Lead the enterprise Vulnerability Management and CDM program, directing scanning and prioritization strategies.
Coordinate remediation activities across system owners, engineering teams, and ISSOs to reduce cyber risk.
Develop executive metrics, dashboards, and reports to communicate vulnerability posture and operational risk trends.
True Zero Technologies is a veteran-owned small business that focuses on purposeful enablement of people and technology. Recognized as a Best Places to Work in 2023 and 2025, and listed on the Inc. 5000 fastest-growing companies, the company emphasizes a people-first culture and dedication to excellence.
You'll lead the VIPR & VMDR function, integrating vulnerability intelligence, detection, and response for customers across APJ/APAC.
You'll operate and tune vulnerability detection tools like Tenable, Qualys, and Rapid7, and automate pipelines using Python and REST APIs.
You'll build risk dashboards and executive briefings, and collaborate with Customer Success and Security Engineering to improve remediation metrics.
ServiceNow is the AI control tower for business reinvention, bringing together AI, data, and workflows to help 85% of the Fortune 500 work smarter. The company fosters an AI-native culture where technology and talent are unstoppable together.
Safeguard customer digital assets by leveraging expertise in vulnerability identification, security implementation, and incident response.
Collaborate with cross-functional teams to assess risks, formulate security strategies, and ensure compliance with industry standards.
Stay at the forefront of emerging cyber threats and trends to proactively detect and mitigate security breaches.
Check Point is a world-leading cybersecurity vendor that provides cutting-edge technologies and services to protect against sophisticated threats. The company has a global team of innovative employees and has been recognized by Time Magazine and Forbes as one of the best companies to work for.
RainFocus provides an industry-disrupting event management platform for Fortune 500 companies like Adobe, Cisco, and IBM. The company is well-funded, rapidly growing, and fosters a culture of innovation, teamwork, and fun.
Implement and enable Tenable's Exposure Management solutions to help organizations manage cyber risks.
Onboard Tenable technologies, following industry standards, to deliver customized solutions addressing vulnerabilities.
Provide consultative advice and build positive client relationships to ensure ongoing satisfaction and partnership.
Tenable is an exposure management company that helps organizations understand and reduce cyber risk. With over 40,000 clients globally, including 65% of the Fortune 500, the company fosters a culture of belonging, respect, and excellence.
Lead complex Global Vulnerability Management workstreams to advance Threat Exposure Management capabilities and transition to a Continuous Threat Exposure Management model.
Conduct hands-on vulnerability research, technical analysis, and security validation to eliminate false positives, characterize exploitability, and provide actionable remediation guidance.
Partner across Information Security and engineering teams to evolve platforms, integrations, and automation for improved discovery, prioritization, and remediation outcomes.
Sony Interactive Entertainment (SIE) is the company behind the PlayStation brand, delivering innovative gaming hardware and network services to over 100 million people worldwide. As a subsidiary of Sony Group Corporation, SIE is a dynamic and entertainment-focused organization that values innovation, excellence, and employee empowerment.
United States
Unlimited PTO
18w maternity
12w paternity
Manage a novel vulnerabilities pipeline, owning measurement, disclosure, and reporting of thousands of vulnerabilities weekly.
Coordinate across the industry with bodies like the Linux Foundation and CISA, and represent Chainguard externally.
Guide industry direction and work with AI model vendors to evolve software supply chain security.
Chainguard is the trusted source for open source, delivering hardened, secure, and production-ready builds of open source software. The company is venture-backed by leading investors and serves Fortune 500 enterprises and global industry leaders.
Responsible for daily incident management of customer incidents, including incident response and forensic analysis of compromised systems.
Formulate and direct incident response efforts, prioritize response actions, and create legible incident reports describing compromise vectors and attacker methodologies.
Build and maintain incident response plans, playbooks, and sandbox/test lab environments to evaluate malicious code.
We protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation with a prevention-first approach. We are recognized by TIME, Newsweek, and Forbes for our excellence and workplace culture, and we value ownership, curiosity, and solving complex problems.
Identify novel vulnerabilities in industrial products and control systems through strategic acquisition and rigorous analysis.
Develop detection signatures (Suricata, YARA, internal analytics) and partner with product engineering to close gaps in the Dragos Platform's vulnerability detection.
Serve as a trusted internal resource to threat intelligence and incident response teams, assessing in-the-wild exploits and integrating findings into broader threat intelligence.
Dragos is the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services to protect critical infrastructure. The company is a remote-first, mission-driven team across North America, Europe, the Middle East, and APAC, built on authenticity, transparency, and trust.
Design, implement, and maintain enterprise security infrastructure including firewalls, IDS/IPS, and SIEM solutions.
Lead cybersecurity strategy, incident response, and risk management aligning with business objectives.
Conduct vulnerability assessments, enforce security policies, and mentor colleagues to foster a culture of security awareness.
