Head of Vulnerability Management

1 week ago


Chicago, Illinois, United States CNA Full time

Overview:

At CNA, we prioritize your career trajectory and are committed to fostering a culture where every individual feels valued and integral to our mission. We believe in harnessing the full potential of our workforce, ensuring that each employee's contributions are recognized and utilized effectively.

CNA offers a robust and competitive benefits package designed to support the physical, financial, emotional, and social well-being of our employees and their families. For a comprehensive overview of our benefits, please refer to our Candidate Guide.

Position Summary:

This leadership role is pivotal in shaping, designing, and executing the Vulnerability Management (VM) program at CNA. The incumbent will lead the VM team, formulate VM strategies, and perform data security readiness evaluations to establish, develop, and implement enterprise data security standards. The focus will be on creating a comprehensive vulnerability risk assessment and remediation framework for both infrastructure and Web Application vulnerabilities by refining strategies, policies, and procedures, as well as enhancing the vulnerability risk classification process.

Key Responsibilities:

In alignment with departmental guidelines, the following duties will be performed:

  • Serve as the subject matter expert for the Vulnerability Management program across a global technology organization, encompassing various legacy and modern systems within data centers and cloud environments.
  • Formulate enterprise policies and technical standards specifically addressing vulnerability management and secure configurations.
  • Oversee the complete vulnerability remediation process at CNA, addressing vulnerabilities identified through various channels, including vulnerability scans, penetration testing, application scanning, and responsible vulnerability disclosure programs.
  • Manage the entire configuration management process at CNA, collaborating with teams to develop security technical specifications for diverse technologies, assess our environment against these specifications, and continuously enhance our security posture through governance and technical leadership.
  • Collaborate effectively with other Security and IT professionals to evaluate the potential impact of vulnerabilities specific to our environment and propose mitigating security controls.
  • Identify and recommend appropriate measures to manage and remediate vulnerabilities, minimizing potential impacts on information resources to an acceptable level for senior management.
  • Establish strong partnerships with technical teams to advocate for best practices in agile vulnerability management within cloud solutions.
  • Comprehend business requirements and collaborate with stakeholders to define suitable solutions for security objectives while fulfilling business needs.
  • Act as an advocate for vulnerability management and information security, promoting awareness and utilization of the team's services, educating on security best practices, and integrating with other business functions.
  • Provide guidance, technical expertise, and support to team members regarding vulnerability assessments.
  • Develop and enhance key performance indicators (KPIs) and metrics for vulnerability management functions.
  • Engage in and lead new projects as necessary.

Additional duties may be assigned as required.

Reporting Structure:

This position typically reports to an AVP or higher.

Qualifications:

  • Demonstrated experience leading vulnerability management teams with a solid understanding of security concepts and strategies, coupled with the ability to implement them effectively.
  • Hands-on experience with vulnerability management tools and a strong technical background in assessing vulnerabilities across multiple operating systems, databases, and application servers.
  • Excellent written and verbal communication skills, capable of collaborating across all levels of the organization.
  • A high-performance skill set that comprehends threat landscapes in relation to risks and effectively communicates these challenges to teams.
  • Leadership abilities that inspire peak performance within the team, encompassing both direct leadership and cross-functional collaboration.
  • A minimum of 6 years of experience in a vulnerability management program, with expertise in assessing vulnerabilities and driving remediation efforts.
  • Exceptional communication and interpersonal skills to engage effectively with peers, IT leadership, and subordinates, clearly articulating complex technical and business concepts.
  • Ability to report gaps meaningfully, addressing business risks while providing technical solutions for remediation to operational teams.
  • Experience interacting with auditors and regulators.
  • Proficiency in working across public cloud and on-premises hybrid infrastructures.
  • Experience with large-scale vulnerability scanning technologies.
  • Self-motivated with the capacity to make independent decisions and discern when to seek guidance.
  • Fundamental understanding of risk versus severity.
  • Comfortable operating in a diverse technology environment with multiple operating systems and architectures.
  • Aptitude for fostering collaborative, open relationships with technology and other stakeholders.
  • Strong grasp of enterprise, network, system/endpoint, and application-level security issues and risks.
Education:
  • Bachelor's degree in Computer Science or a related field, or equivalent work experience.
  • Typically requires a minimum of ten years of relevant experience in Information Technology.


CNA is dedicated to providing reasonable accommodations to qualified individuals with disabilities throughout the recruitment process. To request an accommodation, please reach out.

  • Chicago, Illinois, United States CNA Insurance Full time

    Job SummaryCNA Insurance is seeking a highly skilled and experienced Vulnerability Management Director to lead our Vulnerability Management program. As a key member of our security team, you will be responsible for spearheading the vision, design, and implementation of our Vulnerability Management program.Key ResponsibilitiesLead the Vulnerability Management...


  • Chicago, Illinois, United States CNA Full time

    Job DescriptionCNA is seeking a seasoned professional to lead our Vulnerability Management program. As a key member of our Information Security team, you will be responsible for spearheading the vision, design, and implementation of our VM program.Key ResponsibilitiesProgram Leadership: Lead the Vulnerability Management program as a subject matter expert,...

  • Vulnerability Analyst

    3 months ago


    Chicago, Illinois, United States TEKsystems Full time

    Description: What You'll doIn this role, you'll contribute to the success of the Bank by facilitating the vulnerability management program across IT and the broader organization. You will apply your passion for security and technology to design and operate technical processes to operate vulnerability scanning on a regular frequency, collaborate with...

