Find your next role
Strengthen your profile
Stryker
Medical Devices & Equipment
See how your profile stacks up against this role.
We compared the job requirements to your profile to show where you're strong and where you fall short.
Preference will be given to candidates residing in the Eastern or Central time zones.
As a Senior Manager, CTEM & Vulnerability Management, you will lead the enterprise Continuous Threat Exposure Management (CTEM) and Vulnerability Management function across enterprise IT, cloud, operational technology (OT), and product environments. You will partner with Product Security, Threat Intelligence, Security Operations, Infrastructure, Cloud, and Engineering teams to reduce exposure through risk-based discovery, prioritization, validation, and remediation.
What you will do:
Technical Responsibilities:
• Lead the enterprise CTEM and Vulnerability Management program, including its strategy, roadmap, and operating model.
• Oversee vulnerability scanning and assessment across infrastructure, cloud, endpoint, application, identity, network, and OT environments.
• Manage the product security vulnerability lifecycle with Product Security, including intake, triage, risk assessment, remediation tracking, software bill of materials (SBOM) analysis, and coordinated vulnerability disclosure support.
• Prioritize vulnerabilities and exposures using CVSS, EPSS, CISA Known Exploited Vulnerabilities (KEV), threat intelligence, asset criticality, and business context.
• Lead attack surface management, exposure validation, and breach and attack simulation activities to confirm exploitability and control effectiveness.
• Evaluate emerging vulnerabilities, exploits, and threat intelligence affecting enterprise systems, marketed products, and embedded systems.
• Drive automation for vulnerability discovery, data enrichment, ticketing, remediation workflows, and reporting through SOAR platforms, APIs, Python, or PowerShell.
• Support cyber incident investigations with vulnerability context, exposure analysis, and remediation expertise.
Leadership & People Management Responsibilities:
• Partner with Infrastructure, Cloud, Application, Product Security, and Engineering teams to establish risk-based service-level agreements, drive remediation, and track plans of action and milestones.
• Establish governance standards, quality assurance procedures, and documentation for vulnerability and exposure management operations.
• Measure and report exposure reduction, remediation performance, validation results, and operational metrics to executive stakeholders.
• Lead vulnerability management, exposure management, or product security vulnerability teams.
Knowledge and Capabilities:
• Analyze complex vulnerability data and large volumes of exposure telemetry to identify risk and guide response.
• Translate technical findings, remediation status, and risk trends into clear written, verbal, and presentation-ready updates for technical and executive audiences.
What You Need:
Required Qualifications
• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
• Minimum 10 years of experience in cybersecurity.
• Minimum 3 years of experience leading vulnerability management, exposure management, or product security vulnerability teams.
• Experience managing product vulnerabilities, including triage, coordinated vulnerability disclosure, SBOM analysis, and remediation with product engineering teams.
• Experience with Tenable, Qualys, Rapid7, Wiz, ServiceNow Vulnerability Response, or equivalent vulnerability and exposure management technologies.
• Experience implementing automation through SOAR platforms, APIs, Python, or PowerShell.
Preferred Qualifications
• Master's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
• CISSP, CISM, GEVA, GPEN, GIAC, Tenable, Qualys, or equivalent professional certification.
United States of America Pay Ranges:
After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.
Marcus Rivera
Chief Revenue Officer

CrowdStrike

Cambium Learning Group

TRM Labs

BioCatch

PUNCH Cyber Analytics Group

Stryker

Stryker

Stryker