Director, Vulnerability Management

USM Finastra USA Corporation

Atlanta (GA)

On-site

USD 180,000 - 250,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible vacation
Hybrid work
Health insurance
Pension plan
Wellbeing programs
Career development

Job summary

Finastra seeks a Director of Vulnerability Management to lead a mature, risk‑based program across infrastructure, cloud, and applications. You will partner with Engineering, Product, Architecture, and DevOps to embed security in the SDLC and reduce enterprise risk.

You will build a high‑performing team, establish governance, and provide strategic guidance on emerging threats and secure product development practices to executives and boards.

Qualifications

  • Bachelor's degree or equivalent in cybersecurity, CS, IT, or engineering.
  • Progressive cybersecurity experience including vulnerability management and secure development.
  • Leadership experience overseeing security programs or teams.
  • Proven success at leading enterprise vulnerability management in large environments.

Responsibilities

  • Oversee and mature the enterprise vulnerability management program across infrastructure, endpoints, cloud, apps, containers.
  • Establish risk-based prioritization considering exploitability, criticality, and asset exposure.
  • Define standards, procedures, SLAs, and governance for vulnerability management.
  • Drive remediation accountability and timely resolution of high-risk issues.
  • Lead executive reporting and board-level metrics on vulnerability exposure and risk reduction.
  • Coordinate responses for critical vulnerabilities and zero-day threats.
  • Collaborate with Risk, Compliance, Audit, Privacy and Legal for regulatory alignment.

Skills

Vulnerability management
Security leadership
Executive communication
Risk management
Program governance

Education

Bachelor's degree in Cybersecurity

Tools

Tenable
Qualys
Rapid7
Wiz
Prisma Cloud
Microsoft Defender
GitHub Advanced Security
Veracode
Checkmarx

Job description

Who are we? At Finastra, we’re a global leader in financial services software, dedicated to expanding access to financial services and shaping what’s next for the industry. Our technology powers mission‑critical solutions across Lending, Payments and Universal Banking, supporting over 7,000 customers, including 80% of the world’s top 50 banks, in more than 110 countries.

Position Overview

We are seeking an experienced and strategic Director of Vulnerability Management to lead the organization's efforts to identify, prioritize, remediate, and govern cybersecurity vulnerabilities across infrastructure, cloud environments, applications, and internally developed products. This leader will be responsible for advancing a mature, risk‑based vulnerability management program while partnering closely with Engineering, Product, Architecture, Infrastructure, DevOps, and Security Operations teams to embed security throughout the software development lifecycle. The successful candidate will combine strong technical expertise, program leadership, and stakeholder management skills to reduce enterprise risk and enable secure business growth.

