Leads enterprise vulnerability management and cloud security posture management across on-premises, cloud, and application environments. Administers security platforms, monitors AWS environments for vulnerabilities and misconfigurations, prioritizes remediation, automates workflows, and partners with engineering and DevOps teams. Tracks risk metrics and aligns security practices with FedRAMP, NIST CSF, ISO 27001, and CIS Controls.
About the role
The Vulnerability & Cloud Security Program Manager leads the enterprise vulnerability management and cloud security posture management (CSPM) programs, ensuring timely identification, assessment, prioritization, and remediation of risks across on-premise, cloud, and application environments. This role leverages modern cloud security and vulnerability management platforms to monitor, analyze, and strengthen our security posture. You will collaborate closely with engineering, DevOps, and infrastructure teams to reduce risk exposure, support compliance obligations, and advance the organization’s overall security maturity.
Location — We are flexible on remote working from home, if you are located in the USA and reside in one of the following states: CA, CO, CT, FL, GA, *IL, KS, MA, MD, ME, NJ, NC, NY, OR, TN, TX, VA, OH and WA. We have physical offices in Austin, TX and Tampa, FL, if you prefer a hybrid option.
*Onsite interviews maybe required for this rol
What You’ll Be Doing
- Lead and operate the full vulnerability management and CSPM lifecycle, ensuring timely discovery, assessment, prioritization, and remediation.
- Administer and optimize our vulnerability management and CSPM platforms, including policies, integrations, reporting, and automation.
- Monitor cloud and infrastructure environments to identify misconfigurations, excessive permissions, and compliance drift, primarily in AWS.
- Partner with engineering and DevOps teams to drive remediation efforts, facilitate triage discussions, and provide technical guidance on complex issues.
- Align security practices with frameworks such as FedRAMP, NIST CSF, ISO 27001, and CIS Controls.
- Track and report key KPIs and risk metrics to leadership, including SLA compliance and vulnerability trends.
- Automate detection, remediation workflows, and tool integrations to enhance efficiency and expand security capabilities
- Other duties as needed
About You
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience.
- 5+ years of experience in vulnerability management and at least 2+ years in cloud security.
- Hands-on experience with CSPM tools, vulnerability detection platforms, and automation (Wiz, AWS Inspector, Nessus, OpenSCAP preferred).
- Strong understanding of AWS security best practices and cloud-native architectures.
- Familiarity with vulnerability scoring systems like CVSS and risk-based prioritization.
- Excellent communication, collaboration, and stakeholder management skills.
- Security certifications such as CISSP, AWS Security Specialty, or GIAC Cloud Security are a plus.
- Preferred knowledge of regulatory and compliance frameworks such as PCI DSS, HIPAA, SOX, FedRAMP.
About Us
NinjaOne automates the hardest parts of IT to deliver visibility, security, and control over all endpoints for more than 40,000 customers. The NinjaOne automated endpoint management platform is proven to increase productivity, reduce security risk, and lower costs for IT teams and managed service providers. NinjaOne is obsessed with customer success and provides free and unlimited onboarding, training, and support. NinjaOne is #1 on G2 in endpoint management, patch management, remote monitoring and management, and mobile device management.
What You’ll Love
We are a collaborative, kind, and curious community.
We honor your flexibility needs with full-time work that is hybrid remote.
We have you covered with our comprehensive benefits package, which includes medical, dental, and vision insurance.
We help you prepare for your financial future with our 401(k) plan.
We prioritize your work-life balance with our unlimited PTO.
We reward your work with opportunity for growth and advancement.
Additional Information
This position is NOT eligible for Visa sponsorship. Due to federal government security requirements associated with our FedRAMP-authorized environment, candidates must be U.S. citizens or lawful permanent residents.
*Due to operational policies, NinjaOne is unable to hire for this role within the city limits of Chicago. We will consider all qualified candidates who reside outside of the city proper or are willing to self-relocate.
Starting pay for the successful applicant depends on a variety of job-related factors, including but not limited to location, market demands, experience, job-related knowledge, and skills. The benefits available for this position include medical, dental, vision, 401(k) plan, life insurance coverage and PTO. For roles based in California, Colorado, Maryland, New Jersey, or Washington the base salary hiring range for this position is$180,000 to $220,000 per year.
For roles based in New York, the base salary hiring range for this position is $180,000 to $220,000 per year.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, veteran status, or any other status protected by applicable law. We are committed to providing an inclusive and diverse work environment.
Similar Jobs
Fintech • Financial Services
Architects and develops AI-powered systems, tools, agents, backend services, APIs, and experimentation frameworks using foundational AI models. Integrates AI capabilities with microservices, AWS, Snowflake, and complex data systems while ensuring scalability, reliability, and maintainability. Translates business problems into technical solutions, prototypes AI applications, collaborates with product and engineering teams, evaluates emerging AI technologies, and documents system designs and integration patterns.
Top Skills:
APIsAWSAws BedrockClaudeContainer OrchestrationGoHugging FaceLangchainMicroservicesOpenaiPythonRubySnowflakeVector Databases
Insurance
Leads sales coaching and field excellence for an insurance distribution team. Builds competency models, coaching cadences, learning pathways, onboarding programs, and performance feedback systems. Provides direct coaching through call reviews, ride-alongs, and group sessions, integrates agent and competitive insights, manages a growing coaching team, and partners with Marketing, Product, Enablement, and Distribution leadership on launches and agency onboarding.
Artificial Intelligence • Cloud • Software • Infrastructure as a Service (IaaS)
Design, scale, and operate Runpod’s distributed storage platform across network volumes, local NVMe, and S3-compatible object storage. Tune storage and high-speed network performance, lead capacity expansions and migrations, write production automation and control-plane code, extend APIs, and build observability, dashboards, SLOs, and alerts. The role also participates in on-call operations, incident response, infrastructure-as-code practices, and long-term architecture decisions for petabyte-scale AI infrastructure.
Top Skills:
APIsCephCi/CdCsiDatadogEthernetGoGpfsGpudirect StorageGrafanaInfinibandInfrastructure As CodeIscsiKubernetesLinuxLustreMinioMoosefsNfsNvmeNvme-OfPrometheusPythonRdmaRoceRustS3SmbSpectrum ScaleStatefulsetsVastWekafsZfs
What you need to know about the Seattle Tech Scene
Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.
Key Facts About Seattle Tech
- Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Amazon, Microsoft, Meta, Google
- Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Madrona, Fuse, Tola, Maveron
- Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute



