Salary: Depends on Qualifications
Location : Houston, TX
Job Type: Regular Full-time
Job Number: 16182
Department: Universal Services
Opening Date: 02/03/2026
Closing Date: 8/20/2026 11:59 PM Central
Max Number of Applicants: 200
Position DescriptionPosition Overview:The Manager, Threat & Vulnerability Management (TVM) is responsible for safeguarding Harris County's information systems and critical assets by leading the strategy, execution, and continuous improvement of the Threat & Vulnerability Management program. This role provides both strategic oversight and hands-on leadership for projects, services, and personnel within the Cybersecurity Threat & Vulnerability team, ensuring effective identification, prioritization, and remediation of security risks across the organization. The TVM Manager collaborates closely with infrastructure, SOC, GRC, and business stakeholders to align vulnerability management activities with county wide cybersecurity objectives, regulatory requirements, and risk-based decision-making.
Job Responsibilities:- Manage daily administrative functions and performance evaluations for direct reports within the Threat & Vulnerability Management scope of work.
- Ensure the timely and high-quality delivery of Cybersecurity services, including:
- Vulnerability Scanning & Remediation
- Threat & Vulnerability Advisory
- Daily Threat Monitoring & Response
- Incident Response
- Firewall Change Requests Review and relevant approvals
- Lead or support projects such as multi-factor authentication, advanced threat protection, cloud security, web filtering, web application testing, SOC development, artificial intelligence, centralized logging/SIEM, etc.
- Communicate security vulnerabilities and risk impacts effectively to stakeholders and support mitigation efforts.
- Analyze vulnerability data for root cause analysis and trend identification.
- Design and implement long-term solutions to systemic security issues.
- Act as a subject matter expert on complex technical and business projects.
- Support Cybersecurity Incident Response Team (CIRT) investigations and resolution efforts.
- Review and refine cybersecurity policies in partnership with the C(ISO), standards, and procedures for strategic alignment.
- Evaluate and select cybersecurity products and vendors through proof-of-concepts and formal assessments.
- Oversee the development of documentation and training materials, including:
- Project plans
- Executive presentations
- Technical reference documents
- Training/job aids
- Architecture diagrams
- Ensure consistent use of cybersecurity procedures and tools for vulnerability management and reporting.
- Stay informed about global threat landscapes, emerging technologies, and trends, and apply them to county operations.
- Balance business needs with security requirements and communicate tradeoffs clearly.
- Mentor junior managerial and technical staff.
- Perform other duties as assigned.
RequirementsEducation:- High school diploma or G.E.D. from an accredited institution.
Experience:- Minimum five (5) years of progressive work experience in Information Security, IT, Computer Science, or a related field.
Knowledge, Skills, & Abilities:- Proven leadership experience managing a team of 5 or more.
- Expertise in designing and implementing security technologies from concept to deployment.
- Strong interpersonal and communication skills for collaborating across departments.
- Strong Experience with Leadership reporting, Vulnerability assessments, Incident Management & SOC coordination.
NOTE: Qualifying education, experience, knowledge, and skills must be documented on your job application. You may attach a resume to the application as supporting documentation but
ONLY information stated on the application will be used for consideration. "See Resume" will not be accepted for qualifications. PreferencesEducation:- Bachelor's degree from an accredited institution.
Certifications:- GIAC GVM / GREM / GCED
- CEH (or better: hands-on offensive experience)
- Vendor certs:Rapid7, SentinelOne / Defender
One or more of the following certifications:- Certified Information Systems Security Professional (CISSP)
- Global Information Assurance Certification (GIAC)
- CompTIA Security+
Experience:Hands-on experience with:- Vulnerability scanning and penetration testing tools
- Security event monitoring and response platforms
- Threat intelligence gathering and analysis
- Experience in CIRT or other incident response efforts.
- Strong organizational skills and ability to manage multiple priorities.
- Ability to resolve challenges through consensus and influence.
- Excellent technical writing, analytical, and problem-solving skills.
- Enthusiasm for cybersecurity and ability to thrive in a collaborative environment.
- Broad understanding of cybersecurity frameworks (e.g., NIST, CIS Controls) and compliance regulations (e.g., PCI, HIPAA, CJIS).
General InformationLocation:- 406 Caroline Street, Houston, TX 77002
Work Arrangements:- Hybrid - Specific schedule will be discussed with your direct Manager.
- 8 hours/days with on-call possibilities
Due to a high volume of applications positions may close prior to the advertised closing date or at the discretion of the Hiring Department.HARRIS COUNTY EMPLOYEE BENEFITSHarris County offers a highly competitive benefits program, featuring a comprehensive group health plan and defined benefit retirement plan.
The following benefits are offered
only to Harris County employees in
regular (full-time) positions:
Health & Wellness Benefits
- Medical Coverage
- Dental Coverage
- Vision Coverage
- Wellness Plan
- Life Insurance
- Long-Term Disability (LTD) Insurance
- Employee Assistance Program (EAP)
- Healthcare Flexible Spending Account
- Dependent Care Flexible Spending Account
Paid Time Off (PTO)
- Ten (10) days of vacation leave per year (accrual rate increases after 5 years of service)
- Eleven (11) County-observed holidays
- One (1) floating holiday per year
- Paid Parental Leave*
- Sick Leave
Retirement Savings Benefit
- 457 Deferred Compensation Plan
The following benefits are available to Harris County employees in
full-time and select
part-time positions:
- Professional learning & development opportunities
- Retirement pension (TCDRS defined benefit plan)
- Flexible work schedule*
- METRO RideSponsor Program*
* Participation may vary by County department. The employee benefits plans of Harris County are extended to all eligible participants across various departments with the exception of the Harris County Community Supervision and Corrections Department, for which the cited Health & Wellness Benefits are administered through the State of Texas.
In accordance with the Harris County Personnel Regulations, group health and related benefits are subject to amendment or discontinuance at any time. Harris County Commissioners Court reserves the right to make benefit modifications on the County's behalf as needed.
For plan details, visit the Harris County Benefits & Wellness website:01
Which of the following best describes your highest level of education completed as it relates to this position?Qualifying information must be documented in the Education section of your application.
- High School or GED diploma
- Associate Degree
- Bachelor's Degree
- Master's Degree or higher
- None of the above
02
Please describe your educational background including level of education completed, area of study and completed major and minor programs.
03
Which of the following best describes your verifiable progressive work experience in Information Security, IT, Computer Science, or a related field?(To be considered, qualifying experience must be documented in your application's employment history)
- Less than five (5) years
- Five (5) years but less than six (6) years
- Six (6) years but less than seven (7) years
- Seven (7) years or more
- I do not have this experience
04
Please provide the dates of employment during which you obtained experience working in Information Security, IT, Computer Science, or a related field. Provide the month and year that began and ended the experience ( Example: "January 2020 - December 2025" ) If this experience is not clearly documented in the Work Experience section, your application will be disqualified. If you do not have this experience, type "N/A" in the space provided.
05
Which of the following professional certifications do you currently hold? Select all that apply:
- Certified Information Systems Security Professional (CISSP)
- Global Information Assurance Certification (GIAC)
- CompTIA Security+
- N/A; None of the above
06
Do you have any of the following certifications?Select all that apply:
- GIAC (Global Information Assurance Certification)
- GREM (Reverse Engineering Malware)
- GCED (Certified Enterprise Defender)
- CEH (Certified Ethical Hacker) (or better: hands-on offensive experience)
- Vendor certs: Rapid7, SentinelOne / Defender
- N/A; None of the above
Required Question