More jobs:
Security & Risk Management Program Manager
Job in
Horsham, Montgomery County, Pennsylvania, 19044, USA
Listed on 2026-07-20
Listing for:
Jobtailor
Full Time
position Listed on 2026-07-20
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
Responsibilities
- Own and evolve the enterprise vulnerability management program, including governance, operating model, and stakeholder alignment
- Define and execute an integrated roadmap for vulnerability management and security risk reduction initiatives
- Establish accountability, SLAs, and execution standards across security, engineering, and infrastructure teams
- Lead cross-functional risk reduction initiatives; manage timelines, dependencies, and escalation to ensure delivery
- Drive prioritization based on risk exposure, business impact, and regulatory requirements
- Align security, infrastructure, cloud, and application teams on remediation and risk reduction priorities
- Lead risk acceptance and exception processes, including analysis, approvals, and lifecycle management
- Maintain risk registers, treatment plans, and exception tracking aligned to business and compliance objectives
- Ensure appropriate risk segmentation across commercial and government environments
- Translate vulnerability and risk data into actionable insights for leadership decision-making
- Deliver executive-level reporting on risk posture, remediation performance, and program progress
- Define and track metrics to measure risk reduction effectiveness and execution performance
- Ensure audit readiness through complete, traceable documentation and remediation evidence
- Support regulatory and government requirements, including POA&M tracking and control validation
- Partner with GRC and audit stakeholders to meet contractual and compliance obligations
- Strong program management experience leading complex, cross-functional initiatives.
- Experience in information security, such as vulnerability management, risk management, GRC, or security operations.
- Understanding of vulnerability management lifecycle processes, including asset discovery, scanning, validation, prioritization, remediation, exception handling, and reporting.
- Proven ability to lead risk reduction or remediation initiatives across multiple technical teams.
- Experience developing executive reporting, metrics, risk records, meeting outputs, and audit artifact and risk summaries.
- Strong stakeholder management and communication skills across technical and business audiences.
- Experience supporting audits, compliance reviews, evidence collection, or control validation activities.
- Familiarity with vulnerability severity models, CVSS, exploitability, asset criticality, exposure, compensating controls, and risk-based prioritization.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×