Houston, TX (Hybrid 4:1)
Contract to Hire
ABOUT OUR CLIENT
Our Client is a leading global specialty insurance organization with more than 50 years of sustained growth and profitability and a strong international presence.
Backed by the strength and stability of a globally recognized insurance group, Our Client delivers more than 100 specialty insurance products while fostering a culture built on innovation, collaboration, trust, and continuous improvement.
Driven by a philosophy of thoughtful risk management, Our Client empowers employees to solve complex challenges, embrace new opportunities, and help shape the future of the business.
ABOUT THE ROLE
Our Client is seeking an experienced Vulnerability Manager to lead its enterprise vulnerability management program. This contract-to-hire opportunity offers the chance to make an immediate impact while positioning yourself for long-term career growth with a global organization.
In this role, you will identify, assess, prioritize, and coordinate the remediation of security vulnerabilities across infrastructure, applications, and cloud environments. You will partner with cross-functional teams to continuously strengthen the organization's security posture through proactive risk reduction, reporting, and governance.
RESPONSIBILITIES
Develop and manage the enterprise vulnerability management lifecycle, including scanning, assessment, reporting, and remediation tracking.
Conduct regular vulnerability scans using Qualys or similar vulnerability management platforms.
Analyze scan results, validate findings, and partner with IT and development teams to prioritize and remediate vulnerabilities.
Maintain an accurate inventory of technology assets and ensure appropriate vulnerability scanning coverage.
Collaborate with threat intelligence and incident response teams to evaluate exploitability and business risk.
Track remediation efforts and provide regular status updates to leadership and key stakeholders.
Develop and maintain metrics, dashboards, and reporting that measure program effectiveness and demonstrate risk reduction.
Stay current with emerging vulnerabilities, security advisories, and threat intelligence.
Support compliance initiatives and audit activities related to vulnerability management.
Provide guidance on secure configuration standards and patch management best practices.
QUALIFICATIONS
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related discipline.
Five or more years of experience in vulnerability management, security operations, or a related cybersecurity role.
Hands-on experience with vulnerability management platforms such as Qualys or Akamai.
Experience working with ticketing platforms such as ServiceNow or Jira.
Knowledge of Windows, Linux, networking, AWS, Azure, and web application security.
Strong understanding of CVSS scoring, vulnerability prioritization, risk assessment methodologies, and remediation workflows.
Excellent communication, collaboration, and stakeholder management skills.
Ability to manage multiple priorities in a fast-paced environment.
PREFERRED QUALIFICATIONS
Professional certifications such as CISSP, OSCP, CEH, CompTIA Security+, or similar.
Experience with Governance, Risk, and Compliance (GRC) platforms.
Experience with scripting or automation using Python or PowerShell.
Experience with container security and DevSecOps vulnerability management, including Docker, Kubernetes, and Software Composition Analysis (SCA) tools.