Director – Vulnerability Management & Cloud Security Platform
Listed on 2026-09-01
-
IT/Tech
Cybersecurity
Director – Vulnerability Management & Cloud Security Platform 2
Ampcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented team.
Location(s):
New York City, NY (Hybrid: On-Site in either New York City, NY; Pittsburgh, PA; or Washington, DC; 4 days a week)
We are seeking a Director – Vulnerability Management & Cloud Security Platform to join a Cybersecurity Engineering Tools & Platforms team. This is a highly technical individual contributor role responsible for engineering, operating, and continuously improving enterprise vulnerability management and cloud security platforms. The position combines platform ownership, automation, cloud security, infrastructure engineering, and operational excellence to enhance enterprise cyber risk visibility and resilience.
Key Responsibilities- Own engineering and operational responsibility for enterprise vulnerability management and cloud security posture management platforms.
- Administer and maintain enterprise security platforms, including platform health, upgrades, configuration, integrations, onboarding, access management, troubleshooting, and vendor support.
- Improve platform scalability, reliability, automation, data quality, performance, and operational resilience.
- Manage scanner infrastructure, agents, cloud connectors, platform configurations, tenant administration, and service health.
- Support vulnerability scanning across servers, endpoints, databases, network devices, appliances, cloud environments, containers, and internet-facing assets.
- Collaborate with infrastructure and networking teams on scanner deployment, routing, segmentation, firewall configuration, authenticated scanning, and connectivity troubleshooting.
- Drive enterprise asset discovery, inventory reconciliation, CMDB integration, ownership validation, and coverage reporting.
- Build automation using APIs, scripting, configuration management, dashboards, reporting workflows, and data pipeline integrations.
- Integrate security platforms with CMDBs, ticketing systems, cloud platforms, enterprise reporting, and remediation workflows.
- Enable vulnerability prioritization, remediation tracking, SLA management, exception handling, and critical vulnerability response.
- Monitor platform health, create operational dashboards, support incident response, disaster recovery, business continuity, and vendor escalations.
- Manage SSO, RBAC, privileged access, API tokens, service accounts, audit evidence, and regulatory compliance requirements.
- Troubleshoot issues involving scanners, agents, APIs, cloud connectors, identity systems, networking, firewalls, routing, and reporting platforms.
- Develop automation using Python, Go, Java, or similar programming languages.
- Mentor engineers and improve operational documentation, runbooks, and engineering standards.
- Bachelor's degree in Computer Science or a related discipline (or equivalent experience); advanced degree preferred.
- 10–12 years of information security or related technology experience.
- Experience supporting enterprise cybersecurity platforms within large organizations; financial services experience is preferred.
- Strong experience operating vulnerability management, asset discovery, scanning, cloud security posture management, or cloud-native security platforms.
- Hands-on experience supporting production environments, incident management, change management, platform monitoring, and lifecycle management.
- Strong engineering background with automation, APIs, configuration management, and operational optimization.
- Deep understanding of vulnerability management processes, remediation tracking, SLA governance, ownership validation, and exception management.
- Strong networking knowledge including TCP/IP, DNS, routing, firewalls, proxies, NAT, segmentation, packet flow analysis, and troubleshooting.
- Experience scanning enterprise infrastructure including servers, endpoints, databases, network devices, appliances, containers, cloud assets, and internet-facing systems.
- Knowledge of scanner architecture, authenticated scanning, credential…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).