Lead Vulnerability Management Security Engineer
Listed on 2026-01-04
-
IT/Tech
Cybersecurity
Lead Vulnerability Management Security Engineer
Join the Lead Vulnerability Management Security Engineer role at Deckers Brands.
Job Title: Lead Vulnerability Management Security Engineer
Reports to: Director, Security Engineering
Location: United States (Remote)
Eligible states: Arizona, California, Colorado, Indiana, Massachusetts, Minnesota, New York, Oregon, Pennsylvania, Texas, Utah, Washington
The RoleAs the Lead Vulnerability Management Security Engineer, you’ll be at the heart of Deckers Brands’ commitment to safeguarding our people, products, and platforms. You’ll set the strategic direction for vulnerability management, collaborating with cross‑functional teams to identify, assess, and remediate security risks. Your expertise will help shape our security standards, drive the adoption of advanced technologies, and ensure our environment is resilient against emerging threats.
YourImpact
- Lead the review and analysis of vulnerability data to identify trends, patterns, and key risks across Deckers’ global environment
- Facilitate vulnerability management meetings and drive risk‑based discussions to prioritize and accelerate remediation efforts
- Advise and support remediation teams in developing actionable plans to address vulnerabilities and strengthen our security posture
- Perform risk‑based assessments for both on‑premise and cloud‑based services, ensuring robust protection for critical assets
- Integrate advanced security technologies and automation tools to enhance threat detection and response capabilities
- Build and present business cases for adopting new security solutions to mitigate emerging risks
- Develop, consolidate, and maintain security metrics to measure the effectiveness of our cybersecurity program
- Apply industry‑leading frameworks (NIST, ISO
27001/2, CIS Top 20 Controls) to establish and maintain best‑in‑class security measures - Foster strong relationships with technical teams, serving as a trusted advisor and championing a culture of security awareness
- Contribute to the strategic direction of the Technical Security team by designing and implementing tools that enhance customer trust and detect suspicious activity
- BA/BS degree or equivalent experience in a relevant field
- Security professional certification (CISSP, CVA, GEVA, or similar) preferred
- 4+ years of hands‑on experience in vulnerability management, including scanning, assessment, and remediation
- Proven success in starting and growing a vulnerability management program
- Proficiency with leading vulnerability management tools (Tenable, Crowd Strike) and scripting/automation languages (Power Shell, Python)
- Deep understanding of security frameworks and compliance standards (NIST, ISO
27001/2, CIS Top 20 Controls, PCI‑DSS, HIPAA) - Strong analytical skills to identify patterns, trends, and actionable insights from complex vulnerability data
- Excellent communication skills for reporting and stakeholder engagement
- Collaborative mindset with the ability to serve as a trusted advisor across cross‑functional teams
- Self‑driven, strategic thinker with a passion for advancing cybersecurity programs
- Competitive pay and bonuses – a variety of compensation programs to foster career development and reward success
- Financial planning and wellbeing plans to help protect income, pay expenses, and invest for the future
- Time away from work – goal‑oriented leave to recharge, focus on health or family
- Extras, discounts and perks – generous discounts and community‑based programs
- Growth and development – extensive opportunities and support for personal and professional development
- Health and wellness – comprehensive programs and offerings for a healthy lifestyle
$120,000 – $130,000 The salary range posted reflects the minimum and maximum target for new hire salaries for this role in our Goleta, CA location. Individual pay will be determined by location and additional factors, including job‑related skills, experience, and relevant education or training.
Equal Employment OpportunityDiversity and inclusion are key to our success. We are proud to be an equal opportunity employer, and our employees are people with different strengths, experiences and backgrounds. We welcome qualified applicants regardless of their race, color, religion, sex, sexual orientation, gender identity, gender expression, national origin, age, military or veteran status, mental or physical disability, medical condition and all the other beautiful parts of your identity.
Senioritylevel
Not Applicable
Employment typeFull‑time
Job functionInformation Technology
IndustriesRetail Apparel and Fashion, Manufacturing, and Retail
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).