1

Vice President Vulnerability Management Jobs (NOW HIRING)

Vice President, Cyber Security

Austin, TX · On-site

$155K - $194K/yr

They are seeking a VP of Cybersecurity to oversee the organization's cyber defense strategy ... vulnerability management, and security audits. • Drive regulatory compliance and cloud security ...

VP Engineering

Los Angeles, CA · On-site

$194K - $250K/yr

Job Summary The Vice President Engineering leads the organization responsible for building ... vulnerability management. Lead engineering processes that safeguard customer data and support ...

VP Engineering

Los Angeles, CA · On-site

$194K - $250K/yr

Job Summary The Vice President Engineering leads the organization responsible for building ... vulnerability management. Lead engineering processes that safeguard customer data and support ...

VP Engineering

Los Angeles, CA

$194K - $250K/yr

Job Summary The Vice President Engineering leads the organization responsible for building ... vulnerability management. Lead engineering processes that safeguard customer data and support ...

Be Seen First

Our Dallas area client company is searching for a Global Vice President of Information Technology ... vulnerability management, IAM, and continuous improvement aligned with compliance and risk ...

... M workflows. By combining data, technology, and strategy, we deliver predictable and sustainable ... As we continue to scale, we are seeking a high-impact Vice President (VP) to lead strategic ...

next page

Showing results 1-20

Vice President Vulnerability Management information

See salary details

$43.5K

$157.5K

$277.5K

How much do vice president vulnerability management jobs pay per year?

As of Jun 17, 2026, the average yearly pay for vice president vulnerability management in the United States is $157,532.00, according to ZipRecruiter salary data. Most workers in this role earn between $115,000.00 and $190,000.00 per year, depending on experience, location, and employer.

What is the difference between Vice President Vulnerability Management vs Security Director?

AspectVice President Vulnerability ManagementSecurity Director
ResponsibilitiesOversees enterprise-wide vulnerability programs, sets strategic direction, manages teams, and collaborates with executive leadershipManages security operations, implements security policies, and oversees security teams at the organizational level
CredentialsTypically requires CISSP, CISA, or similar certifications; extensive experience in cybersecurity and vulnerability managementOften holds CISSP, CISM, or equivalent; strong background in security operations and management
Work EnvironmentStrategic, executive-level role often involving cross-department collaborationOperational role focused on day-to-day security management and incident response

The Vice President Vulnerability Management focuses on strategic oversight of vulnerability programs at an enterprise level, while the Security Director handles daily security operations and policy implementation. Both roles require relevant certifications and experience but differ mainly in scope and focus.

What does a Vice President of Vulnerability Management do?

A Vice President of Vulnerability Management oversees the strategy and execution of identifying, assessing, and mitigating security vulnerabilities across an organization’s systems and infrastructure. They lead teams responsible for vulnerability scanning, risk assessment, and remediation efforts, and collaborate with other IT and security leaders to ensure the company's assets are protected against threats. This role also involves developing policies, staying up-to-date with evolving cyber threats, and reporting on the organization's risk posture to executive leadership. Their work is critical in maintaining the security and compliance of the company.

How does a Vice President of Vulnerability Management typically collaborate with other departments to enhance organizational security?

A Vice President of Vulnerability Management works closely with IT, security operations, compliance, and risk management teams to identify, assess, and remediate vulnerabilities across the organization. This role often leads cross-functional meetings to prioritize remediation efforts, communicate risk levels, and align security initiatives with business objectives. Effective collaboration ensures that vulnerability management strategies are integrated into broader security and business processes, fostering a proactive security culture and supporting regulatory compliance. Regular interaction with executive leadership is also common, as reporting on risk posture and program effectiveness is a key responsibility.
What cities are hiring for Vice President Vulnerability Management jobs? Cities with the most Vice President Vulnerability Management job openings:
What are the most commonly searched types of Vulnerability Management jobs? The most popular types of Vulnerability Management jobs are:
What states have the most Vice President Vulnerability Management jobs? States with the most job openings for Vice President Vulnerability Management jobs include:
Infographic showing various Vice President Vulnerability Management job openings in the United States as of June 2026, with employment types broken down into 17% Locum Tenens, 66% Full Time, and 17% Part Time. Highlights an 80% Physical, 6% Hybrid, and 14% Remote job distribution, with an average salary of $157,532 per year, or $75.7 per hour.

