Preference will be given to candidates residing in the Eastern or Central time zones.
As a Senior Manager, CTEM & Vulnerability Management, you will lead the enterprise Continuous Threat Exposure Management (CTEM) and Vulnerability Management function across enterprise IT, cloud, operational technology (OT), and product environments. You will partner with Product Security, Threat Intelligence, Security Operations, Infrastructure, Cloud, and Engineering teams to reduce exposure through risk-based discovery, prioritization, validation, and remediation.
What you will do:
Technical Responsibilities:
• Lead the enterprise CTEM and Vulnerability Management program, including its strategy, roadmap, and operating model.
• Oversee vulnerability scanning and assessment across infrastructure, cloud, endpoint, application, identity, network, and OT environments.
• Manage the product security vulnerability lifecycle with Product Security, including intake, triage, risk assessment, remediation tracking, software bill of materials (SBOM) analysis, and coordinated vulnerability disclosure support.
• Prioritize vulnerabilities and exposures using CVSS, EPSS, CISA Known Exploited Vulnerabilities (KEV), threat intelligence, asset criticality, and business context.
• Lead attack surface management, exposure validation, and breach and attack simulation activities to confirm exploitability and control effectiveness.
• Evaluate emerging vulnerabilities, exploits, and threat intelligence affecting enterprise systems, marketed products, and embedded systems.
• Drive automation for vulnerability discovery, data enrichment, ticketing, remediation workflows, and reporting through SOAR platforms, APIs, Python, or PowerShell.
• Support cyber incident investigations with vulnerability context, exposure analysis, and remediation expertise.
Leadership & People Management Responsibilities:
• Partner with Infrastructure, Cloud, Application, Product Security, and Engineering teams to establish risk-based service-level agreements, drive remediation, and track plans of action and milestones.
• Establish governance standards, quality assurance procedures, and documentation for vulnerability and exposure management operations.
• Measure and report exposure reduction, remediation performance, validation results, and operational metrics to executive stakeholders.
• Lead vulnerability management, exposure management, or product security vulnerability teams.
Knowledge and Capabilities:
• Analyze complex vulnerability data and large volumes of exposure telemetry to identify risk and guide response.
• Translate technical findings, remediation status, and risk trends into clear written, verbal, and presentation-ready updates for technical and executive audiences.
What You Need:
Required Qualifications
• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
• Minimum 10 years of experience in cybersecurity.
• Minimum 3 years of experience leading vulnerability management, exposure management, or product security vulnerability teams.
• Experience managing product vulnerabilities, including triage, coordinated vulnerability disclosure, SBOM analysis, and remediation with product engineering teams.
• Experience with Tenable, Qualys, Rapid7, Wiz, ServiceNow Vulnerability Response, or equivalent vulnerability and exposure management technologies.
• Experience implementing automation through SOAR platforms, APIs, Python, or PowerShell.
Preferred Qualifications
• Master's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
• CISSP, CISM, GEVA, GPEN, GIAC, Tenable, Qualys, or equivalent professional certification.
United States of America Pay Ranges:
- USN: $155,900 - $259,700 USD Annual
- US5: $163,700 - $272,700 USD Annual
- US10: $171,500 - $285,700 USD Annual
- US15: $179,300 - $298,700 USD Annual
- US20: $187,100 - $311,600 USD Annual
- US30: $202,700 - $337,600 USD Annual
Travel Percentage: NoneStryker Corporation is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected veteran status. Stryker is an EO employer – M/F/Veteran/Disability.Stryker Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.
Skills Required
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline
- At least 10 years of cybersecurity experience
- At least 3 years leading vulnerability management, exposure management, or product security vulnerability teams
- Experience managing product vulnerabilities, including triage, coordinated vulnerability disclosure, SBOM analysis, and remediation with product engineering teams
- Experience with Tenable, Qualys, Rapid7, Wiz, ServiceNow Vulnerability Response, or equivalent vulnerability and exposure management technologies
- Experience implementing automation through SOAR platforms, APIs, Python, or PowerShell
- Master's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline
- CISSP, CISM, GEVA, GPEN, GIAC, Tenable, Qualys, or equivalent professional certification
Stryker Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Stryker and has not been reviewed or approved by Stryker.
-
Healthcare Strength — Multiple medical plan options with HSA support and global mental‑health access indicate broad, accessible care. These features materially enhance the overall value of the total‑rewards package.
-
Retirement Support — A meaningful 401(k) company match with potential additional company contribution, alongside an ESPP, supports long‑term savings and wealth building. Documented plan specifics help employees understand eligibility, timing, and vesting mechanics.
-
Parental & Family Support — Paid parental and caregiver leave, adoption and surrogacy assistance, and practical supports like breast milk shipping reflect a comprehensive, family‑friendly approach. These offerings address varied family‑building paths and caregiving needs.
Stryker Insights
What We Do
Stryker is a global leader in medical technologies and, together with its customers, is driven to make healthcare better. The company offers innovative products and services in MedSurg, Neurotechnology, Orthopaedics and Spine that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 130 million patients annually. More information is available at www.stryker.com. Together with our customers, we are driven to make healthcare better.
Gallery






