Vulnerability & Cloud Security Program Manager

NinjaOne

Maine

Hybrid

USD 180,000 - 220,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical insurance
Dental insurance
Vision insurance
401(k) plan
Unlimited PTO
Growth opportunities

Job summary

NinjaOne is seeking a Vulnerability & Cloud Security Program Manager to lead enterprise vulnerability management and CSPM across on-prem, cloud, and applications. You’ll collaborate with engineering, DevOps, and infra teams to reduce risk and advance security maturity.

Ideal candidates have 5+ years in vulnerability management and 2+ in cloud security, with hands-on CSPM tools and AWS best practices. This full-time role supports hybrid remote work in the USA.

Qualifications

  • Bachelor’s degree or equivalent in Cybersecurity/CS/IT.
  • 5+ years in vulnerability management and 2+ years in cloud security.
  • Hands-on with CSPM tools and vulnerability detection platforms.
  • Strong AWS security knowledge and cloud-native architectures.
  • Familiar with CVSS and risk-based prioritization.

Responsibilities

  • Lead vulnerability mgmt and CSPM lifecycle end-to-end.
  • Administer and optimize platforms, policies, and automation.
  • Monitor cloud environments for misconfigurations and drift.
  • Partner with engineering to drive remediation and triage.
  • Align security with FedRAMP, NIST CSF, ISO 27001, CIS.
  • Report KPIs and risk metrics to leadership.

Skills

Vulnerability Mgmt
Cloud Security
CSPM Tools
Automation
AWS Security
CVSS Scoring
Stakeholder Mgmt

Education

Bachelor's degree in Cybersecurity/CS/IT

Tools

Wiz
AWS Inspector
Nessus
OpenSCAP

Job description

About the Role

The Vulnerability & Cloud Security Program Manager leads the enterprise vulnerability management and cloud security posture management (CSPM) programs, ensuring timely identification, assessment, prioritization, and remediation of risks across on-premise, cloud, and application environments. This role leverages modern cloud security and vulnerability management platforms to monitor, analyze, and strengthen our security posture. You will collaborate closely with engineering, DevOps, and infrastructure teams to reduce risk exposure, support compliance obligations, and advance the organization’s overall security maturity.

Location

We are flexible on remote working from home, if you are located in the USA and reside in one of the following states: CA, CO, CT, FL, GA, IL, KS, ME, MA, MD, NJ, NC, NY, OR, TN, TX, VA, WA. We have physical offices in Austin, TX and Tampa, FL, if you prefer a hybrid option.

What You’ll Be Doing
  • Lead and operate the full vulnerability management and CSPM lifecycle, ensuring timely discovery, assessment, prioritization, and remediation.
  • Administer and optimize our vulnerability management and CSPM platforms, including policies, integrations, reporting, and automation.
  • Monitor cloud and infrastructure environments to identify misconfigurations, excessive permissions, and compliance drift, primarily in AWS.
  • Partner with engineering and DevOps teams to drive remediation efforts, facilitate triage discussions, and provide technical guidance on complex issues.
  • Align security practices with frameworks such as FedRAMP, NIST CSF, ISO 27001, and CIS Controls.
  • Track and report key KPIs and risk metrics to leadership, including SLA compliance and vulnerability trends.
  • Automate detection, remediation workflows, and tool integrations to enhance efficiency and expand security capabilities.
  • Other duties as needed.
About You
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience.
  • 5+ years of experience in vulnerability management and at least 2+ years in cloud security.
  • Hands‑on experience with CSPM tools, vulnerability detection platforms, and automation (Wiz, AWS Inspector, Nessus, OpenSCAP preferred).
  • Strong understanding of AWS security best practices and cloud‑native architectures.
  • Familiarity with vulnerability scoring systems like CVSS and risk‑based prioritization.
  • Excellent communication, collaboration, and stakeholder management skills.
  • Security certifications such as CISSP, AWS Security Specialty, or GIAC Cloud Security are a plus.
  • Preferred knowledge of regulatory and compliance frameworks such as PCI DSS, HIPAA, SOX, FedRAMP.
About Us

NinjaOne automates the hardest parts of IT to deliver visibility, security, and control over all endpoints for more than 40,000 customers. The NinjaOne automated endpoint management platform is proven to increase productivity, reduce security risk, and lower costs for IT teams and managed service providers. NinjaOne is obsessed with customer success and provides free and unlimited onboarding, training, and support. NinjaOne is #1 on G2 in endpoint management, patch management, remote monitoring and management, and mobile device management.