Vice President - Technology (Vulnerability Management & Security Engineering)

Park Hill Group LLC

New York, NY • On-site

Full-time

This job post has expired 2 days ago. Applications are no longer accepted.


Job description

PJT Partners is a global advisory-focused investment bank. Our team of senior professionals delivers a wide array of strategic advisory, shareholder advisory, restructuring and special situations and private fund advisory and placement services to corporations, financial sponsors, institutional investors and governments around the world. We offer a unique portfolio of advisory services designed to help our clients achieve their strategic objectives. We also provide, through PJT Park Hill, private fund advisory and fundraising services for alternative investment managers, including private equity funds, real estate funds and hedge funds.

From the beginning, PJT Partners has firmly believed that having the best people is key to building an enduring franchise. Our perspective was, and remains, that a great team brings in both top tier clients and appeals to a wide-range of diverse, talented colleagues. Fostering an inclusive culture, which welcomes differing perspectives and beliefs, enables us to provide the best advice and insights to our clients.

To learn more about PJT Partners, please visit our website atwww.pjtpartners.com.

Responsibilities

The Technology department at PJT is responsible for creating and continuously improving a robust and secure technology foundation that supports the firm's business activities. Underpinning that, the Cybersecurity function ensures that the firm accurately identifies, investigates, and remediates incidents and evaluates applicable controls related to the firm's technology. As the technology landscape at PJT is undergoing significant change, the Cybersecurity function is also evolving to help enable that change.

We are seeking an experienced, hands-on Cybersecurity Professional to own and drive the firm's vulnerability management and patching program. This is an execution-focused role - the ideal candidate will be equally comfortable building strategy and rolling up their sleeves to conduct scans, validate remediations, coordinate fixes directly with engineering and infrastructure teams, and provide reporting and metrics on remedial actions and SLA-adherence.

In addition to vulnerability management, this individual will serve as a critical incident response resource, providing coverage during hours when the primary SOC team may not be available. This includes triaging and responding to critical-severity incidents, escalating appropriately, and ensuring continuity of response without gaps.

The candidate should bring a solutions-oriented, investigative mindset, comfort in a fast-paced environment, and the ability to build strong relationships across Technology and relevant business functions.

Vulnerability Management (Hands-On Execution)

  • Conduct regular vulnerability assessments of all systems, applications, and infrastructure
  • Execute vulnerability scans using tools such as Nessus, Qualys, or Rapid7; perform or coordinate penetration testing and security assessments.
  • Analyze vulnerability data and issue actionable remediation, mitigation, or risk-acceptance recommendations calibrated to the firm's risk profile.
  • Drive remediation directly with engineering, infrastructure, and application teams - tracking findings from discovery through to validated closure.
  • Validate all remediations to confirm findings are fully resolved.
  • Develop and maintain meaningful vulnerability metrics and dashboards for senior leadership, incorporating risk-based scoring, SLA adherence, and trend analysis.
  • Work with cross-functional teams to embed vulnerability management considerations into the design, development, and testing of new systems and applications.
  • Coordinate with external vendors and partners to optimize detection quality, validate findings, and improve remediation workflows.

Program Management & Governance

  • Develop and maintain security policies, procedures, and standards aligned to industry best practices (NIST, CIS, ISO) and PJT policy requirements.
  • Support audit evidence collection and manage remediation timelines for compliance-related findings.
  • Communicate security risks and program status to management and stakeholders; provide clear, prioritized recommendations.
  • Understand and effectively balance risk versus business operability in all remediation decisions.
  • Provide leadership and mentorship to junior security team members; manage and direct external teams as needed.

