BoF Careers · 3 weeks ago
Deckers Brands Lead Vulnerability Management Security Engineer
Deckers Brands is committed to creating an inclusive workplace where every employee can be their authentic self. The Lead Vulnerability Management Security Engineer will set the strategic direction for vulnerability management, collaborating with teams to identify and remediate security risks while shaping security standards and driving technology adoption.
Marketing & Advertising
Responsibilities
Lead the review and analysis of vulnerability data to identify trends, patterns, and key risks across Deckers’ global environment
Facilitate vulnerability management meetings and drive risk-based discussions to prioritize and accelerate remediation efforts
Advise and support remediation teams in developing actionable plans to address vulnerabilities and strengthen our security posture
Perform risk-based assessments for both on-premise and cloud-based services, ensuring robust protection for critical assets
Integrate advanced security technologies and automation tools to enhance threat detection and response capabilities
Build and present business cases for adopting new security solutions to mitigate emerging risks
Develop, consolidate, and maintain security metrics to measure the effectiveness of our cybersecurity program
Apply industry-leading frameworks (NIST, ISO27001/2, CIS Top 20 Controls) to establish and maintain best-in-class security measures
Foster strong relationships with technical teams, serving as a trusted advisor and championing a culture of security awareness
Contribute to the strategic direction of the Technical Security team by designing and implementing tools that enhance customer trust and detect suspicious activity
Qualification
Required
BA/BS degree or equivalent experience in a relevant field
4+ years of hands-on experience in vulnerability management, including scanning, assessment, and remediation
Proven success in starting and growing a vulnerability management program
Proficiency with leading vulnerability management tools (Tenable, CrowdStrike) and scripting/automation languages (PowerShell, Python)
Deep understanding of security frameworks and compliance standards (NIST, ISO27001/2, CIS Top 20 Controls, PCI-DSS, HIPAA)
Strong analytical skills to identify patterns, trends, and actionable insights from complex vulnerability data
Excellent communication skills for reporting and stakeholder engagement
Collaborative mindset with the ability to serve as a trusted advisor across cross-functional teams
Self-driven, strategic thinker with a passion for advancing cybersecurity programs
Preferred
Security professional certification (CISSP, CVA, GEVA, or similar)
Benefits
Competitive Pay and Bonuses
Financial Planning and wellbeing
Time away from work
Extras, discounts and perks
Growth and Development
Health and Wellness
Company
BoF Careers
BoF Careers connects professionals in fashion, beauty and luxury to The Business of Fashion's global marketplace of over 2,000 opportunities.
Funding
Current Stage
Growth StageCompany data provided by crunchbase