Sr. Manager - Vulnerability Management (Remote)
Johnson ControlsAbout the role
Build your best future with the Johnson Controls team
As a global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performance of buildings to serve people, places and the planet. Join a winning team that enables you to build your best future! Our teams are uniquely positioned to support a multitude of industries across the globe. You will have the opportunity to develop yourself through meaningful work projects and learning opportunities. We strive to provide our employees with an experience, focused on supporting their physical, financial, and emotional wellbeing. Become a member of the Johnson Controls family and thrive in an empowering company culture where your voice and ideas will be heard – your next great opportunity is just a few clicks away!
What we offer
Competitive salary and bonus plan
Paid vacation/holidays/sick time
Comprehensive benefits package including 401K, medical, dental, and vision care - Available day one
Extensive product and on the job/cross training opportunities with outstanding internal resources
Encouraging and collaborative team environment
Dedication to safety through our Zero Harm policy
Check us Out: Day in the Life of the Building of the Future https://youtu.be/pdZMNrDJviY
What you will do
The Johnson Controls Global Cyber Security (GCS) team is undergoing a transformation and expansion as Johnson Controls increases its cybersecurity resources and capabilities in order to address the ever-changing cybersecurity threat landscape.
The Sr. Manager for Vulnerability Management will be responsible for overseeing and leading the vulnerability management program within the organization. This role involves identifying, evaluating, and mitigating security vulnerabilities across the company's IT infrastructure and applications. The ideal candidate will have a deep understanding of cybersecurity principles, strong leadership skills, and a proven track record of managing vulnerability management teams and programs. This role will report to Director of Security Operations
The candidate will be able to articulate thoughts clearly, run operations, plan initiatives, and execute with appropriate urgency. The candidate will demonstrate drive, intelligence, maturity, and energy and will be a proven change agent.
How you will do it
Develop and execute a comprehensive vulnerability management strategy aligned with the organization’s security objectives.
Lead and manage the vulnerability management team, providing guidance, mentorship, and professional development opportunities.
Collaborate with cross-functional teams to integrate vulnerability management processes into the overall security program.
Oversee regular vulnerability assessments and penetration testing to identify potential security weaknesses.
Ensure timely identification, assessment, and reporting of vulnerabilities across all IT assets, including networks, applications, and databases.
Prioritize vulnerabilities based on risk assessment and business impact.
Work closely with IT and development teams to develop and implement effective remediation plans.
Track and report on the progress of vulnerability remediation efforts, ensuring adherence to established timelines.
Provide technical guidance and support to teams responsible for vulnerability remediation.
Conduct risk assessments to evaluate the potential impact of identified vulnerabilities on the organization.
Develop risk mitigation strategies and recommend security controls to minimize exposure to vulnerabilities.
Maintain up-to-date knowledge of emerging threats, vulnerabilities, and security trends.
Ensure compliance with relevant security standards, regulations, and best practices (e.g., ISO 27001, NIST, PCI-DSS).
Prepare and present regular reports on the status of the vulnerability management program to senior leadership and other stakeholders.
Develop and maintain documentation related to vulnerability management policies, procedures, and processes.
Evaluate, select, and implement vulnerability management tools and technologies to enhance the efficiency and effectiveness of the program.
Ensure the continuous improvement and optimization of vulnerability management processes and tools.
What we look for
Bachelor’s degree in a technical field (Computer Science, Information Systems) or equivalent, master’s degree preferred.
Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Cer
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s