Vunerability Manager

Own the vulnerability management capability. Drive remediation. Influence at enterprise level.

I’m getting an early start on a newly approved Vulnerability Manager opportunity with a well-established Australian financial services organisation.

This is a senior individual contributor role for someone who understands vulnerability management technically, but can also step above the tools and drive governance, prioritisation, remediation and accountability across a complex enterprise environment.

You’ll take ownership across:

  • Enterprise vulnerability management across cloud, infrastructure, applications, endpoints and third parties
  • Vulnerability assessment, validation and risk-based prioritisation
  • Driving remediation with technology and business owners
  • Risk acceptance, treatment and exception management
  • Vulnerability frameworks, standards and governance
  • Executive dashboards, metrics, ageing and trend reporting
  • Tooling, automation and continuous improvement
  • Working across Security, Technology, Risk, Infrastructure, Cloud and Application teams

The role is weighted toward vulnerability operations, governance and reporting, so I’m looking for someone who can combine genuine technical understanding with strong stakeholder influence and the ability to get remediation moving.

What I’m looking for

Ideally you’ll bring:

  • 5+ years’ cyber security experience
  • 3+ years’ vulnerability management and/or security governance experience
  • Experience managing an enterprise vulnerability management program
  • Strong understanding of vulnerability assessment and remediation
  • Cloud, infrastructure and application security exposure
  • Experience with frameworks such as ISO27001 and NIST
  • Strong executive reporting and communication skills
  • Financial services or another regulated enterprise environment highly regarded

What’s in it for you

  • Take ownership of an enterprise-wide vulnerability management capability
  • High visibility across senior Technology, Risk and Security stakeholders
  • Shape vulnerability governance, tooling, automation and reporting
  • Broad exposure across cloud, infrastructure, applications and third parties
  • Opportunity to drive measurable uplift in cyber resilience
  • Great culture, enviornemnt, hybrid working 3 days in office

Australian Citizens or PR only

Amanda  Evans's Our  Infrastructure Permanent

Infrastructure Permanent

Amanda Evans

Infrastructure – Permanent

[email protected]
02 8346 6716