CareerPlanSign in

Lead InfoSec Engineer, Vulnerability Management

New York, New York💼 Full-time💰 $125,000–$125,000🗓 2026-07-20 → 2026-09-25

Core

Lead enterprise-wide vulnerability management lifecycle across infrastructure, cloud, and application environments, providing strategic oversight and risk-based prioritization to protect critical business assets.

Role type

Senior IC InfoSec Engineer (Vulnerability Management)

Builds

Enterprise vulnerability management programs, remediation frameworks, and executive reporting dashboards

Domain

Information Security / Cybersecurity

Deliverable

production ML models | product features | dashboards & analysis | client delivery | infrastructure

Required skills

Vulnerability management lifecycle expertise, CVE/CVSS/CWE framework knowledge, enterprise vulnerability platform proficiency, application security testing (DAST/SAST), risk assessment and prioritization, stakeholder alignment without direct authority, executive reporting and metrics development

Preferred skills

Cloud environment security assessment, security analytics and visualization (Power BI/Tableau), NIST Cybersecurity Framework and ISO 27001 knowledge, emerging technology risk management (AI/ML, cloud)

Technologies

Qualys, Tanium, Rapid7, Fortify, Checkmarx, Veracode, Power BI, Tableau

Responsibilities

Lead enterprise-wide vulnerability management lifecycle across infrastructure, cloud, and application environments; Drive cross-functional collaboration for timely vulnerability remediation; Develop comprehensive reporting and metrics programs for executive leadership; Mentor junior security professionals; Support regulatory compliance and audit activities; Establish and monitor KPIs for vulnerability remediation

Seniority

Senior, hands-on IC with leadership influence

Sourced via icims · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.