Logo for Stryker

Senior Manager, Cybersecurity, CTEM & Vulnerability Intelligence - Remote

Role overview

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline
  • Minimum 10 years of experience in cybersecurity
  • Minimum 3 years of experience leading vulnerability management, exposure management, or product security vulnerability teams
  • Experience managing product vulnerabilities, including triage, coordinated vulnerability disclosure, SBOM analysis, and remediation with product engineering teams

Responsibilities

  • Lead the enterprise CTEM and Vulnerability Management program, including its strategy, roadmap, and operating model
  • Oversee vulnerability scanning and assessment across infrastructure, cloud, endpoint, application, identity, network, and OT environments
  • Manage the product security vulnerability lifecycle with Product Security, including intake, triage, risk assessment, and remediation tracking
  • Prioritize vulnerabilities and exposures using CVSS, EPSS, CISA Known Exploited Vulnerabilities (KEV), threat intelligence, asset criticality, and business context

Key facts

Hard skills

Other skills

  • Leadership
  • Communication
  • Problem Solving

About the company

Stryker logo

Stryker

Medical Devices & Equipment

Stryker is a global leader in medical technologies and, together with our customers, we are driven to make healthcare better. We offer innovative products and services in MedSurg, Neurotechnology, Orthopaedics and Spine that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 150 million patients annually. More information is available at stryker.com and careers.stryker.com. Facts: ● 2023 Sales: $20.5 billion ● Industry: Medical Instruments & Supplies ● Employees: 52,000 worldwide ● 40 years of sales growth leading up to 2020 ● 44+ Manufacturing and R&D Locations Worldwide ● $1.4 billion spent on research and development in 2023 ● ~12,900 patents owned globally in 2023 ● Products sold in ~75 countries ● Fortune 500 Company ● 7 consecutive years as one of Fortune's World's Best Workplaces Stryker’s social media community guidelines: https://www.stryker.com/content/m/legal/social-media-community-guidelines/en/index.html Notice Regarding Employee Conduct on Facebook/LinkedIn Meta/LinkedIn does not permit employers to verify or validate “employees” in the (META: “Works at” LinkedIn: “Experience”) section of users’ profiles. Please be aware that the views expressed by individuals on their personal accounts and do not necessarily represent the views of our company. If you encounter any issues with a person claiming to be our employee, we recommend using the “Report Profile” feature. If you’d like to report concerns to our Ethics Hotline, you may do so at: https://app.convercent.com/en-us/LandingPage/b6bb4e84-9fcb-ea11-a974-000d3ab9f296

Company details

Company typeXLarge
IndustryMedical Devices & Equipment
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Work Flexibility: Remote

Preference will be given to candidates residing in the Eastern or Central time zones.  

As a Senior Manager, CTEM & Vulnerability Management, you will lead the enterprise Continuous Threat Exposure Management (CTEM) and Vulnerability Management function across enterprise IT, cloud, operational technology (OT), and product environments. You will partner with Product Security, Threat Intelligence, Security Operations, Infrastructure, Cloud, and Engineering teams to reduce exposure through risk-based discovery, prioritization, validation, and remediation. 

What you will do: 

Technical Responsibilities: 

• Lead the enterprise CTEM and Vulnerability Management program, including its strategy, roadmap, and operating model. 

• Oversee vulnerability scanning and assessment across infrastructure, cloud, endpoint, application, identity, network, and OT environments. 

• Manage the product security vulnerability lifecycle with Product Security, including intake, triage, risk assessment, remediation tracking, software bill of materials (SBOM) analysis, and coordinated vulnerability disclosure support. 

• Prioritize vulnerabilities and exposures using CVSS, EPSS, CISA Known Exploited Vulnerabilities (KEV), threat intelligence, asset criticality, and business context. 

• Lead attack surface management, exposure validation, and breach and attack simulation activities to confirm exploitability and control effectiveness. 

• Evaluate emerging vulnerabilities, exploits, and threat intelligence affecting enterprise systems, marketed products, and embedded systems. 

• Drive automation for vulnerability discovery, data enrichment, ticketing, remediation workflows, and reporting through SOAR platforms, APIs, Python, or PowerShell. 

• Support cyber incident investigations with vulnerability context, exposure analysis, and remediation expertise. 

Leadership & People Management Responsibilities: 

• Partner with Infrastructure, Cloud, Application, Product Security, and Engineering teams to establish risk-based service-level agreements, drive remediation, and track plans of action and milestones. 

• Establish governance standards, quality assurance procedures, and documentation for vulnerability and exposure management operations. 

• Measure and report exposure reduction, remediation performance, validation results, and operational metrics to executive stakeholders. 

• Lead vulnerability management, exposure management, or product security vulnerability teams. 

Knowledge and Capabilities: 

• Analyze complex vulnerability data and large volumes of exposure telemetry to identify risk and guide response. 

• Translate technical findings, remediation status, and risk trends into clear written, verbal, and presentation-ready updates for technical and executive audiences. 

What You Need: 

Required Qualifications 

• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline. 

• Minimum 10 years of experience in cybersecurity. 

• Minimum 3 years of experience leading vulnerability management, exposure management, or product security vulnerability teams. 

• Experience managing product vulnerabilities, including triage, coordinated vulnerability disclosure, SBOM analysis, and remediation with product engineering teams. 

• Experience with Tenable, Qualys, Rapid7, Wiz, ServiceNow Vulnerability Response, or equivalent vulnerability and exposure management technologies. 

• Experience implementing automation through SOAR platforms, APIs, Python, or PowerShell. 

Preferred Qualifications 

• Master's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline. 

• CISSP, CISM, GEVA, GPEN, GIAC, Tenable, Qualys, or equivalent professional certification. 

United States of America Pay Ranges:

  • USN: $155,900 - $259,700 USD Annual
  • US5: $163,700 - $272,700 USD Annual
  • US10: $171,500 - $285,700 USD Annual
  • US15: $179,300 - $298,700 USD Annual
  • US20: $187,100 - $311,600 USD Annual
  • US30: $202,700 - $337,600 USD Annual
View the U.S. work location and transparency guide to find the pay range for your location.Travel Percentage: NoneStryker Corporation is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected veteran status. Stryker is an EO employer – M/F/Veteran/Disability.Stryker Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Cyber Threat Intelligence Analyst Related jobs

Other jobs at Stryker

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.