Senior Vulnerability Manager

Activision Blizzard, Inc.

$101K — $186K *
US-AnywhereRemote in Maryland, US
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a relevant field or equivalent practical experience.
  • Experience in vulnerability management or a similar cybersecurity role.
  • Strong understanding of vulnerability management principles and risk-based prioritization.
  • Familiarity with enterprise vulnerability scanning platforms and exposure management tools.
  • Ability to communicate technical findings effectively to diverse stakeholders.
  • Demonstrated coordination skills across various technical teams and business units.
  • Proficiency in using ticketing or project management systems for tracking remediation.

Responsibilities

  • Coordinate vulnerability findings and lead remediation efforts for zero-day vulnerabilities.
  • Manage high-visibility remediation tasks with ownership and accountability.
  • Enhance vulnerability management workflows in various environments.
  • Conduct risk-based analysis and prioritize findings based on exploitability and asset criticality.
  • Collaborate with different teams to improve remediation timelines for critical vulnerabilities.
  • Translate technical risk into clear updates for stakeholders at all levels.
  • Establish and maintain standards for severity and remediation processes.

Benefits

  • Comprehensive medical, dental, and vision insurance.
  • 401(k) plan with company match and tuition reimbursement.
  • Paid holidays, vacation, and sick time along with parental leave.
  • Mental health and wellbeing programs, including fitness initiatives.
  • Relocation assistance for candidates moving for the role.
Full Job Description
Job Title:
Senior Vulnerability Manager

Requisition ID:
R027699

Job Description:

Location: Remote

Department: Global Xbox Security

Hiring Manager: Senior Manager, Threat Detection and Incident Response

Overview

Global Xbox Security is seeking a Senior Vulnerability Management Engineer to help identify, assess, prioritize, and drive remediation of security weaknesses across infrastructure, endpoints, cloud services, applications, and supporting technologies in a large, complex enterprise environment.

In addition to core vulnerability management responsibilities, this role has a specialized focus on vulnerabilities, risk assessments, and remediation efforts for "zero day" and actively exploited vulnerabilities.

The ideal candidate combines technical depth with strong programmatic thinking, clear written and verbal communication, and the ability to coordinate effectively across technical teams, business stakeholders, and leadership audiences to move sensitive remediation efforts forward.

Key Responsibilities
  • Serve as a primary coordinator for vulnerability findings, risk assessments, and remediation efforts for "zero day" and actively exploited vulnerabilities.
  • Manage high-visibility remediation taskings from central security functions, senior leadership, or strategic stakeholders, ensuring clear ownership, accountability, and follow-through.
  • Operate and improve vulnerability management workflows across on-premises, cloud, hybrid, and endpoint environments.
  • Perform vulnerability triage, validation, prioritization, and risk-based analysis using exploitability, asset criticality, exposure, compensating controls, and threat context.
  • Partner with infrastructure, application, platform, and business teams to coordinate remediation activities and improve time-to-remediate for critical and high-risk findings.
  • Translate technical risk into actionable guidance, executive-ready updates, and concise remediation narratives for stakeholders with varying levels of technical expertise.
  • Help define and maintain severity, prioritization, remediation, and exception-handling standards, including service level objectives and escalation paths.
  • Validate remediation through rescans, targeted testing, or review of supporting evidence, and improve data quality, reporting, and lifecycle tracking.
  • Support reporting and metrics for program health, including remediation aging, SLA adherence, exception tracking, recurring exposure trends, and sensitive issue status.
  • Identify opportunities to automate vulnerability intake, enrichment, ticketing, prioritization, reporting, and stakeholder notifications.
  • Contribute to security policies, standards, and operational procedures related to patch governance, exposure management, and exception handling.


Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent practical experience.
  • Experience in vulnerability management, security operations, detection engineering, systems administration, or a closely related cybersecurity function.
  • Strong understanding of vulnerability management principles, including CVSS, exploitability, remediation validation, compensating controls, and risk-based prioritization.
  • Experience with enterprise vulnerability scanning or exposure management platforms.
  • Familiarity with operating systems, enterprise infrastructure, cloud environments, networking fundamentals, and common security architectures.
  • Ability to analyze technical findings and communicate risk, remediation guidance, and prioritization decisions to technical and non-technical stakeholders.
  • Demonstrated ability to coordinate across a broad range of teams and communicate credibly in high-visibility or time-sensitive situations.
  • Experience using ticketing, workflow, or project management platforms to track remediation and exception handling.
  • Strong analytical, organizational, and problem-solving skills.


Preferred Qualifications
  • 5+ years of experience in vulnerability management or a closely related cybersecurity role, preferably in a large enterprise environment.
  • Experience supporting executive-visible security initiatives, escalations, or high-priority remediation efforts.
  • Experience operating within a Fortune 100 or similarly complex enterprise and working across centralized security functions and federated business units.
  • Familiarity with cloud platforms such as Azure, AWS, or GCP.
  • Experience correlating vulnerability data with threat intelligence, exploit telemetry, or security event data.
  • Experience with scripting or automation using Python, PowerShell, Bash, or similar languages.
  • Experience integrating vulnerability tooling with SIEM, SOAR, CMDB, ITSM, asset inventory, or ticketing systems.
  • Knowledge of patch management, change management, remediation governance, and container or cloud workload vulnerability assessment.
  • Relevant certifications such as Security+, CySA+, GSEC, CISSP, or similar.


Rewards

We provide a suite of benefits that promote physical, emotional and financial well-being for 'Every World' - we've got our employees covered! Subject to eligibility requirements, the Company offers comprehensive benefits including:
  • Medical, dental, vision, health savings account or health reimbursement account, healthcare spending accounts, dependent care spending accounts, life and AD&D insurance, disability insurance;
  • 401(k) with Company match, tuition reimbursement, charitable donation matching;
  • Paid holidays and vacation, paid sick time, floating holidays, compassion and bereavement leaves, parental leave;
  • Mental health & wellbeing programs, fitness programs, free and discounted games, and a variety of other voluntary benefit programs like supplemental life & disability, legal service, ID protection, rental insurance, and others;
  • If the Company requires that you move geographic locations for the job, then you may also be eligible for relocation assistance.


Eligibility to participate in these benefits may vary for part time and temporary full-time employees and interns with the Company. You can learn more by visiting https://www.benefitsforeveryworld.com/.

In the U.S., the standard base pay range for this role is $101,000.00 - $186,754.00 Annual. These values reflect the expected base pay range of new hires across all U.S. locations. Ultimately, your specific range and offer will be based on several factors, including relevant experience, performance, and work location. Your Talent Professional can share this role's range details for your local geography during the hiring process. In addition to a competitive base pay, employees in this role may be eligible for incentive compensation. Incentive compensation is not guaranteed. While we strive to provide competitive offers to successful candidates, new hire compensation is negotiable.

Similar Jobs

More Jobs at Activision Blizzard, Inc.

More Information Technology Jobs

Find similar Senior Vulnerability Manager jobs: