Senior Manager - Vulnerability Management

Overview

On Site
$140,000 - $190,000 annually
Full Time

Skills

Mentorship
Amazon Web Services
Microsoft Azure
OCI
Optimization
Cloud Computing
SaaS
Collaboration
Reporting
Regulatory Compliance
Auditing
CISSP
CISM
Certified Ethical Hacker
ISACA
CISA
Information Security
Vulnerability Management
Enterprise Networks
IaaS
Linux
Microsoft Windows
Management
Vulnerability Scanning
Configuration Management
Qualys
Nessus
ISO/IEC 27001:2005
OWASP
MBA
Cyber Security
Leadership
Finance
Health Care
Telecommunications
Identity Management
Computer Hardware
Artificial Intelligence
Messaging

Job Details

RESPONSIBILITIES:
Kforce has a client in Atlanta, GA that is seeking a Senior Manager - Vulnerability Management.

Summary:
The Senior Manager of Vulnerability Management will be responsible for delivering comprehensive internal and external vulnerability scanning, monitoring configuration security posture, and managing the organization's exposure to critical threats across cloud and on-premise environments. This role reports to the Senior Director of Vulnerability and Control Monitoring and will work cross-functionally with product, infrastructure, security, compliance, and risk teams.

Duties:
* The Senior Manager will lead and mentor a cybersecurity team responsible for: Ongoing vulnerability scanning and reporting across external and internal assets in multi-cloud and on-prem environments; Monitoring and alerting on configuration compliance and deviations in public cloud environments (e.g., AWS, Azure, OCI); Maintaining awareness of and addressing the external attack surface
* Oversee the use and optimization of cloud and SaaS posture management tools (CSPM, SSPM) to ensure critical security configurations are in place and effective
* Collaborate with engineering and architecture teams to establish and maintain standards for patching and remediation of vulnerabilities across all systems
* Lead coordinated responses to urgent threats and zero-day vulnerabilities, ensuring timely engagement from stakeholders across infrastructure and application teams
* Track and report on vulnerability remediation progress, partnering with engineering to offer actionable guidance and alternatives when necessary
* Produce consistent, executive-level reporting on the state of vulnerabilities and misconfigurations across the global environment
* Support compliance, risk, and audit teams in meeting regulatory and contractual obligations tied to vulnerability and configuration management

REQUIREMENTS:
* Bachelor's degree in Cybersecurity, Computer Science, or a related discipline
* At least one industry-recognized certification (e.g., CISSP, GIAC, CISM, CEH, CRISC, CISA)
* Minimum of 8 years of experience in information security or related field, including at least 3 years in a leadership capacity focused on vulnerability management
* Strong understanding of enterprise network architecture, cloud infrastructure, and endpoint environments (Linux, Windows, Mac)
* Demonstrated ability to lead cross-functional initiatives and influence without direct authority
* Deep knowledge of vulnerability scanning, configuration management, and attack surface reduction tools (e.g., Tenable, Qualys, Rapid7, Veracode, Nessus, Shodan)
* Familiarity with frameworks and standards such as NIST, ISO 27001, CIS Benchmarks, OWASP
* Proven record of operational and project-based execution in complex environments

Preferred Qualifications:
* Advanced degree (e.g., MS, MBA) in cybersecurity, IT, or related field
* 5+ years of experience in senior-level cybersecurity leadership
* Prior experience in high-regulation or critical infrastructure industries (e.g., finance, defense, healthcare, telecommunications)
* Exposure to machine identity management and hardware security modules (HSMs)

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

This job is not eligible for bonuses, incentives or commissions.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

By clicking ?Apply Today? you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About Kforce Technology Staffing