Key Responsibilities
  • Enterprise Vulnerability Management Own and mature the enterprise vulnerability management program across infrastructure, endpoints, cloud platforms, applications, containers, and third‑party technologies.
  • Establish risk‑based prioritization methodologies that consider exploitability, business criticality, threat intelligence, and asset exposure.
  • Define and maintain vulnerability management standards, operational procedures, remediation SLAs, exception processes, and governance frameworks.
  • Drive accountability for remediation efforts and ensure timely resolution of critical and high‑risk vulnerabilities.
  • Lead executive reporting and board‑level metrics related to vulnerability exposure, remediation performance, and cyber risk reduction.
  • Coordinate enterprise response efforts for critical vulnerabilities, zero‑day threats, and actively exploited security issues.
  • Program Governance & Risk Management Collaborate with Risk, Compliance, Audit, Privacy, and Legal teams to ensure alignment with regulatory and industry requirements.
  • Manage vulnerability exception processes and risk acceptance frameworks.
  • Support regulatory examinations, customer security assessments, internal audits, and external audits.
  • Develop and maintain meaningful KPIs and KRIs that demonstrate program effectiveness and risk reduction.
  • Leadership & Organizational Development Build, lead, and mentor a high‑performing team of vulnerability management professionals.
  • Foster strong partnerships across Engineering, Infrastructure, Operations, and business leadership teams.
  • Establish a culture of accountability, collaboration, innovation, and continuous improvement.
  • Provide strategic guidance and subject matter expertise to executive leadership on emerging threats, vulnerability trends, and secure product development practices.
Required Qualifications
  • Education Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
  • Equivalent combination of education and relevant experience will be considered.
  • Experience Progressive cybersecurity experience, including vulnerability management, application security, product security, or related security disciplines.
  • Leadership experience managing security teams, programs, or enterprise initiatives.
  • Demonstrated success leading vulnerability management programs in large‑scale enterprise environments.
  • Experience partnering with software engineering organizations and implementing secure development practices.
  • Strong background in cyber risk management, governance, and executive communications.
Technical Expertise
  • Deep understanding of vulnerability management frameworks, CVSS, exploitability analysis, threat intelligence integration, and remediation prioritization.
  • Strong knowledge of secure software development practices and application security principles.
  • Experience with vulnerability management and application security platforms such as Tenable, Qualys, Rapid7, Wiz, Prisma Cloud, Microsoft Defender, GitHub Advanced Security, CodeQL, Veracode, Checkmarx, or similar solutions.
  • Familiarity with cloud environments, containers, Kubernetes, CI/CD pipelines, APIs, and modern software architectures.
  • Ability to communicate technical risks effectively to both technical and non‑technical audiences.
Certifications (Preferred)
  • CISSP
  • CISM
  • Relevant cloud security certifications
Preferred Qualifications
  • Experience leading Product Security or DevSecOps transformation initiatives.
  • Experience implementing secure‑by‑design principles within enterprise software development environments.
  • Familiarity with software supply chain security and emerging secure software development regulations.
  • Experience supporting highly regulated industries, including financial services, healthcare, insurance, or critical infrastructure sectors.
  • Experience leveraging automation and AI‑driven security capabilities to improve vulnerability management and security operations.
Leadership Competencies
  • Strategic thinking and business acumen.
  • Strong executive presence and communication skills.
  • Ability to influence without direct authority.
  • Data‑driven decision‑making and risk prioritization.
  • Effective stakeholder management across technical and business functions.
  • A commitment to talent development, inclusiveness, and continuous improvement.
Success Measures
  • Reduction of enterprise vulnerability exposure and risk.
  • Improvement in remediation performance and SLA compliance.
  • Increased adoption of secure development practices across engineering teams.
  • Enhanced visibility and reporting of cyber risk to executive leadership.
  • Successful integration of security into product and technology delivery processes.
  • Positive audit, regulatory, and customer security assessment outcomes.

We are proud to offer a range of incentives to our employees worldwide. These benefits are available to everyone, regardless of grade, and reflect the values we stand for:

  • Flexibility: Enjoy unlimited vacation, subject to local regulations and business priorities. Benefit from hybrid working arrangements and inclusive policies such as paid time off for voting, bereavement, and sick leave.
  • Well‑being: Access confidential one‑to‑one support through our Employee Assistance Program, connect with our network of Wellbeing Champions and Gather Groups, and take part in monthly events and initiatives designed to help you thrive—inside and outside of work.
  • Health & Financial Security: Medical, life and disability insurance, retirement plans, lifestyle, and other benefits.* Specific benefits may vary by location.
  • Sustainability: Paid time off for volunteering and donation‑matching opportunities to support causes that matter to you.
  • Inclusion: Get involved in our inclusion communities, such as Count Me In, Culture@Finastra, Proud@Finastra, Disabilities@Finastra, and Women@Finastra—open to everyone who wants to participate and contribute.
  • Career Development: Access online learning and accredited courses through our Skills & Career Navigator tool.
  • Recognition: Take part in our global recognition program, Finastra Celebrates, and share your voice through regular employee surveys that help shape our culture and ways of working.

At Finastra, each individual is unique—bringing their own ideas, perspectives, cultural backgrounds, and experiences. We learn from one another, value what makes us different, and create an environment where everyone feels included, supported, and able to be their authentic selves. Be unique. Be exceptional. Help us make a difference at Finastra.

Applicants for this position need to be located in posted location or their immediate surrounding areas. Due to the requirements of this position, this job posting is not available for, and Finastra will not be considering any applicants who currently reside in New York City or California.

At Finastra, our team members are the driving force behind everything we do. We’re building an environment where bold ideas thrive, careers flourish, and innovation is a shared journey. Whether you're a recent graduate ready to shape the future or a seasoned professional seeking your next challenge, you’ll play a pivotal role in delivering software solutions that redefine what’s possible in financial services.

We believe growth is a shared commitment. That’s why we offer a rich ecosystem of learning—from hands‑on training and mentorship to leadership development and industry certifications. You’ll have the freedom to explore new paths, deepen your expertise, and make your mark in a global fintech that’s built for the future.

