1

Director Vulnerability Management Analyst Jobs (NOW HIRING)

Vulnerability Management Analyst Location: Hanscom AFB, MA Clearance: Secret Program: BLITS 3.0 ... categories (1) direct actions in support of Hanscom Air Force Base (HAFB) and geographically ...

Vulnerability Management Analyst Location- Joint Base Andrews, MD Clearance- Secret Certifications- CompTIA Security+ or equivalent About TIME Systems At TIME Systems, we are at the forefront of ...

We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology ...

... Management, and Business Transformation. * Perform vulnerability scanning, assessment, and remediation tracking using ACAS (Nessus/Security Center), ARAD (Tanium), or similar tools. * Analyze scan ...

We are seeking a Vulnerability Management Analyst (Tenable/Nessus & Metrics ) to support vulnerability tracking, remediation coordination, and security metrics reporting in a federal technology ...

next page

Showing results 1-20

Director Vulnerability Management Analyst information

What is the difference between Director Vulnerability Management Analyst vs Vulnerability Management Analyst?

AspectDirector Vulnerability Management AnalystVulnerability Management Analyst
CertificationsCertified Ethical Hacker (CEH), CISSP, CISACompTIA Security+, CEH, GIAC certifications
Work EnvironmentStrategic planning, team leadership, policy developmentOperational tasks, vulnerability scanning, reporting
ResponsibilitiesOversees vulnerability programs, manages teams, aligns security strategiesPerforms vulnerability assessments, analyzes findings, supports remediation

The main difference is that the Director Vulnerability Management Analyst focuses on strategic oversight, leadership, and policy development, while the Vulnerability Management Analyst handles day-to-day vulnerability assessments and technical analysis. The director role involves higher-level management and planning, whereas the analyst role is more technical and operational.

More about Director Vulnerability Management Analyst jobs

What cities are hiring for Director Vulnerability Management Analyst jobs?

Cities with the most Director Vulnerability Management Analyst job openings:

What are the most commonly searched types of Vulnerability Management Analyst jobs?

The most popular types of Vulnerability Management Analyst jobs are:

What states have the most Director Vulnerability Management Analyst jobs?

States with the most job openings for Director Vulnerability Management Analyst jobs include:

What are popular job titles related to Director Vulnerability Management Analyst jobs?

For Director Vulnerability Management Analyst jobs, the most frequently searched job titles are:

Infographic showing various Director Vulnerability Management Analyst job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 84% Full Time, 13% Part Time, and 2% Contract. Highlights an 86% Physical, 2% Hybrid, and 12% Remote job distribution.

Director, Vulnerability Management

Finastra

Atlanta, GA • On-site

Full-time

Medical, Life, Retirement, PTO

Posted 13 days ago


Key responsibilities

  • Own and mature the enterprise vulnerability management program across infrastructure, endpoints, cloud platforms, applications, containers, and third-party technologies.

  • Establish risk-based prioritization methodologies, define standards, operational procedures, remediation SLAs, and governance frameworks, and drive accountability for remediation efforts.

  • Lead enterprise response efforts for critical vulnerabilities, zero-day threats, and actively exploited security issues.


Job description

Who are we?


At Finastra, we're a global leader in financial services software, dedicated to expanding access to financial services and shaping what's next for the industry. Our technology powers missioncritical solutions across Lending, Payments and Universal Banking, supporting over 7,000 customers, including 80% of the world's top 50 banks, in more than 110 countries.

Position Overview

We areseekingan experienced and strategicDirector of Vulnerability Managementto lead the organization's efforts toidentify, prioritize, remediate, and govern cybersecurity vulnerabilities across infrastructure, cloud environments, applications, and internally developed products.

This leader willbe responsible foradvancing a mature, risk-based vulnerability management program while partnering closely with Engineering, Product, Architecture, Infrastructure, DevOps, and Security Operations teams to embed security throughout the software development lifecycle. The successful candidate will combine strong technicalexpertise, program leadership, and stakeholder management skills to reduce enterprise risk and enable secure business growth.

Key Responsibilities

Enterprise Vulnerability Management

  • Own and mature the enterprise vulnerability management program across infrastructure, endpoints, cloud platforms, applications, containers, and third-party technologies.

  • Establish risk-based prioritization methodologies that consider exploitability, business criticality, threat intelligence, and asset exposure.

  • Define andmaintainvulnerability management standards, operational procedures,remediationSLAs, exception processes, and governance frameworks.

  • Drive accountability for remediation efforts and ensuretimelyresolution of critical and high-risk vulnerabilities.

  • Lead executive reporting and board-level metrics related to vulnerability exposure, remediation performance, and cyber risk reduction.

  • Coordinate enterprise response efforts for critical vulnerabilities, zero-day threats, and actively exploited security issues.

