Senior Vulnerability Operations jobs in United States
cer-icon
Apply on Employer Site
company-logo

Interactive Brokers ยท 9 hours ago

Senior Vulnerability Operations

Interactive Brokers Group, Inc. is a global financial services company known for its cutting-edge technology and client commitment. They are seeking a Senior Vulnerability Operations professional to lead and execute their vulnerability management program, focusing on all types of vulnerabilities and driving remediation strategies through automated processes.

E-CommerceFinanceFinancial Services
check
H1B Sponsor Likelynote

Responsibilities

Own and manage the end-to-end vulnerability management lifecycle: discovery, assessment, prioritization, remediation tracking, and closure
Build and maintain vulnerability dashboards, metrics, and executive reports using tools such as Power BI, Tableau, or native scanner dashboards and products
Consolidate vulnerability data from multiple sources (e.g., SCA, SAST, DAST, Tenable, Rapid7, container scanners, cloud-native tools, and products such as Orca, Wiz, etc.) to present a unified risk view
Perform vulnerability correlation, de-duplication, and tagging (e.g., based on business units, asset owners, criticality)
Collaborate with IT, DevOps, Cloud, Business, and Application teams/owners to drive timely remediation and verify risk mitigation
Track vulnerability SLAs, generate remediation tickets, and manage exceptions where applicable
Define and improve processes for asset inventory reconciliation, especially across on-prem, cloud, containers, and shadow IT
Implement and improve automated integrations (e.g., CMDB, SIEM, ITSM tools like ServiceNow) for vulnerability data enrichment and remediation workflows
Stay updated on the vulnerability threat landscape (CVEs, zero-days, exploitability trends, etc.)
Participate in audits and compliance initiatives (e.g., ISO 27001, NIST, PCI-DSS) and provide evidence related to vulnerability management

Qualification

Vulnerability managementVulnerability scanning toolsCloud environmentsData correlationScriptingAutomation toolsCompliance frameworksAsset taggingInventory managementAnalytical skillsCollaboration skillsCommunication skillsOrganizational skills

Required

6 to 10 years of experience in cybersecurity, with at least 4 years focused on vulnerability management
Deep understanding of vulnerability types across: Operating systems (Windows, Linux, macOS), Applications (web, APIs, databases), Cloud environments (AWS, Azure, GCP), Containers and Kubernetes, Network infrastructure and IoT/OT (preferred)
Experience with vulnerability scanning tools such as: Qualys, Tenable Nessus, Rapid7 InsightVM/Nexpose, AWS Inspector, Azure Defender, Prisma Cloud, Aqua, Anchore, Wiz, Orca, Snyk, Black Duck, Veracode, SonarQube (for application security)
Strong experience with: Data correlation and reporting (Excel, Power BI, or other BI tools), Asset tagging and inventory management (ServiceNow CMDB, Lansweeper, etc.), ITSM ticketing systems (ServiceNow, Jira, Remedy), Scripting or automation tools (Python, PowerShell, APIs, Splunk queries) highly preferred
Familiarity with CVE, CVSS, CISA KEVs, EPSS, and exploitability frameworks
Strong understanding of security operations, patching cycles, and incident response workflows
Knowledge of compliance frameworks like NIST, CIS Controls, ISO 27001, PCI-DSS, SOC 2
Self-motivated and able to handle tasks with minimal supervision
Superb analytical and problem-solving skills
Excellent collaboration and communication (verbal and written) skills
Outstanding organizational and time management skills

Preferred

Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or equivalent experience
Certifications such as CISSP, CISM, GIAC GCIH, CompTIA Security+, or OSCP highly desired and definitely add an edge
Experience with threat intelligence platforms and linking threat data to vulnerability context
Ability to mentor junior analysts, standardize SOPs, and scale program maturity

Benefits

Competitive salary, annual performance-based bonus, and stock grant
Retirement plan 401(k) with competitive company match
Excellent health and wellness benefits, including medical, dental, and vision benefits, and a company-paid medical healthcare premium
Wellness screenings and assessments, health coaches, and counseling services through an Employee Assistance Program (EAP)
Paid time off and a generous parental leave policy
Daily company lunch allowance provided, and a fully stocked kitchen with healthy options for breakfast and snacks
Corporate events, including team outings, dinners, volunteer activities, and company sports teams
Education reimbursement and learning opportunities
Modern offices with multi-monitor setups

Company

Interactive Brokers

company-logo
Rated #1 Active Traders and #1 International Trading in 2025 by StockBrokers.com.

H1B Sponsorship

Interactive Brokers has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (29)
2024 (24)
2023 (12)
2022 (21)
2021 (10)
2020 (12)

Funding

Current Stage
Public Company
Total Funding
unknown
2009-06-01Post Ipo Equity
2008-01-01Post Ipo Equity
2007-05-04IPO

Leadership Team

leader-logo
Graeme Farrell
Group Chief Risk Officer & UK Board Director
linkedin
Company data provided by crunchbase