Our career development isn’t just a program—it’s a promise. With access to cutting‑edge tools, a culture of collaboration, and a community that champions your success, you’ll be empowered to lead, challenge, and create meaningful change. Because when we grow together, we innovate together—and that’s how we shape what’s next in finance.

We offer incredible career opportunities and your work in close collaboration with fantastic colleagues globally to develop and launch innovative software solutions for our customers. There is a huge range of engaging projects where you can get stuck‑in and add value whilst taking advantage of our ongoing development opportunities to build and hone your skills in your chosen area.

Our perks include paid holidays, flexible working hours, a pension plan, and comprehensive health initiatives.

Join us to supercharge your career, collaborate with industry experts, and thrive in a nurturing environment that powers both your professional and personal growth. With us, you can grow, innovate, and make a real impact.

At Finastra, we are proud of the wide range of incentives and benefits we offer our employees globally, reflecting our core values: doing well by doing good, putting people first, and open opportunities.

We go beyond statutory requirements to maximise our offerings, investing in flexible working policies, personal growth opportunities, and well‑being programmes. Highlights include our Flexible Vacation Policy, inclusive people policies, hybrid working framework, and comprehensive well‑being support through initiatives like the Employee Assistance Program, the wellbeing Champions and our monthly events and initiatives.

Additionally, we emphasise sustainability through volunteering time off and donation matching, champion inclusion through multiple employee networks and cultural initiatives, and invest heavily in career and skills development.

Recognition of our employees' efforts is integral, with our global recognition platform and regular employee feedback surveys shaping our inclusive and supportive workplace culture

At Finastra, we are committed to creating a workplace where you feel valued and respected. We believe this environment drives innovation and we strive to build a team that reflects the varied backgrounds, perspectives, and experiences of our global ecosystem. This philosophy is at the heart of our culture and the way we work.

The company privacy policy can be found here Finastra Privacy Policy

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Enterprise Risk Manager
Enterprise Risk Manager

USM Finastra USA Corporation • Atlanta (GA)

Hybrid
USD 140,000 - 190,000
Unlimited vacation
Hybrid work with 2 days in office
Health initiatives
+2
Senior Program Manager
Senior Program Manager

US1 Finastra Technology, Inc • Atlanta (GA)

On-site
USD 110,000 - 140,000
Hybrid work options
Paid holidays and vacation policies
Health and wellbeing programs
+1
Senior Project Manager
Senior Project Manager

US1 Finastra Technology, Inc • Atlanta (GA)

On-site
USD 100,000 - 160,000
Unlimited vacation
Hybrid work
Wellbeing program
+3
Director, Systems Operations
Director, Systems Operations

USM Finastra USA Corporation • Atlanta (GA)

On-site
USD 140,000 - 210,000
Hybrid work model
Health insurance
Pension plan
+1
Event Marketing Manager, Global Events & Trade Shows
Event Marketing Manager, Global Events & Trade Shows

USM Finastra USA Corporation • Atlanta (GA)

On-site
USD 90,000 - 130,000
Hybrid working arrangements
Paid time off for voting, bereavement,
Health initiatives and well-being
Head of Architecture & Platform Engineering
Head of Architecture & Platform Engineering

USM Finastra USA Corporation • Atlanta (GA)

Hybrid
USD 150,000 - 190,000
Unlimited vacation
Hybrid working
Health insurance
+2
License Compliance Manager
License Compliance Manager

US1 Finastra Technology, Inc • Atlanta (GA)

Hybrid
USD 110,000 - 170,000
Flexible vacation
Hybrid working
Health & life insurance
+2
Lead Product Manager
Lead Product Manager

USM Finastra USA Corporation • Atlanta (GA)

Hybrid
USD 140,000 - 180,000
Unlimited vacation
Hybrid working
Medical, life & disability insurance
+2
UX Designer
UX Designer

CAC DH Corporation/Societe DH • Atlanta (GA)

Hybrid
USD 90,000 - 130,000
Unlimited vacation
Hybrid working arrangements
Well-being programs
+1
FP&A Director
FP&A Director

USM Finastra USA Corporation • Atlanta (GA)

Hybrid
USD 180,000 - 240,000
Unlimited vacation
Hybrid work model
Medical insurance
+2