Lead Director of Vulnerability Remediation and Reporting

3 weeks ago


Reston, Virginia, United States CVS Health Full time
Job Summary

CVS Health is seeking a highly skilled and experienced Lead Director of Vulnerability Remediation and Reporting to join our team. As a key member of our cybersecurity team, you will be responsible for protecting our organization's assets and reputation by ensuring that identified security vulnerabilities are effectively addressed in a timely manner.

Key Responsibilities
  • Provide strategic and operational leadership for vulnerability remediation and reporting, including generating roadmaps and driving operational excellence.
  • Establish frameworks to ensure consistent and effective vulnerability remediation practices.
  • Define OKRs, KRI's, and deliver reports on vulnerability management metrics and compliance to senior leadership and stakeholders.
  • Work closely with governance, risk, and compliance teams to assess the impact of identified vulnerabilities on the organization's risk profile.
  • Implement contextual risk remediation prioritization based on several key risk factors, including regulatory compliance requirements, environmental risk information, and risk severity.
  • Collaborate with key stakeholders to understand risk drivers, vulnerability remediation blockers, and ensure that vulnerabilities are assigned to the correct remediation stakeholders.
  • Partner with IT, security, and business teams to ensure that vulnerability remediation efforts align with business objectives and operational requirements.
  • Facilitate communication between technical and non-technical stakeholders to ensure understanding and alignment on remediation priorities.
  • Establish and maintain communication with the organization's executives, department heads, and end users regarding pertinent vulnerabilities and risks.
  • Lead for vulnerability remediation audit mandates, policies, control standards, and requirements.
  • Lead, mentor, and develop a team of security professionals focused on vulnerability management and remediation.
  • Experience with regulatory frameworks and standards, including NIST, SOX, PCI-DSS, and internal standards to support compliance, security, and risk management objectives.
  • Regularly benchmark against published standards and best practices for technology systems and cybersecurity practices.
  • Create colleague self-service dashboards, prepare and deliver executive-level reports, and present risk information to leadership.
Requirements
  • 10+ years of professional experience executing vulnerability management, specifically in vulnerability remediation, vulnerability risk assignment, and risk reporting.
  • 10+ years of leadership experience developing and leading a workforce of cybersecurity experts.
  • Deep understanding of security controls and alignment to regulatory compliance, including NIST, ISO, HITRUST, HIPAA, and PCI.
  • Technical understanding of vulnerability scanning, patching, and penetration testing technologies and processes.
  • Working knowledge of risk data analysis, dashboards, and visualization, and executive risk reporting.
Preferred Qualifications
  • Foster a collaborative team environment that encourages innovation and professional growth.
  • Excellent communication and interpersonal skills, both verbal and written.
  • Ability to create and execute a vision, motivating others to adopt strategies in collectively moving the organization forward.
  • Strong business understanding, with the ability to leverage technology to solve business and technical issues.
  • Solid presentation skills, with the ability to prepare briefings and present technical information to technical and non-technical audiences.
  • Develop and manage relationships with internal and external customers, suppliers, and departments to ensure cohesive and collaborative communication.
  • Excellent analytical and problem-solving skills.
  • Ability to successfully manage multiple, concurrent projects, with a track record of completing projects successfully on time and on budget.
  • Ability to ensure the effective achievement of team objectives by managing staff and product providers.
Education

Bachelor's degree from an accredited university or equivalent work experience (HS diploma + 4 years relevant experience).



  • Reston, Virginia, United States LanceSoft, Inc. Full time

    Job Title: Cybersecurity Vulnerability AnalystJob Summary:LanceSoft, Inc. is seeking a highly skilled Cybersecurity Vulnerability Analyst to join our team. As a key member of our security team, you will play a critical role in ensuring our systems meet compliance and security standards.Key Responsibilities:Analyze vulnerability scan data and security...


  • Reston, Virginia, United States Analytica Enterprise Solutions Full time

    Role: Vulnerability Management SpecialistLocation: OnsiteDuration: 6 monthsJob Overview:We are seeking a skilled Vulnerability Management Specialist to join our team at Analytica Enterprise Solutions. As a key member of our security team, you will be responsible for performing comprehensive vulnerability assessments and continuous monitoring across the...

  • Security Lead

    2 weeks ago


    Reston, Virginia, United States Terp Techs Full time

    Job SummaryTerp Techs LLC is seeking a highly skilled Security Lead to join our team. As a key member of our security team, you will be responsible for analyzing information security systems and applications, recommending and developing security measures to protect information against unauthorized modification or loss.Key ResponsibilitiesAnalyze information...

  • Senior Sales Manager

    3 weeks ago


    Reston, Virginia, United States Orama Solutions Full time

    Job Title: Senior Sales Manager - Vulnerability MarketJob Summary:Orama Solutions is seeking a highly motivated and experienced Senior Sales Manager to lead the expansion into the vulnerability market. As a key member of the sales team, you will be responsible for developing and executing a comprehensive sales strategy to penetrate the new territory and...


  • Reston, Virginia, United States Houston ISD Full time

    Job SummaryThe Director of Accountability and Reporting will lead the development and implementation of the district's reporting plan, ensuring timely and accurate data for district decision-making. This role will oversee the work of multiple staff members, champion evidence-based best practices, and collaborate across departments to improve student outcomes...


