At Finastra, we’re a global leader in financial services software, dedicated to expanding access to financial services and shaping what’s next for the industry. Our technology powers mission‑critical solutions across Lending, Payments and Universal Banking, supporting over 7,000 customers, including 80% of the world’s top 50 banks, in more than 110 countries.
We are seeking an experienced and strategic Director of Vulnerability Management to lead the organization's efforts to identify , prioritize, remediate, and govern cybersecurity vulnerabilities across infrastructure, cloud environments, applications, and internally developed products.
This leader will be responsible for advancing a mature, risk-based vulnerability management program while partnering closely with Engineering, Product, Architecture, Infrastructure, DevOps, and Security Operations teams to embed security throughout the software development lifecycle. The successful candidate will combine strong technical expertise , program leadership, and stakeholder management skills to reduce enterprise risk and enable secure business growth.
Enterprise Vulnerability Management
Own and mature the enterprise vulnerability management program across infrastructure, endpoints, cloud platforms, applications, containers, and third-party technologies.
Establish risk-based prioritization methodologies that consider exploitability, business criticality, threat intelligence, and asset exposure.
Define and maintain vulnerability management standards, operational procedures, remediation SLAs, exception processes, and governance frameworks.
Program Governance & Risk Management
Collaborate with Risk, Compliance, Audit, Privacy, and Legal teams to ensure alignment with regulatory and industry requirements.
Support regulatory examinations, customer security assessments, internal audits, and external audits.
Leadership & Organizational Development
Foster strong partnerships across Engineering, Infrastructure, Operations, and business leadership teams.
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
Progressive cybersecurity experience, including vulnerability management, application security, product security, or related security disciplines.
Deep understanding of vulnerability management frameworks, CVSS, exploitability analysis, threat intelligence integration, and remediation prioritization.
Experience with vulnerability management and application security platforms such as Tenable, Qualys, Rapid7, Wiz, Prisma Cloud, Microsoft Defender, GitHub Advanced Security, CodeQL , Veracode, Checkmarx , or similar solutions.
Familiarity with cloud environments, containers, Kubernetes, CI/CD pipelines, APIs, and modern software architectures.
Certifications (Preferred)
Experience supporting highly regulated industries, including financial services, healthcare, insurance, or critical infrastructure sectors.
The ideal candidate will demonstrate :
Success in this role will be measured through:
We are proud to offer a range of incentives to our employees worldwide. These benefits are available to everyone, regardless of grade, and reflect the values we stand for:
Flexibility: Enjoy unlimited vacation, subject to local regulations and business priorities. Benefit from hybrid working arrangements and inclusive policies such as paid time off for voting, bereavement, and sick leave.
Well‑being: Access confidential one‑to‑one support through our Employee Assistance Program, connect with our network of Wellbeing Champions and Gather Groups, and take part in monthly events and initiatives designed to help you thrive—inside and outside of work.
Health & Financial Security: Medical, life and disability insurance, retirement plans, lifestyle, and other benefits.*
Sustainability: Paid time off for volunteering and donation‑matching opportunities to support causes that matter to you.
Inclusion: Get involved in our inclusion communities, such as Count Me In, Culture@Finastra, Proud@Finastra, Disabilities@Finastra, and Women@Finastra—open to everyone who wants to participate and contribute.
Career Development: Access online learning and accredited courses through our Skills & Career Navigator tool.
Recognition: Take part in our global recognition program, Finastra Celebrates, and share your voice through regular employee surveys that help shape our culture and ways of working.
- Specific benefits may vary by location.
At Finastra, each individual is unique—bringing their own ideas, perspectives, cultural backgrounds, and experiences. We learn from one another, value what makes us different, and create an environment where everyone feels included, supported, and able to be their authentic selves.
Be unique. Be exceptional. Help us make a difference at Finastra.
Applicants for this position need to be located in posted location or their immediate surrounding areas. Due to the requirements of this position, this job posting is not available for, and Finastra will not be considering any applicants who currently reside in New York City or California.