  • Vulnerability Analyst

    2 months ago


    Chicago, Illinois, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...

  • Vulnerability Analyst

    3 weeks ago


    Chicago, Illinois, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...


  • Chicago, Illinois, United States The Equus Group Full time

    Job OverviewThe Equus Group is seeking a highly skilled Head of Risk Management to lead the firm's risk management strategy. This individual will oversee all aspects of risk across the firm's real estate investments and operational areas, with particular emphasis on market, credit, operational, insurance, and cybersecurity risks.Key ResponsibilitiesDevelop...

  • Head of Engineering

    2 weeks ago


    Chicago, Illinois, United States Fernwood Property Management, LLC Full time

    Head of Engineering Job OverviewThe Head of Engineering plays a crucial role in ensuring the structural integrity of the facilities while overseeing the functionality of mechanical systems within the buildings. This position involves assessing technical specifications and architectural plans, offering expert guidance, and ensuring adherence to regulatory...


  • Chicago, Illinois, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...


  • Chicago, Illinois, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...


  • Chicago, Illinois, United States The University of Chicago Full time

    Position Overview:The University of Chicago's Department of Surgery, Section of Otolaryngology - Head and Neck Surgery, is seeking dedicated full-time faculty members at various academic ranks.Role Responsibilities:Appointees will focus on the management of both benign and malignant tumors affecting the head and neck region. Responsibilities will also...


  • Chicago, Illinois, United States Live Nation Entertainment Full time

    Overview:As the Head of Risk Management, you will play a pivotal role in steering the renewal process for all casualty and property insurance programs. Your expertise will ensure that the collection of underwriting data is both thorough and precise, safeguarding the integrity of our risk management practices.Key Responsibilities:1. Lead the renewal...


  • Chicago, Illinois, United States Aspen Dental Full time

    Head of Customer Relationship Management - Aspen DentalAspen Dental is a prominent organization in the retail healthcare sector, providing essential support services to a vast network of healthcare professionals and their teams. With a commitment to enhancing consumer healthcare experiences, Aspen Dental operates numerous health and wellness facilities...


  • Chicago, Illinois, United States Aspen Dental Full time

    Head of Customer Relationship Management - Aspen DentalAspen Dental is a prominent organization in the retail healthcare sector, providing essential support services to a vast network of healthcare professionals and their teams. With a commitment to enhancing consumer healthcare experiences, Aspen Dental operates numerous health and wellness facilities...


  • Chicago, Illinois, United States City Colleges of Chicago Full time

    HEAD OF NURSING PROGRAMS CITY COLLEGES OF CHICAGO The City Colleges of Chicago is on the lookout for a Head of Nursing Programs for its esteemed School of Nursing. This role is pivotal in delivering the Basic Nursing Assistant Certification to the community. While the primary operations will be based at one of our colleges, occasional travel to other...

  • Head Chef

    2 weeks ago


    Chicago, Illinois, United States Corecruitment Full time

    Head ChefLocation: Chicago, ILSalary: $90,000 - $110,000About the Employer:A prestigious culinary establishment, celebrated for its exquisite French cuisine and warm ambiance, is in search of a Head Chef to oversee their kitchen operations. This position offers an exceptional chance to lead a team in a prominent dining venue, featuring ample growth...


  • Chicago, Illinois, United States Archer-Daniels-Midland Company - ADM Full time

    Position OverviewThe Head of Insurance and Risk Management will report directly to the Deputy General Counsel of ADM and collaborate closely with the Treasury team. This role is pivotal in overseeing ADM's comprehensive corporate insurance strategy.Key ResponsibilitiesManage and administer all corporate insurance policies.Lead the annual risk assessment...

  • Head Host

    2 weeks ago


    Chicago, Illinois, United States Tre Dita Full time

    Position OverviewWe are seeking a dedicated Head Host to enhance our guest experience.Benefits of Joining Our Team:Exclusive Dining DiscountsEmployee Wellness ProgramsPaid Time Off for Eligible StaffComprehensive Medical CoverageVision and Dental PlansLife and Accident Insurance401(k) Retirement PlanAbout Tre Dita: Tre Dita is a culinary venture that...


  • Chicago, Illinois, United States Expedia , Inc. Full time

    If you require assistance during the recruitment process due to a disability, please contact our Recruiting Accommodations Team through the Accommodation Request form. This form is exclusively for individuals with disabilities who need support or adjustments in applying and interviewing for a position.Position: Head of Security Compliance ManagementAt...

  • Head Chef

    2 weeks ago


    Chicago, Illinois, United States Ema Full time

    About Ema:Ema is a Mediterranean dining establishment that emphasizes a lighter California culinary approach, utilizing local produce and distinctive spices.Position Overview:Ema Chicago is seeking a Head ChefWe are in search of a Head Chef with a minimum of 2 years of relevant experience in a culinary leadership role. Our organization values its team...


  • Chicago, Illinois, United States Northwestern University Feinberg SoM - Dept of Otolaryngology Head and Neck Surgery Full time

    The Department of Otolaryngology – Head & Neck Surgery at Northwestern University Feinberg School of Medicine seeks a full-time tenure track Investigator at the rank of Assistant Professor or above in the area of Hearing Research. Responsibilities include the following: Building and establishing a strong independent research program. Securing extramural...