tennessee or Texas or Virginia or Washington or Austin or Tampa
$180k-$220k/yrHybridFull Time
NinjaOne: Privately held NinjaOne provides endpoint management, patching, backup, and remote access software for IT teams and MSPs.
5+ YOE5+ years in vulnerability management with 2+ years in cloud security; hands-on experience with CSPM and vulnerability tools (Wiz, AWS Inspector, Nessus, OpenSCAP); AWS security knowledge; bachelor's in related field or equivalent; CISSP/AWS/GIAC preferred.
Enterprise Vulnerability Assessment Program (EVAP)
Washington, District of Columbia, United States
$162k-$195k/yrOnsiteFull Time
ECS FederalEFOR: Federal segment of Everforth delivering technology and engineering solutions.
Requires vulnerability assessment and management experience using Tenable, scanning enterprise systems and networks, knowledge of Windows, RHEL, security infrastructure, vulnerability frameworks, and strong communication skills.
Paul, Weiss, Rifkind, Wharton & Garrison LLP: Private global law firm serving corporations, asset managers and financial institutions with corporate, litigation and restructuring advice.
3+ YOELead enterprise vulnerability and patch management program; 3+ years vulnerability/patch management experience; familiarity with Tenable, Qualys, Rapid7, WSUS, SCCM, Intune; risk-based frameworks (CVSS, EPSS, CISA KEV); ability to obtain Secret clearance; relevant security certifications a plus.
Southern Glazer's Wine & Spirits: North America's beverage alcohol distribution leader.
10+ YOE3+ MgmtLead enterprise vulnerability management program; 10+ years cybersecurity experience with 5+ years leading vulnerability/exposure programs and 3+ years people leadership; strategic, analytical, and communication skills.
Principal Technology Compliance Program Manager - Vulnerability Management
SeaTac, Washington, United States
$141k-$212k/yrOnsiteFull Time
Alaska AirlinesNYSE: ALK: U.S. passenger airline serving travelers across North America, Latin America, Asia, the Pacific, and Europe.
7+ YOE7+ years in IT security and compliance, bachelor\u0002s or equivalent, project management experience, knowledge of PCI/HIPAA/NIST/ISO, experience with vulnerability management and strong communication skills.
K2Share: Veteran-owned cybersecurity consultancy and managed security services provider serving federal and state government agencies.
6+ YOE2+ MgmtBachelor's degree or equivalent experience; 6+ years in vulnerability management, including 2+ years leading enterprise programs; vulnerability platforms, risk prioritization, remediation coordination, reporting, POA&M, and NIST knowledge.
Tenable, Qualys, Rapid7, Microsoft Defender Vulnerability Management, Azure, Microsoft 365, AWS, SIEM, EDR, SBOM, POA&M, NIST
Dark Wolf Solutions: Private IT consultancy delivering cybersecurity, software, cloud, data, and mission-engineering services to defense and intelligence customers.
6+ YOE6+ Mgmt12+ years supporting DoD,6+ years program management,BS in CS/Engineering or 3+ years experience in lieu,Secret clearance,technical leadership,knowledge of UAV/embedded vulnerabilities preferred.
Southern Glazer's Wine & Spirits: North America's beverage alcohol distribution leader.
10+ YOE3+ MgmtBachelor's degree or equivalent,10+ years cybersecurity experience with 5+ years leading vulnerability/exposure programs and 3+ years people leadership; CISSP or similar preferred; scripting skills; strong risk, reporting, and remediation experience.
Qnity ElectronicsNYSE: Q: Materials and solutions for advanced electronics and high-tech industries.
Bachelor's degree in cybersecurity, IT, computer science, or related field; 8+ years of cybersecurity experience, including 5+ years in vulnerability or exposure management; enterprise program leadership required.
Tenable, Wiz, ServiceNow, Recorded Future, Microsoft Power BI, CMDB, IPAM, NIST CSF, CIS Controls, PCI, ISO 27001
TestPros: Independent IT compliance firm serving federal, commercial, and enterprise organizations with cybersecurity, accessibility, and privacy assessments.
10+ YOEBachelor's degree, 10+ years managing federal cybersecurity programs/contracts, oversight of RMF/ATO/continuous monitoring/vulnerability management, experience managing budgets and staff, strong leadership and communications, active Secret clearance required.
