Senior Security Manager overseeing vulnerability management and remediation initiatives at GEICO. Leading high-impact security programs to safeguard enterprise-wide assets and customer data.
Responsibilities
Create vision, charter, and roadmap for Vulnerability Management and Remediation that aligns with industry best practices.
Lead a team of security engineers in the execution of GEICO’s security strategies and action plans.
Oversee the risk assessment and prioritization of security vulnerabilities within services, applications, and infrastructure.
Collaborate with technology engineering, product management, and other stakeholders to integrate security tooling across the ecosystem.
Participate in the enhancement of security awareness and train developers and other relevant staff in secure coding practices.
Establish metrics and regular reporting mechanisms for measuring security status and the effectiveness of the VMR security tooling.
Keep abreast of the latest security regulations, advisories, alerts, and vulnerabilities pertaining to the company and its mission.
Identify and raise appropriate project risks, in addition to presenting detailed and implementable solutions or alternatives.
Report on your team’s progress for project and other key metrics, in addition to presenting detailed and implementable ideas for areas to further improve or influence security deliveries.
Initiate and support performance evaluation of team members.
Cultivate a culture that motivates all levels of performers to higher levels of achievement.
Execute change management processes and best practices, adapting approach as necessary.
Requirements
10+ years of hands-on security and software engineering experience
8+ years of experience with end-to-end Vulnerability Management lifecycle, including asset discovery, scanning, CVE triage, risk-based prioritization, remediation, and reporting at enterprise scale.
8+ years of experience building and leading high-performing security engineering teams, with a strong focus on coaching, execution, and delivery of large-scale programs.
Hands-on background in security and software engineering, including secure coding practices, DevSecOps, automation, and building scalable systems in hybrid or cloud environments.
Demonstrated ability to drive enterprise-wide VMR programs, partnering with product, infrastructure, and executive leadership to influence strategy and outcomes.
Strong understanding of regulatory and compliance requirements (e.g., PCI, SOX, NYDFS) and the ability to operationalize controls beyond baseline compliance.
Benefits
Comprehensive Total Rewards program that offers personalized coverage tailor-made for you and your family’s overall well-being.
Financial benefits including market-competitive compensation; a 401K savings plan vested from day one that offers a 6% match; performance and recognition-based incentives; and tuition assistance.
Access to additional benefits like mental healthcare as well as fertility and adoption assistance.
Supports flexibility- We provide workplace flexibility as well as our GEICO Flex program, which offers the ability to work from anywhere in the US for up to four weeks per year.
Cloud Governance & Security Engineer at Zinkworks responsible for cloud operations, governance, and compliance - related projects. Focused on improving security controls and implementing IT initiatives.
Engage in security incident detection and analysis at Telefónica Tech. Responsible for managing cybersecurity incidents and maintaining security documentation.
Senior Security Engineer designing and improving security controls within Enpal's IT environment. Collaborating closely with IT and enhancing security posture in a renewable energy company.
Senior Network Security Engineer responsible for evaluating security solutions and technologies at Absa. Collaborating with Risk, Cyber, and Architecture teams for effective security management.
Security Specialist contributing to personal security within SEB's operations. Coordinating, developing, and advising on personal security measures for employees and stakeholders in various locations.
Cybersecurity Account Executive driving sales and client engagement at Arancia, a Canadian cybersecurity firm. Focusing on building relationships and enhancing security postures for clients.
LSS Subject Matter Expert delivering next generation access management solutions at Amadeus. Engaging in deployment and technical support for security solutions and customer onboarding.
Cyber Engineering Consultant responsible for implementing and managing cybersecurity technologies, collaborating with cross - functional teams on infrastructure initiatives in the company.
Senior consultant designing and operating cybersecurity technologies at Cargill in India. Leading cloud security initiatives and collaborating with cross - functional teams to ensure robust protection.
Cloud Security Architect at ELITS designing secure cloud environments and managing cloud security policies for business objectives and compliance requirements.