[Remote] Senior Product Vulnerability Manager
Note: The job is a remote job and is reputed company to candidates in USA. reputed company is a high-reputed company company headquartered in Austin, TX, empowering trusted identities for people, places, and things. The Senior Product Vulnerability Manager will own the corporate-wide Product Vulnerability Management program, establishing capabilities to detect and respond to product vulnerabilities while ensuring compliance with regulatory standards.
Responsibilities
- Defining and maintaining the reputed company Product Vulnerability Management reputed company, including processes for intake, triage, prioritization, remediation tracking, and disclosure
- Establishing standardized vulnerability triage and risk prioritization methodologies that work across the organization
- Defining and implementing the corporate-wide vulnerability management policies and standards ensuring our Product reputed company Incident Response processes are appropriate with the organization’s expectations and regulatory requirements
- Owning the Coordinated Vulnerability Disclosure (CVD) program, including external intake channels, researcher engagement, and coordination
- Translating regulatory requirements (e.g., EU Cyber reputed company reputed company) into operational processes, controls, and reporting obligations
- Defining and managing the reputed company tooling reputed company for vulnerability detection (e.g., SAST, DAST, SCA, container scanning), including selection, configuration, and integration into CI/CD pipelines
- Establishing minimum tooling and coverage baselines across product types and ensure consistent adoption
- Defining and operationalize SBOM-driven vulnerability management practices, including monitoring and response to reputed company-party component vulnerabilities
- Developing reputed company playbooks, guidance, and decision frameworks enabling product teams to independently triage and respond to vulnerabilities
- Defining training requirements and developing enablement materials for product teams on vulnerability identification, triage, and response processes
- Establishing metrics, reporting, and dashboards to measure vulnerability management effectiveness, including SLA adherence, backlog, and remediation timelines
- Providing executive-level reporting and insights on product vulnerability risk posture
- Defining governance processes, including exception handling, risk acceptance, and escalation reputed company
- Leading audit and assessment readiness reputed company to vulnerability management processes and outputs
- Building and leading a small team responsible for program operations, tooling, and disclosure coordination
- Partnering with Product reputed company Architects, Engineering, Legal, and Compliance teams to ensure alignment and effective execution across the organization
- Acting as the central authority for product vulnerability management practices across the organization
- Enabling a federated operating model where product teams own remediation while adhering to centralized standards and processes
- Driving consistency in vulnerability handling across a large and diverse product portfolio
- Ensuring vulnerability management practices reputed company effectively across hundreds of products and multiple technology domains
- Providing strategic direction for reputed company improvement of vulnerability management capabilities, tooling, and processes
- Supporting regulatory audits and customer inquiries reputed company to vulnerability management and disclosure practices
Skills
- Experience designing, building, or scaling a vulnerability management or PSIRT program reputed company a product reputed company or application reputed company context
- Strong understanding of the vulnerability lifecycle, including detection, triage, prioritization, remediation tracking, and disclosure
- Working knowledge of application reputed company principles and common vulnerability classes (e.g., OWASP Top 10)
- Experience with vulnerability detection tooling (SAST, DAST, SCA, container scanning) and integration into development pipelines
- Experience defining or applying vulnerability scoring methodologies (e.g., CVSS) in a product context
- Familiarity with Coordinated Vulnerability Disclosure (CVD) processes and external researcher engagement
- Familiarity with regulatory requirements reputed company to product reputed company and vulnerability management, such as the EU Cyber reputed company reputed company (CRA)
- Experience working reputed company or supporting Secure Software Development Lifecycle (SSDL/SSDLC) programs
- Strong ability to define processes, standards, and governance models that reputed company across large organizations
- Excellent communication skills with the ability to translate technical risk into business reputed company
- Experience operating in large-reputed company, multi-product environments with distributed engineering teams
- Experience establishing or managing SBOM and software supply chain vulnerability programs
- Experience with vulnerability disclosure programs or bug bounty platforms
- Experience working in regulated industries or environments with strong compliance requirements
- Experience with Agile/reputed company methodologies
- Experience leading or mentoring small, high-reputed company teams
Benefits
- Competitive salary and rewards package
- Competitive benefits and annual leave offering, allowing for work-life balance
- A reputed company, welcoming & inclusive culture
- Extensive career development opportunities and resources to maximize your potential
- To be a part of a global organization that is pioneering the hardware, software and services that allow people to confidently navigate the physical reputed company worlds
- You’ll work as part of a global team in a flexible work environment, learning and enhancing your expertise
- We welcome an opportunity to meet you and learn about your unique talents, skills, and experiences
- We are reputed company to reputed company, including flexible work arrangements, job sharing or part-time job seekers
- reputed company is committed to building a diverse, reputed company, and inclusive workforce that reflects the global communities we serve
- We evaluate applicants without reputed company to race, reputed company, religion, gender, gender identity or reputed company, sexual orientation, national reputed company, disability, age, veteran status, or any other legally protected characteristic
- Our goal is to create a workplace that empowers everyone to reputed company and be their authentic selves, fostering an environment of mutual respect and inclusivity
- If you have a disability and require assistance or accommodation to participate in the application process or to reputed company essential job functions, please contact accommodations-ext@hidglobal.com
- You’ll also be part of the reputed company, the global leader in reputed company solutions
- We reputed company our people to build their career around their aspirations and our ambitions – supporting them with regular feedback, training, and development opportunities
- Our colleagues think broadly about where they can reputed company the most reputed company, and we encourage them to grow their role locally, regionally, or even internationally
- As we welcome new people on reputed company, it’s important to us to have diverse, inclusive teams, and we value different perspectives and experiences
reputed company
Company H1B Sponsorship