Program Governance & Risk Management

  • Collaborate with Risk, Compliance, Audit, Privacy, and Legal teams to ensure alignment with regulatory and industry requirements.

  • Manage vulnerability exception processes and risk acceptance frameworks.

  • Support regulatory examinations, customer security assessments, internal audits, and external audits.

  • Develop andmaintainmeaningful KPIs and KRIs thatdemonstrateprogram effectiveness and risk reduction.

Leadership & Organizational Development

  • Build, lead, and mentor a high-performing team of vulnerability managementprofessionals.

  • Foster strong partnerships across Engineering, Infrastructure, Operations, and business leadership teams.

  • Establish a culture of accountability, collaboration, innovation, and continuous improvement.

  • Provide strategic guidance and subject matterexpertiseto executive leadership on emerging threats, vulnerability trends, and secure product development practices.

Required Qualifications

Education

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, ora relateddiscipline.

  • Equivalentcombination of education and relevant experience will be considered.

Experience

  • Progressive cybersecurity experience, including vulnerability management, application security, product security, or related security disciplines.

  • Leadership experience managing security teams, programs, or enterprise initiatives.

  • Demonstrated success leading vulnerability management programs in large-scale enterprise environments.

  • Experience partnering with software engineering organizations and implementing secure development practices.

  • Strong background in cyber risk management, governance, and executive communications.

Technical Expertise

  • Deep understanding of vulnerability management frameworks, CVSS, exploitability analysis, threat intelligence integration, and remediation prioritization.

  • Strong knowledge of secure software development practices and application security principles.

  • Experience with vulnerability management and application security platforms such as Tenable, Qualys, Rapid7, Wiz, Prisma Cloud, Microsoft Defender, GitHub Advanced Security,CodeQL, Veracode,Checkmarx, or similar solutions.

  • Familiarity with cloud environments, containers, Kubernetes, CI/CD pipelines, APIs, and modern software architectures.

  • Ability to communicate technical risks effectively to both technical and non-technical audiences.

Certifications (Preferred)

  • CISSP

  • CISM

  • Relevant cloud security certifications

Preferred Qualifications

  • Experience leading Product Security orDevSecOpstransformation initiatives.

  • Experience implementing secure-by-design principles within enterprise software development environments.

  • Familiarity with software supply chain security and emerging secure software development regulations.

  • Experience supporting highly regulated industries, including financial services, healthcare, insurance, or critical infrastructure sectors.

  • Experienceleveragingautomation and AI-driven security capabilities to improve vulnerability management and security operations.

Leadership Competencies

The ideal candidate willdemonstrate:

  • Strategic thinking and business acumen.

  • Strong executive presence and communication skills.

  • Ability to influence without direct authority.

  • Data-driven decision-making and risk prioritization.

  • Effective stakeholder management across technical and business functions.

  • A commitment to talent development, inclusiveness, and continuous improvement.

Success Measures

Success in this role will be measured through:

  • Reduction of enterprise vulnerability exposure and risk.

  • Improvement in remediation performance and SLA compliance.

  • Increased adoption of secure development practices across engineering teams.

  • Enhanced visibility and reporting of cyber risk to executive leadership.

  • Successful integration of security into product and technology delivery processes.

  • Positive audit, regulatory, and customer security assessment outcomes.

We are proud to offer a range of incentives to our employees worldwide. These benefits are available to everyone, regardless of grade, and reflect the values we stand for:

Flexibility: Enjoy unlimited vacation, subject to local regulations and business priorities. Benefit from hybrid working arrangements and inclusive policies such as paid time off for voting, bereavement, and sick leave.

Wellbeing: Access confidential onetoone support through our Employee Assistance Program, connect with our network of Wellbeing Champions and Gather Groups, and take part in monthly events and initiatives designed to help you thrive-inside and outside of work.

Health & Financial Security: Medical, life and disability insurance, retirement plans, lifestyle, and other benefits.*

Sustainability: Paid time off for volunteering and donationmatching opportunities to support causes that matter to you.

Inclusion: Get involved in our inclusion communities, such as Count Me In, Culture@Finastra, Proud@Finastra, Disabilities@Finastra, and Women@Finastra-open to everyone who wants to participate and contribute.

Career Development: Access online learning and accredited courses through our Skills & Career Navigator tool.

Recognition: Take part in our global recognition program, Finastra Celebrates, and share your voice through regular employee surveys that help shape our culture and ways of working.

*Specific benefits may vary by location.

At Finastra, each individual is unique-bringing their own ideas, perspectives, cultural backgrounds, and experiences. We learn from one another, value what makes us different, and create an environment where everyone feels included, supported, and able to be their authentic selves.

Be unique. Be exceptional. Help us make a difference at Finastra.

Applicants for this position need to be located in posted location or their immediate surrounding areas. Due to the requirements of this position, this job posting is not available for, and Finastra will not be considering any applicants who currently reside in New York City or California.