Logo for Fifth Third Bank

Director, Cyber Exposure & Vulnerability Management

Role overview

Qualifications

  • 10+ years of experience in cybersecurity, technology risk, security operations, vulnerability management, or related disciplines
  • Strong knowledge of vulnerability management practices, risk prioritization methodologies, and cyber risk governance
  • Proven ability to influence outcomes without direct authority
  • Experience presenting to senior leaders and executive audiences

Responsibilities

  • Lead Enterprise Vulnerability Remediation program, including governance, reporting, escalation, and stakeholder coordination
  • Coordinate enterprise response to significant technology exposures, including zero-day vulnerabilities and vendor advisories
  • Translate vulnerability, threat, and exposure data into actionable risk decisions
  • Define strategy, roadmaps, metrics, and maturity objectives for the Remediation and Exposure Management functions

About the company

Fifth Third Bank logo

Fifth Third Bank

Banking

At Fifth Third Bank, everything we do is rooted in our purpose: to improve the lives of our customers and the well-being of our communities. Since our founding in 1858, weโ€™ve been committed to creating a better financial experience by empowering our customers and clients to achieve what matters most. Our unified strength is grounded in the individual passion and diversity of more than 20,000 employees who work collaboratively to deliver a better tomorrow to everyone we serve. We offer a strong culture, opportunities for growth 401k match, wellness options, comprehensive insurance plans and additional resources you need to build a lasting and rewarding career path here. Headquartered in Cincinnati, Ohio, we are among the largest money managers in the Midwest. We operate four main businessesโ€”Commercial Banking, Branch Banking, Consumer Lending, and Wealth & Asset Managementโ€”and a network of financial centers in Ohio, Kentucky, Indiana, Michigan, Illinois, Florida, Tennessee, West Virginia, Georgia, North Carolina and South Carolina. Consumers also have access to approximately 54,000 Fifth Third fee-free ATMs across the United States. Fifth Third Bancorp is a diversified financial services company and is the indirect parent company of Fifth Third Bank, National Association, a federally chartered institution. Explore Fifth Third career opportunities at: https://www.53.com/content/fifth-third/en/careers.html Fifth Third Bank, N.A., Member FDIC. Fifth Third Bank is proud to be an affirmative action/equal opportunity employer. M/F/D/V

Company details

Company typeXLarge
IndustryBanking
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Make banking a Fifth Third betterยฎ
We connect great people to great opportunities. Are you ready to take the next step? Discover a career in banking at Fifth Third Bank.

About the Role

Fifth Third Bank is seeking a Director of Cyber Exposure & Vulnerability Management to lead two critical cybersecurity functions: Enterprise Vulnerability Remediation and Exposure Analysis & Coordination.

This leader is responsible for reducing enterprise cyber risk by driving vulnerability remediation and coordinating the response to significant technology exposures across the Bank. The role combines strategic leadership and operational execution, partnering with senior technology leaders to prioritize remediation efforts, improve exposure management processes, and strengthen the Bank's cybersecurity posture.

In addition to leading the vulnerability remediation program, this Director will help mature a growing Exposure Analysis & Coordination capability focused on rapidly assessing and coordinating the Bank's response to emerging cybersecurity risks that require urgent action and cross-functional engagement.

This is a highly visible leadership role that partners closely with Information Security, Technology, Risk Management, and executive leadership.

What You'll Do

Lead Enterprise Vulnerability Remediation

  • Lead the enterprise vulnerability remediation program, including governance, reporting, escalation, and stakeholder coordination.

  • Partner with application, infrastructure, cloud, and security teams to drive timely risk reduction.

  • Establish remediation priorities, performance metrics, and service-level expectations.

  • Support audits, regulatory examinations, and enterprise risk governance activities.

  • Continuously improve remediation workflows, reporting, and prioritization processes.

Lead Exposure Analysis & Coordination

  • Lead the Bank's Exposure Analysis & Coordination function.