McNees Wallace & Nurick is a trusted, client-focused law firm delivering practical, results-driven legal solutions with integrity. With more than 170 attorneys and 350 professionals, the firm fosters a culture of authentic relationships, excellence, and balance.
Leads product security work across Black Duck's portfolio, including architecture reviews, threat models, vulnerability triage, and customer-facing security inquiries.
Maintains detection content in CrowdStrike NG-SIEM and Sumo Logic, contributes to SOAR automations, and coordinates vulnerability fixes with engineering teams.
Acts as an informal technical resource for less experienced team members, explains complex security topics to diverse stakeholders, and documents runbooks and SOPs.
Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. A recognized pioneer in application security with industry-leading tools and services, they partner with teams to maximize security and quality in DevSecOps.
Deploy, configure, and maintain endpoint detection and response, email security, and network security solutions.
Support incident response activities, including containment, remediation, and recovery efforts.
Collaborate with infrastructure, applications, and governance teams to implement security best practices.
New Era Technology securely connects people, places, and information with end-to-end technology solutions at scale. With a global team of over 3,000 professionals, they foster a team-oriented culture prioritizing personal and professional development.
Analyze enterprise vulnerability data to identify the highest priority cyber exposures across the NIH environment.
Correlate vulnerability findings with threat intelligence, exploit availability, and operational risk to improve remediation prioritization.
Collaborate with incident responders, penetration testers, and security engineers to refine enterprise risk prioritization.
True Zero Technologies is a veteran-owned small business founded on the principle that enabling people and technology drives quality outcomes. We are a people-first company recognized as a Best Place to Work and on the Inc. 5000 list of fastest-growing companies.
Own deployment, configuration, and tuning of EDR platforms like CrowdStrike across endpoints and servers.
Manage SIEM platforms such as Splunk, developing detection rules and investigating alerts.
Lead SOC 2 Type II compliance operations, including maintaining control evidence and coordinating with auditors.
Volexity is a cybersecurity firm specializing in incident response and threat intelligence. The company values diversity and offers a collaborative culture with a focus on professional development.
Oversee daily vulnerability identification, triage, and reporting across AWS cloud assets and AI/LLM application stacks.
Leverage ACAS (Tenable.sc) and AWS security tools to evaluate threat vectors and ensure compliance with DISA STIG benchmarks.
Translate complex technical findings into actionable remediation guidance and executive briefings for government stakeholders.
Dark Wolf is a cybersecurity firm specializing in vulnerability management and cloud security for federal and DoD systems. The company maintains a collaborative, mission-focused culture with a team of cybersecurity professionals.
Lead, coach, and develop a team of security engineers and analysts, setting clear expectations and building capabilities.
Guide the team through vulnerability management, incident detection and response, and identity and access management.
Drive execution of multi-year security initiatives, partnering with senior stakeholders to develop policies and plans.
We create innovative learning materials and world-class guest experiences for teachers, parents, and children. Since 1954, we have grown into a global community with a thriving e-commerce business, multiple catalogs, over 50 stores, and a national sales force, and we invest in a diverse team of top talent.
Analyze and respond to advanced threats ranging from commodity phishing to zero-day exploits.
Monitor and triage alerts from network security monitoring, EDR platforms, and other log sources.
Create detailed incident reports and collaborate with threat intelligence and incident response teams.
Volexity is a cybersecurity company specializing in threat intelligence and incident response. They have a growing, industry-leading security operations team and value diversity and equal opportunity.
Monitor and analyze security events, lead incident response, and maintain SIEM and EDR tools.
Ensure compliance with HIPAA, HITECH, and other healthcare regulations through risk assessments and audits.
Conduct vulnerability scans, manage remediation, and support secure design reviews for systems and applications.
LUX Infusion reimagines infusion care to be more human, supportive, and connected. As a clinician-led, U.S.-based organization, we put people first with a commitment to inclusion, diversity, equity, and advancement (IDEA).
Lead investigation and response for security incidents, suspicious activity, and emerging threats.
Design, implement, and improve security monitoring, detection, and response capabilities across AWS.
Develop detection rules, conduct post-incident reviews, and partner with teams to strengthen security controls.
CoLab is an AI platform that helps mechanical engineering teams bring life-changing products to market faster by driving stronger engineering decisions. Founded in 2019 and based in St. John's, Newfoundland, CoLab has grown rapidly, earning recognition on Deloitte's Fast 50 and Fast 500 lists.
Conduct vulnerability assessments using tools like Tenable, Qualys, and Burp to identify security weaknesses.
Analyze scan results and produce detailed reports with remediation recommendations.
Collaborate with technical teams to ensure timely delivery of assessment results and effective risk reduction.
The company provides cybersecurity services including vulnerability assessment and risk management. It fosters a collaborative remote environment focused on continuous learning and professional growth.