Engineering

  • Support and maintain the vulnerability management platform infrastructure, including scanner and agent configuration, and integration with downstream ticketing and reporting systems.
  • In support of the overall PJT security program, assist with project work on security infrastructure, including SIEM, EDR, and related tooling - contributing engineering effort as priorities require.
Qualifications

PJT Partners seeks to hire individuals who are highly motivated, intelligent and have demonstrated excellence in prior endeavors. In addition, qualified candidates will possess the following:

Education & Experience

  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • 7-10+ years of experience in information security, with a strong focus on vulnerability management, secure design review, patch operations, and incident response.
  • Demonstrated experience running a hands-on vulnerability management program - not solely in an oversight or program management capacity.
  • Experience providing incident response coverage, including participation in on-call rotations or extended-hours response.

Technical Skills

  • Proficiency with vulnerability management platforms such as Nessus, Qualys, or Rapid7; ability to operate these tools directly, not just interpret reports.
  • Knowledge of cloud security posture management (CSPM) platforms such as Wiz or Microsoft Defender for Cloud, and exposure management workflows.
  • Strong technical skills in vulnerability scanning, patch management, and network security protocols.
  • Working knowledge of operating systems (Windows, Linux) and web application security.
  • Familiarity with SIEM tools for alert triage and incident investigation.
  • Scripting and automation skills in PowerShell or Python; experience with workflow tools such as ServiceNow or JIRA.

Frameworks & Standards

  • Working knowledge of security frameworks including NIST CSF, CIS Controls, and ISO 27001.
  • Understanding of incident response frameworks (e.g., NIST SP 800-61, PICERL) and how vulnerability management integrates into the IR lifecycle.

Soft Skills & Availability

  • Excellent communication and interpersonal skills; able to convey complex security issues to both technical and non-technical audiences.
  • Strong leadership and mentorship abilities; demonstrated experience managing cross-functional teams and external consultants.
  • Ability to work independently, manage competing priorities, and adapt to rapidly shifting demands.
  • Willingness and ability to provide extended-hours incident response coverage as required by the role, including off-hours and weekend on-call responsibilities.

Expected annualized base salary of $150,000 - $175,000.

This range represents the low and high ends of the expected annualized base salary for this position. The specific base salary received by any employee will be informed by a number of factors, including but not limited to, role level and scope, location, candidate's relevant qualifications, skills and experience.

Base salary is one component of PJT Partners' compensation structure. In addition to base salary, PJT Partners' compensation structure may include additional rewards, incentives and benefits, including but not limited to, a discretionary bonus component.

PJT is an equal opportunity employer. We do not discriminate on the basis of, and will consider all qualified applicants for employment without regard to race, color, religious creed, religion, sex, pregnancy, national origin, ancestry, citizenship status, age, marital or partnership status, sexual orientation, gender identity expression, disability, medical condition, genetic information or predisposition, veteran or military status, status as a victim of domestic violence, a sex offense or stalking, or any other category protected by law. PJT Partners also complies with all applicable laws with regard to providing reasonable accommodation of disabilities to applicants. For more information or to request an accommodation, please contact Human Resources.

California Applicants:PJT Partners will consider for employment qualified applicants with arrest and/or conviction records in a manner consistent with applicable law including, but not limited to, the San Francisco Fair Chance Ordinance and/or Los Angeles Fair Chance Initiative for Hiring Ordinance.

Applicant Privacy Notice:

View our Applicant Privacy Notice https://info.pjtpartners.com/PJT_Global_Applicant_Privacy_Notice here. If you are a California resident, please refer to our California Applicant Privacy Notice https://info.pjtpartners.com/California_Applicant_Privacy_Notice for further information.


*In order to be considered, please ensure your resume/CV is submitted in PDF format.