  • Coordinate enterprise response to significant technology exposures, including:

    • Zero-day vulnerabilities

    • Emerging and pre-CVE threats

    • Vendor advisories

    • Third-party technology exposures

    • Cloud security exposures

  • Drive cross-functional assessment, prioritization, mitigation tracking, and executive communications.

  • Ensure significant exposure events are consistently governed, documented, escalated, and resolved.

  • Lead post-event reviews and operational improvements.

Drive Risk-Based Decision Making

  • Translate vulnerability, threat, and exposure data into actionable risk decisions.

  • Advise senior leaders on remediation priorities, business impact, and risk tradeoffs.

  • Identify systemic issues and opportunities for long-term risk reduction.

Lead Strategy & Continuous Improvement

  • Define strategy, roadmaps, metrics, and maturity objectives for the Remediation and Exposure Management functions.

  • Establish scalable operating processes, playbooks, and governance models.

  • Drive continuous improvement using Agile and Lean practices.

  • Align cybersecurity priorities with technology investment, capacity, and risk reduction objectives.

Build High-Performing Teams

  • Lead and develop security engineers and analysts.

  • Coach emerging leaders and strengthen organizational capabilities.

  • Build a culture of accountability, collaboration, and continuous improvement.

  • Ensure teams can effectively support both planned remediation efforts and rapidly evolving cyber threats.

Required Qualifications

  • 10+ years of experience in cybersecurity, technology risk, security operations, vulnerability management, or related disciplines.

  • Experience leading enterprise-scale remediation, risk reduction, security operations, or response coordination programs.

  • Strong knowledge of vulnerability management practices, risk prioritization methodologies, and cyber risk governance.

  • Demonstrated ability to lead large cross-functional initiatives across complex organizations.

  • Experience presenting to senior leaders and executive audiences.

  • Strong executive communication and stakeholder management skills.

  • Proven ability to influence outcomes without direct authority.

  • Experience managing teams, budgets, priorities, and strategic initiatives.

Preferred Qualifications

  • Experience within a large regulated financial services organization and FFIEC and PCI requirements.

  • Experience supporting regulatory examinations, audits, and enterprise risk governance activities.

  • Familiarity with vulnerability management, security analytics, asset management, GRC, and workflow management platforms.

  • Experience with cloud, infrastructure, application, and third-party technology security.

  • Experience operating within Agile or SAFe environments.

  • Professional certifications such as CISSP, CISM, CRISC, GIAC, or equivalent.

Director, Cyber Exposure & Vulnerability Management

Total Base Pay Range 121,900.00 - 262,100.00 USD Annual

At Fifth Third, we understand the importance of recognizing our employees for the role they play in improving the lives of our customers, communities and each other. Our Total Rewards include comprehensive benefits and differentiated compensation offerings to give each employee the opportunity to be their best every day.

The base salary for this position is reflective of the range of salary levels for all roles within this pay grade across the U.S. Individual salaries within this range will vary based on factors such as role, relevant skillset, relevant experience, education and geographic location. In addition to the base salary, this role is eligible to participate in an incentive compensation plan, with any such payment based upon company, line of business and/or individual performance.

Our extensive benefits programs are designed to support the individual needs of our employees and their families, encompassing physical, financial, emotional and social well-being. You can learn more about those programs on our 53.com Careers page at: https://www.53.com/content/fifth-third/en/careers/benefits.html or by consulting with your talent acquisition partner. 

LOCATION -- Virtual, Ohio 00000

Attention search firms and staffing agencies: do not submit unsolicited resumes for this posting.  Fifth Third does not accept resumes from any agency that does not have an active agreement with Fifth Third.  Any unsolicited resumes โ€“ no matter how they are submitted โ€“ will be considered the property of Fifth Third and Fifth Third will not be responsible for any associated fee.

Fifth Third Bank, National Association is proud to have an engaged and inclusive culture and to promote and ensure equal employment opportunity in all employment decisions regardless of race, color, gender, national origin, religion, age, disability, sexual orientation, gender identity, military status, veteran status or any other legally protected status.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
ยท

Related jobs

Other jobs at Fifth Third Bank

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.