Boston Government Services: Private engineering, technology, and cybersecurity firm serving the federal government and commercial energy sectors.
Bachelor's degree, experience supporting federal cybersecurity or IT program operations, knowledge of FISMA and NIST RMF, experience with vulnerability management and incident response, strong communication and coordination skills, U.S. citizenship required.
Palantir TechnologiesNYSE: PLTR: Builds software that empowers organizations to integrate and analyze data.
Proven success managing complex security or software development programs, strong communication and judgment, familiarity with threat detection, vulnerability management, incident response, and cloud security concepts.
SAS: Global leader in analytics, AI, and data management software.
5+ YOEUS citizen required; 5+ years information security experience; Bachelor’s in CS/Engineering or equivalent; hands-on Tenable/Rapid7/Qualys; vulnerability management and remediation experience; programming (Python/Perl/Bash) and ServiceNow familiarity.
Fivetran: Automated data movement and integration platform for organizations.
5+ YOE5+ years in technical program management focused on security engineering, vulnerability management, cloud and application security; requires security domain expertise, scripting, cross-functional collaboration, and SAST/DAST experience.
Bash, Python, JavaScript, BigQuery, Looker, Sigma, Microsoft Azure, AWS, Google Cloud Platform (GCP), Terraform, Docker, Kubernetes, GitHub, Buildkite, SonarQube, Grafana, Prisma, Snyk, Signal Sciences, AI Tools, SAST, DAST, IDS/IPS, OWASP, Application Security Verification Standard (ASVS)
Sr. Technical Program Manager, Cybersecurity Remediation
Cambridge, Massachusetts, United States
$146k-$234k/yrHybridFull Time
ModernaNASDAQ: MRNA: Biotechnology focused on mRNA-based medicine and vaccine development.
8+ YOE8+ years technical program or cybersecurity program management experience; experience leading cross-functional remediation programs, vulnerability management, incident/audit remediation, metrics and executive reporting.
vulnerability management platforms, GRC tools, NIST, ISO 27001, CIS
Criterion Systems: Tribally owned cybersecurity and IT services serving U.S. federal agencies with cloud, infrastructure, and systems engineering.
8+ YOE3+ MgmtRequires 8+ years of cybersecurity experience, 4+ years of vulnerability management, 3+ years leading analysts or enterprise programs, Tenable expertise, ServiceNow experience, cloud security experience, and stakeholder briefing skills.
Senior Technical Program Manager, Product Security
Seattle or Chicago or Alaska or Hawaii or Maine or Mississippi or North Dakota or South Dakota or Vermont or West Virginia or Wyoming
$146k-$207k/yrHybridFull Time
DocuSignNASDAQ: DOCU: Provides intelligent agreement management and e-signature software solutions.
8+ YOE8+ years related experience with a bachelor's degree or 6+ with a master's; technology, computer science, or cybersecurity degree; product security, secure SDLC, threat modeling, vulnerability management, frameworks, and cross-functional program leadership.
Senior Technical Program Manager, Leo Security, Leo Security - METALS
Redmond, Washington, United States
$149k-$201k/yrOnsiteFull Time
AmazonNASDAQ: AMZN: Multinational technology focused on e-commerce and cloud computing.
5+ YOE5+ years technical program management with engineering teams; experience managing cross-functional programs, triaging security risks/vulnerabilities, knowledge of cloud (AWS) and security domains; US person required under export control.
Senior Technical Program Manager, DGX Cloud - Trust Services
Santa Clara or Seattle
$200k-$322k/yrOnsiteFull Time
NVIDIANASDAQ: NVDA: Computing platform for AI and accelerated graphics.
12+ YOE12+ years TPM experience driving complex infrastructure, trust/security, compliance, or platform programs; deep understanding of firmware/platform integrity, attestation, vulnerability and secrets management; proficiency with Jira and Confluence.
Santa Clara Family Health Plan: Public, nonprofit health plan serving Santa Clara County residents through Medi-Cal and Medicare coverage.
2+ YOEBachelor's degree or equivalent; minimum 2 years serving vulnerable members; knowledge of Medicare/Medi-Cal/CMS/DHCS/DMHC; project management, training, auditing, and strong communication and analytical skills; proficiency with Microsoft Office and related tools.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft Visio, Microsoft Project, Microsoft Outlook