What You’ll Love

We are a collaborative, kind, and curious community.

We honor your flexibility needs with full‑time work that is hybrid remote.

We have you covered with our comprehensive benefits package, which includes medical, dental, and vision insurance.

We help you prepare for your financial future with our 401(k) plan.

We prioritize your work‑life balance with our unlimited PTO.

We reward your work with opportunity for growth and advancement.

Additional Information

This position is not eligible for visa sponsorship. Due to federal government security requirements associated with our FedRAMP‑authorized environment, candidates must be U.S. citizens or lawful permanent residents.

  • Due to operational policies, NinjaOne is unable to hire for this role within the city limits of Chicago. We will consider all qualified candidates who reside outside of the city proper or are willing to self‑relocate.

Starting pay for the successful applicant depends on a variety of job‑related factors, including but not limited to location, market demands, experience, job‑related knowledge, and skills. The benefits available for this position include medical, dental, vision, 401(k) plan, life insurance coverage and PTO. For roles based in California, Colorado, Maryland, New Jersey, or Washington the base salary hiring range for this position is $180,000 to $220,000 per year.

For roles based in New York, the base salary hiring range for this position is $180,000 to $220,000 per year.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, veteran status, or any other status protected by applicable law. We are committed to providing an inclusive and diverse work environment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability & Cloud Security Program Manager
Vulnerability & Cloud Security Program Manager

NinjaOne • North Carolina

Hybrid
USD 180,000 - 220,000
Medical, dental, and vision insurance
401(k) plan
Unlimited PTO
+2
Vulnerability & Cloud Security Program Manager
Vulnerability & Cloud Security Program Manager

NinjaOne • Town of Texas (WI)

Hybrid
USD 180,000 - 220,000
Medical insurance
401(k) plan
Unlimited PTO
Vulnerability & Cloud Security Program Manager
Vulnerability & Cloud Security Program Manager

NinjaOne • Georgia

Hybrid
USD 180,000 - 220,000
Unlimited PTO
Medical, dental, vision insurance
401(k) plan
+1
Vulnerability & Cloud Security Program Manager
Vulnerability & Cloud Security Program Manager

NinjaOne • California (MO)

Hybrid
USD 180,000 - 220,000
Medical, dental, and vision insurance
401(k) plan
Life insurance coverage
+2
Vulnerability & Cloud Security Program Manager
Vulnerability & Cloud Security Program Manager

NinjaOne • Town of Florida (NY)

Hybrid
USD 180,000 - 220,000
Medical, dental, vision insurance
401(k) plan
Unlimited PTO
Vulnerability & Cloud Security Program Manager
Vulnerability & Cloud Security Program Manager

NinjaOne • Connecticut

Hybrid
USD 180,000 - 220,000
Medical, dental, and vision insurance
401(k) plan
Unlimited PTO
Vulnerability & Cloud Security Program Manager
Vulnerability & Cloud Security Program Manager

NinjaOne • United States

Hybrid
USD 180,000 - 220,000
Medical, dental, and vision insurance
401(k) plan
Life insurance coverage
+1
Senior Software Engineer, Java | Vulnerability
Senior Software Engineer, Java | Vulnerability

NinjaOne • United States

Hybrid
USD 140,000 - 200,000
Medical insurance
Dental insurance
Vision insurance
+2
Senior Software Engineer, Java | Vulnerability
Senior Software Engineer, Java | Vulnerability

NinjaOne • Georgia

Hybrid
USD 140,000 - 200,000
Medical, dental, and vision insurance
401(k) plan
Unlimited PTO
+1
Remote Cloud Security & Vulnerability Program Lead
Remote Cloud Security & Vulnerability Program Lead

NinjaOne • Maine

Hybrid
USD 180,000 - 220,000
Medical insurance
Dental insurance
Vision insurance
+3