Vulnerability & Cloud Security Program Manager

NinjaOne
$180,000 - $220,000Hybrid

About The Position

The Vulnerability & Cloud Security Program Manager leads the enterprise vulnerability management and cloud security posture management (CSPM) programs, ensuring timely identification, assessment, prioritization, and remediation of risks across on-premise, cloud, and application environments. This role leverages modern cloud security and vulnerability management platforms to monitor, analyze, and strengthen our security posture. You will collaborate closely with engineering, DevOps, and infrastructure teams to reduce risk exposure, support compliance obligations, and advance the organization’s overall security maturity.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience.
  • 5+ years of experience in vulnerability management and at least 2+ years in cloud security.
  • Hands-on experience with CSPM tools, vulnerability detection platforms, and automation (Wiz, AWS Inspector, Nessus, OpenSCAP preferred).
  • Strong understanding of AWS security best practices and cloud-native architectures.
  • Familiarity with vulnerability scoring systems like CVSS and risk-based prioritization.
  • Excellent communication, collaboration, and stakeholder management skills.
  • Candidates must be U.S. citizens or lawful permanent residents.

Nice To Haves

  • Security certifications such as CISSP, AWS Security Specialty, or GIAC Cloud Security are a plus.
  • Preferred knowledge of regulatory and compliance frameworks such as PCI DSS, HIPAA, SOX, FedRAMP.

Responsibilities

  • Lead and operate the full vulnerability management and CSPM lifecycle, ensuring timely discovery, assessment, prioritization, and remediation.
  • Administer and optimize our vulnerability management and CSPM platforms, including policies, integrations, reporting, and automation.
  • Monitor cloud and infrastructure environments to identify misconfigurations, excessive permissions, and compliance drift, primarily in AWS.
  • Partner with engineering and DevOps teams to drive remediation efforts, facilitate triage discussions, and provide technical guidance on complex issues.
  • Align security practices with frameworks such as FedRAMP, NIST CSF, ISO 27001, and CIS Controls.
  • Track and report key KPIs and risk metrics to leadership, including SLA compliance and vulnerability trends.
  • Automate detection, remediation workflows, and tool integrations to enhance efficiency and expand security capabilities.
  • Other duties as needed.

Benefits

  • medical, dental, and vision insurance
  • 401(k) plan
  • life insurance coverage
  • PTO
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service