Point your AI agent at freehire and let it find you a job.

Get the CLI →

IEEE

Manager Information Security (TVM) (E6162)

Posted Updated
Discussion

Job Summary
As the Manager, Information Security (Threat & Vulnerability Management), you will serve in a highly technical "player-coach" leadership role, requiring a blend of hands-on engineering and project/people management. Reporting directly to the Director of Cyber & Information Security, you will lead the specialized Threat & Vulnerability Management functional pillar within the department. While managing and mentoring a team of cross-trained Cybersecurity Engineers and overseeing domain-specific projects, you act as the ultimate technical escalation point for your domain. The ideal candidate actively implements technologies, drives complex incident response, oversees vulnerability mitigation, and translates high-level business risk into day-to-day technical operations.


Key Responsibilities

  • Threat Management\:

    • Provides operational oversight of all Threat and Vulnerability Management systems, technologies, processes, and reporting.
    • Actively manages and tunes Security Information and Event Management (SIEM) and Endpoint Detection and Response (EDR) platforms.
    • Leads the coordination of technical data and evidence collection during moderate-to-severe security incidents, supporting the Director who serves as the overarching Incident Commander.
    • Integrates global threat intelligence feeds and analyzes Indicators of Compromise (IoCs) to proactively fortify network and endpoint defenses.
    • Develops, maintains, and automates technical Incident Response playbooks utilizing Security Orchestration, Automation, and Response (SOAR) concepts to accelerate threat containment.
    • Leads the threat modeling and security posture management of enterprise Artificial Intelligence (AI) and Machine Learning (ML) systems, defending against adversarial threats (e.g., prompt injection, model poisoning), while leveraging AI-driven analytics to accelerate threat detection and streamline vulnerability prioritization.

  • Vulnerability Management\:

    • Drives enterprise vulnerability scanning and coordinates internal or external penetration testing exercises, prioritizing risks and leading cross-functional remediation efforts.
    • Collaborates with system owners to evaluate the technical risk of identified vulnerabilities and architects compensating controls when immediate patching is not possible.

  • Documentation & Stakeholder Communication\:

    • Leads efforts to create, document, and continuously maintain Standard Operating Procedures (SOPs) for technical TVM workflows and departmental processes.
    • Translates complex technical security risks into clear operational impacts for peer IT leaders.

  • Customer & Project Support\:

    • Partners closely with other IT departments (Infrastructure, Networking, Software Development) to integrate security controls into their respective business projects without disrupting velocity.
    • Executes the technical rollout of new threat and vulnerability vendor products from proof-of-concept to full enterprise deployment.
    • Leads, tracks, and executes security-focused projects from inception to completion, ensuring milestones, Service Level Agreements (SLAs), and Mean Time to Resolve (MTTR) metrics are met for the TVM pillar.
    • Manages relationships with critical security vendors, ensuring platforms are properly deployed, maintained, and delivering maximum ROI.

  • Continuous Improvement & Operations\:

    • Manages, mentors, and develops a high-performing team of technical Cybersecurity Engineers.
    • Handles all core HR responsibilities, including performance evaluations, hiring, goal setting, and guiding career ladder progression.
    • Researches new security processes and emerging TVM technologies, evaluating their efficacy and presenting formal recommendations for changes to department leadership.
    • Drives the department’s cross-domain training goals, ensuring team members build proficiency outside their primary operational focus to maintain a well-rounded, agile workforce.

  • Identity & Access Management (IAM)\:
    • Partners closely with the IAM pillar to correlate identity-based threats, investigate authentication anomalies, and enforce automated access revocations during active security incidents.

Travel Information

  • Occasional Domestic Occasional travel may be required to attend industry conferences, participate in professional training, or support operations at remote office locations.

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available