  • Reston, Virginia, United States Solo Brands Full time

    Director of Financial Reporting and SEC ComplianceThe Director of Financial Reporting and SEC Compliance is a critical role that oversees the external financial reporting process, ensuring compliance with SEC regulations and supporting internal stakeholders with financial information. This position requires a highly skilled professional with experience in...

  • AWS EMR Developer

    3 weeks ago


    Reston, Virginia, United States Synechron Full time

    Job Title: AWS EMR Developer - Healthcare Informatics Vulnerability Resolution SpecialistLocation: Piscataway, NJJob Description: We are seeking an experienced AWS EMR Developer to join our team in the healthcare informatics sector. The successful candidate will be responsible for identifying and resolving security vulnerabilities within our AWS EMR...


  • Reston, Virginia, United States Veracity Engineering Full time

    Job Title: Lead Offensive Security EngineerAbout the Role:Veracity Engineering is seeking a highly skilled Offensive Security Engineer to join our cybersecurity team. This role is crucial in executing sophisticated offensive security operations, including red teaming, penetration testing, and tailored cybersecurity exercises. As an Offensive Security...


  • Reston, Virginia, United States Solo Brands Full time

    Director of Financial Reporting and SEC ComplianceThe Director of Financial Reporting and SEC Compliance plays a critical role in ensuring the accuracy and compliance of financial reporting for Solo Brands. This position requires a highly skilled professional with experience in financial reporting, technical accounting, and strong knowledge of U.S. GAAP and...


  • Reston, Virginia, United States XM Cyber Full time

    XMCyber is a leading hybrid cloud security company that's changing the way organizations approach cyber risk. Our company transforms exposure management by demonstrating how attackers leverage and combine misconfigurations, vulnerabilities, identity exposures, and more, across cloud and on-prem environments to compromise critical assets. With our company,...

  • System Administrator

    3 weeks ago


    Reston, Virginia, United States StarOrigin Business Solutions Full time

    Job Title: System AdministratorJob Summary:We are seeking a highly skilled System Administrator to join our team at StarOrigin Business Solutions. As a System Administrator, you will be responsible for providing timely and efficient support to assigned operations, troubleshooting DNS Service and DNS resolution issues, and assisting in the management and...


  • Reston, Virginia, United States ICF International Inc Full time

    Job Title: Senior Toxicology Report Development LeadWe are seeking a highly skilled Senior Toxicology Report Development Lead to join our team at ICF International Inc. This is a unique opportunity to work with a dynamic group of science professionals who provide toxicology, hazard assessment, epidemiology, risk assessment, exposure assessment, environmental...


  • Reston, Virginia, United States Ayuda Companies Full time

    About Ayuda CompaniesAyuda Companies is a reputable small business providing expertise and innovation across the environmental, restoration, and compliance service sectors nationwide. We support the Department of Defense, NASA, and various commercial clients.Job DescriptionWe are seeking a highly skilled Contractor Quality Control Supervisor to join our...


  • Reston, Virginia, United States ICF International Inc Full time

    Job SummaryWe are seeking a highly skilled Senior Toxicology Report Development Lead to join our team at ICF International Inc. This role will involve leading the development of toxicology reports, including writing abstracts, methods, and results sections, as well as reviewing toxicological conclusions and synthesizing findings into a weight-of-evidence...


  • Reston, Virginia, United States ICF International Inc Full time

    Job Title: Senior Toxicology Report Development LeadWe are seeking a highly skilled Senior Toxicology Report Development Lead to join our team at ICF International Inc. This is a unique opportunity to work with a dynamic group of science professionals who specialize in identifying and quantifying the effects of environmental pollutants on human health and...


  • Reston, Virginia, United States Aimic Inc Full time

    Cybersecurity Program ManagerAbout the Role:We are seeking a highly skilled Cybersecurity Program Manager to join our team at Aimic Inc. The successful candidate will be responsible for leading and managing cybersecurity initiatives, ensuring the security posture of our organization, and developing and implementing effective security strategies.Key...


  • Reston, Virginia, United States JCW Full time

    Cyber Resiliency Operations RoleOur client, a leading global bank, is building a robust cyber resiliency program and seeking a seasoned cyber operations professional to lead the team. As a Cyber Resiliency Operations Director, you will be responsible for ensuring operational readiness against cyber threats and incidents. You will lead a team of experts in...


  • Reston, Virginia, United States Lead Candidate Full time

    Director of QualityAbout the RoleLead Candidate is seeking an experienced Director of Quality to join their team. As a key member of the organization, you will be responsible for overseeing the improvement efforts for Quality, guided by information about the quality system in the form of findings, deviations, and quality trending analysis.Key...


  • Reston, Virginia, United States PRI Technology Full time

    The Cyber Risk Management Director at PRI Technology is responsible for developing and executing the organization's third-party cyber risk management program. This role ensures that all third-party relationships comply with regulatory requirements, align with corporate cyber policies, and meet the organization's risk management standards.Key...


  • Reston, Virginia, United States Orama Solutions Full time

    Job Title: Regional Sales DirectorLocation: Los Angeles Metropolitan AreaJob Description:A seasoned sales professional is sought to spearhead the expansion into a brand new territory within the vulnerability market. This role presents an exciting opportunity to develop and execute a comprehensive sales strategy in a greenfield market, where you will play a...