Vulnerability Manager

Posted Yesterday
Be an Early Applicant
Hiring Remotely in United States
Remote
109K-157K Annually
Senior level
Fintech • Real Estate
The Role
Lead the enterprise vulnerability management program: run and tune scanners, triage and prioritize findings using CVSS and threat intelligence, drive remediation with engineering and IT teams, manage exception/risk acceptance processes, produce executive reporting, and improve program maturity and KPIs.
Summary Generated by Built In

Guild Mortgage Company, closing loans and opening doors since 1960. As a mortgage banking firm we are dedicated to serving the homeowner/buyer. Our goal is to provide affordable home financing for our customers, utilizing the best terms available while providing a level of professionalism and service unsurpassed in the lending industry.

Position Summary

The Vulnerability Manager is responsible for leading the enterprise vulnerability management program, ensuring the timely identification, assessment, prioritization, remediation, and reporting of security vulnerabilities across the organization's technology environment. This role partners closely with Infrastructure, Cloud, Application Development, DevOps, IT Operations, and business stakeholders to reduce cyber risk while supporting organizational objectives. 

The Vulnerability Manager develops and maintains vulnerability management processes, drives remediation efforts, establishes risk-based prioritization methodologies, manages security scanning technologies, and delivers executive-level reporting on the organization's security posture.

Compensation

This role is an exempt position with a targeted salary range of $109,114 to $156,510 annually.

Compensation at Guild is influenced by a wide array of factors including but not limited to local and federal minimum wage requirements, education, level of experience, and applicant’s geographical location.

Essential Functions

  • Develop, implement, and continuously improve the enterprise vulnerability management program.
  • Establish and maintain existing vulnerability management policies, standards, procedures, and governance processes.
  • Define risk-based remediation priorities based on asset criticality, exploitability, threat intelligence, and business impact.
  • Lead vulnerability review meetings and remediation governance forums.
  • Develop vulnerability management roadmaps and maturity improvement initiatives.
  • Oversee vulnerability scanning activities across: Servers, Workstations, Network devices, Cloud platforms, Containers, Applications, Databases
  • Validate and triage identified vulnerabilities to reduce false positives.
  • Assess vulnerability severity using CVSS, threat intelligence, exploit availability, and environmental factors.
  • Monitor emerging threats, zero-day vulnerabilities, and security advisories.
  • Coordinate remediation efforts with IT Operations, Infrastructure, Engineering, Cloud, and Development teams.
  • Establish remediation timelines and service-level objectives (SLOs).
  • Track remediation progress against established metrics.
  • Manage exception processes and risk acceptance workflows.
  • Escalate critical vulnerabilities and overdue remediation items to leadership.
  • Manage vulnerability scanning and management platforms such as: Tenable, Microsoft Defender Vulnerability Management, Wiz
  • Ensure scanning coverage, tuning, maintenance, and integration effectiveness.
  • Develop executive dashboards and operational reporting.
  • Report vulnerability trends, remediation effectiveness, and exposure reduction progress.
  • Track and report key performance indicators (KPIs) and key risk indicators (KRIs).
  • Support enterprise risk management initiatives.
  • Evaluate vulnerabilities within the context of business risk.
  • Facilitate risk-based decision-making regarding remediation versus risk acceptance.
  • Align vulnerability management activities to regulatory and security frameworks.
  • Incorporate internal and external threat intelligence into vulnerability prioritization.
  • Monitor CISA Known Exploited Vulnerabilities (KEV) catalog and other threat intelligence sources.
  • Prioritize remediation activities based on active exploitation trends.

Qualifications

  • Bachelor's Degree directly related to the position or equivalent, preferred.
  • Minimum five years experience.
  • Minimum three years supervisory or leadership experience.
  • Ability to organize and manage multiple priorities simultaneously.
  • Ability to work well independently or within a team.
  • Excellent interpersonal communication skills required.
  • Must be able to handle confidential matters with discretion.
  • Excellent verbal and written communication skills required.
  • Highly organized and detail-oriented; ability to work in a fast-paced, metrics-driven environment required.
  • Proficiency in Microsoft Office Suite, Word, Excel, Wiki, collaborative cloud-based programs, and third-party software applications required.
  • Commitment to company values.
  • Customer Service - Proactive attention to each person.
  • Integrity - Do and say what's right.
  • Respect - Treat others with dignity.
  • Collaboration - Listen and work together.
  • Learning - Seek knowledge and strive for improvement.
  • Excellence – Deliver the unexpected.

Supervision

Job Scope:  Plays a key role in area by generating insights and ideas on policies, processes, procedures, and efficiency; contributes ideas to strategic and operational plans to ensure alignment.

Complexity:  Problems encountered often cross areas of the organization and are often complex, broad in scope, and unprecedented with no clear solution; often works cross-functionally to solve problems and implemented changes.

