Your impact: The Sr Manager, Security (Threat and Vulnerability Management) will lead and drive the vulnerability management strategy across our global infrastructure. This hands-on leadership position is pivotal in protecting our company's digital assets, client data, and business operations through proactive threat identification, continuous exposure management, and robust security assessments. You will mature how we identify, analyze, and prioritize vulnerabilities across our traditional, cloud, and containerized environments. Leading a team of security professionals, you will collaborate with stakeholders across IT, Development, and Cloud Operations to strengthen vulnerability management processes and drive risk reduction across the enterprise.
What the role offers:- Managing and continuously improving the enterprise vulnerability management program by prioritizing remediation efforts based on business impact, threat intelligence, and asset criticality.
- Providing hands-on leadership to oversee the continuous security scanning of both network infrastructure and cloud-native containers.
- Modernizing the Threat and Vulnerability Management (TVM) function by driving automation and integrating AI-capable technologies to streamline scanning workflows and predictive analysis.
- Overseeing the implementation of automated vulnerability scanning tools and contextual risk-scoring frameworks to eliminate security blind spots.
- Managing vulnerability scanning platforms and risk-prioritization processes to improve visibility and support remediation efforts.
- Deploying specialized vulnerability management tools for containerized environments across global cloud platforms such as GCP, AWS, and Azure.
- Supporting strict compliance with key regulations (PCI, SWIFT, CyberEssentials+, FedRAMP) through ongoing vulnerability scanning, monitoring, and evidence reporting.
- Developing and maintaining KPIs, risk metrics, and reporting to measure program effectiveness and communicate vulnerability trends to stakeholders and leadership.
- Working in a fast-paced and changing environment while gracefully handling multiple tasks, shifting priorities, and parallel directives.
- Leading, developing, coaching, and evaluating a technical team while establishing goals, supporting career development, and ensuring successful delivery of team objectives.
What you need to succeed:- Deep understanding of the vulnerability management lifecycle and experience maximizing the capabilities of enterprise scanning architectures (such as Qualys, Prisma, and Nessus).
- Demonstrated ability to evaluate and adopt new vulnerability management technologies, automation capabilities, and industry best practices.
- Strong technical knowledge of security frameworks (NIST, ISO 27001, CIS) and implementing automated container vulnerability scanning guardrails within modern CI/CD pipelines.
- Proven ability to partner with development, infrastructure, and application teams to drive remediation efforts and reduce organizational risk.
- Exceptional communication skills with a track record of clearly presenting security posture, metrics, and technical risks to senior leadership and non-technical audiences.
- 8+ years of information security experience, including 3+ years leading vulnerability management, security operations, security engineering, or related security teams.
- Expertise in risk assessment, including developing risk acceptance frameworks, tracking compensating controls, and designing scalable risk treatment plans.
- Bachelor's degree in Computer Science, Information Security, or a related field; CISSP, CISA, or CISM certifications preferred.
- Success in building collaborative relationships across IT, Development, and Business teams to drive steady-state progress on risk reduction in dynamic environments.
Compensation: At OpenText, we offer a thoughtfully designed benefits package that supports your physical, emotional, and financial wellbeing. As you move through the hiring process, we're happy to provide more details about our compensation programs, including variable and commission compensation opportunities for eligible roles, vacation entitlement, and paid time off.