Impact:  Decisions and actions have a direct impact on the outcomes of the department, projects, and programs.

Interaction/Supervision:  Acts as a mentor/guide to less experienced professional contributor staff in a similar role; works independently and only under general direction; guided by professional standards, desired outcomes, and project plan specifications.

Requirements

  • Work is primarily sedentary; mobility in an office setting.
  • Ability to operate standard office equipment and keyboards.
  • Ability to accurately interpret sounds and associated meanings at a volume consistent with interpersonal conversation.
  • Office environment – moderate noise, no substantial exposure to adverse environmental conditions.
  • Travel 5% or less.
  • Must be able to adhere to process protocol. Must be able to apply established protocols in a timely manner.
  • Work is primarily performed during the business week, Monday - Friday.

Guild offers a pleasant work environment, competitive compensation and excellent benefits package; including medical, dental, vision, life insurance, AD&D, LTD and 401(k) with employer match.

Guild Mortgage Company is an Equal Opportunity Employer.

REQ#: VULNE018364

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Skills Required

  • Bachelor's Degree directly related to the position or equivalent
  • Minimum five years experience in vulnerability management or related cybersecurity roles
  • Minimum three years supervisory or leadership experience
  • Experience managing vulnerability scanning and management platforms such as Tenable, Microsoft Defender Vulnerability Management, Wiz
  • Proficiency in Microsoft Office Suite, Word, Excel, Wiki, collaborative cloud-based programs, and third-party software applications
  • Ability to assess vulnerability severity using CVSS, threat intelligence, and exploit availability
  • Experience coordinating remediation with IT Operations, Infrastructure, Engineering, Cloud, and Development teams
  • Excellent verbal and written communication and interpersonal skills
  • Ability to handle confidential matters with discretion
  • Highly organized, detail-oriented, and able to work in a fast-paced, metrics-driven environment

Guild Mortgage Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Guild Mortgage and has not been reviewed or approved by Guild Mortgage.

  • Parental & Family Support Fully paid parental leave is described as generous, with 12 weeks for medical, non-birthing parent, and caregiving leave from day one, and 18–20 weeks for birthing parents. This indicates strong support for families across different caregiving situations.
  • Leave & Time Off Breadth Paid holidays include a collective week off around July 4 and floating holidays, with PTO that rolls over and a five‑week paid sabbatical after 4.5 years. Additional options include sick leave, volunteer time, bereavement, jury duty, and open PTO for some roles.
  • Healthcare Strength Medical, dental, vision, and mental health coverage are offered alongside life and disability insurance, with options to purchase enhanced policies. Wellbeing perks such as a fitness stipend complement the core health benefits.

Guild Mortgage Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Diego, CA
3,600 Employees
Year Founded: 1960

What We Do

Guild Mortgage has become one of the nation’s leading independent ‭mortgage providers by following a ‭simple rule—doing what’s right for our customers. Since 1960, we’ve grown ‭through every economic cycle. ‭Today, no other mortgage lender ‭has our stability, experience and ‭uncompromising focus on ‭customer service. When you choose Guild, you get: - A commitment closing your loan on time - A wide array of ‭specialized products and programs for every type of homebuyer - Loan officers you can meet face-to-face or online ‭ - A direct lender that tailors each loan to fit the needs of individual borrowers - Long-term relationships—we ‭service the majority of loans we close Guild Mortgage Company; Equal Housing Opportunity; AZ BK #0018883; Licensed by the Department of Financial Protection and Innovation under the California Residential Mortgage Lending Act; MA Mortgage Lender License #MC3274; MA Mortgage Broker License #MC3274; Licensed by the Mississippi Department of Banking and Consumer Finance; Licensed by the N.J. Department of Banking and Insurance; NV Mortgage Company #1141; OR ML-176; Rhode Island Licensed Lender; Rhode Island Licensed Third-Party Loan Servicer; Company NMLS ID 3274. www.nmlsconsumeraccess.org/. All loans subject to underwriter approval. Terms and conditions apply, subject to change without notice. Guild Mortgage Company is an Equal Opportunity Employer. Guild Mortgage Company 5887 Copley Drive, San Diego, CA 92111; For more licensing information, please visit www.guildmortgage.com/licensing.

Similar Jobs

In-Office or Remote
4 Locations
20252 Employees

Hilliard Advisors Inc Logo Hilliard Advisors Inc

Investment Banking Associate

Angel or VC Firm • Professional Services • Consulting • Financial Services
In-Office or Remote
Remote, OR, USA
10 Employees
In-Office or Remote
Deerfield, IL, USA
10000 Employees
105K-165K Annually

IMC Trading Logo IMC Trading

ISCA 2026

Fintech • Machine Learning • Software • Financial Services
Remote or Hybrid
United States
1954 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account