Senior Vulnerability Manager
Job Title:
Senior Vulnerability ManagerRequisition ID:
R027699Job Description:
Location: Remote
Department: Global Xbox Security
Hiring Manager: Senior Manager, Threat Detection and Incident Response
Overview
Global Xbox Security is seeking a Senior Vulnerability Management Engineer to help identify, assess, prioritize, and drive remediation of security weaknesses across infrastructure, endpoints, cloud services, applications, and supporting technologies in a large, complex enterprise environment.
In addition to core vulnerability management responsibilities, this role has a specialized focus on vulnerabilities, risk assessments, and remediation efforts for “zero day” and actively exploited vulnerabilities.
The ideal candidate combines technical depth with strong programmatic thinking, clear written and verbal communication, and the ability to coordinate effectively across technical teams, business stakeholders, and leadership audiences to move sensitive remediation efforts forward.
Key Responsibilities
Serve as a primary coordinator for vulnerability findings, risk assessments, and remediation efforts for “zero day” and actively exploited vulnerabilities.
Manage high-visibility remediation taskings from central security functions, senior leadership, or strategic stakeholders, ensuring clear ownership, accountability, and follow-through.
Operate and improve vulnerability management workflows across on-premises, cloud, hybrid, and endpoint environments.
Perform vulnerability triage, validation, prioritization, and risk-based analysis using exploitability, asset criticality, exposure, compensating controls, and threat context.
Partner with infrastructure, application, platform, and business teams to coordinate remediation activities and improve time-to-remediate for critical and high-risk findings.
Translate technical risk into actionable guidance, executive-ready updates, and concise remediation narratives for stakeholders with varying levels of technical expertise.
Help define and maintain severity, prioritization, remediation, and exception-handling standards, including service level objectives and escalation paths.
Validate remediation through rescans, targeted testing, or review of supporting evidence, and improve data quality, reporting, and lifecycle tracking.
Support reporting and metrics for program health, including remediation aging, SLA adherence, exception tracking, recurring exposure trends, and sensitive issue status.
Identify opportunities to automate vulnerability intake, enrichment, ticketing, prioritization, reporting, and stakeholder notifications.
Contribute to security policies, standards, and operational procedures related to patch governance, exposure management, and exception handling.
Required Qualifications
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent practical experience.
- Experience in vulnerability management, security operations, detection engineering, systems administration, or a closely related cybersecurity function.
- Strong understanding of vulnerability management principles, including CVSS, exploitability, remediation validation, compensating controls, and risk-based prioritization.
- Experience with enterprise vulnerability scanning or exposure management platforms.
- Familiarity with operating systems, enterprise infrastructure, cloud environments, networking fundamentals, and common security architectures.
- Ability to analyze technical findings and communicate risk, remediation guidance, and prioritization decisions to technical and non-technical stakeholders.
- Demonstrated ability to coordinate across a broad range of teams and communicate credibly in high-visibility or time-sensitive situations.
- Experience using ticketing, workflow, or project management platforms to track remediation and exception handling.
- Strong analytical, organizational, and problem-solving skills.
Preferred Qualifications
- 5+ years of experience in vulnerability management or a closely related cybersecurity role, preferably in a large enterprise environment.
- Experience supporting executive-visible security initiatives, escalations, or high-priority remediation efforts.
- Experience operating within a Fortune 100 or similarly complex enterprise and working across centralized security functions and federated business units.
- Familiarity with cloud platforms such as Azure, AWS, or GCP.
- Experience correlating vulnerability data with threat intelligence, exploit telemetry, or security event data.
- Experience with scripting or automation using Python, PowerShell, Bash, or similar languages.
- Experience integrating vulnerability tooling with SIEM, SOAR, CMDB, ITSM, asset inventory, or ticketing systems.
- Knowledge of patch management, change management, remediation governance, and container or cloud workload vulnerability assessment.
- Relevant certifications such as Security+, CySA+, GSEC, CISSP, or similar.
Our World
Activision Blizzard, Inc., is one of the world's largest and most successful interactive entertainment companies and is at the intersection of media, technology and entertainment. We are home to some of the most beloved entertainment franchises including Call of Duty®, World of Warcraft®, Overwatch®, Diablo®, Candy Crush™ and Bubble Witch™. Our combined entertainment network delights hundreds of millions of monthly active users in 196 countries, making us the largest gaming network on the planet!
Our ability to build immersive and innovative worlds is only enhanced by diverse teams working in an inclusive environment. We aspire to have a culture where everyone can thrive in order to connect and engage the world through epic entertainment. We provide a suite of benefits that promote physical, emotional and financial well-being for ‘Every World’ - we’ve got our employees covered!
The videogame industry and therefore our business is fast-paced and will continue to evolve. As such, the duties and responsibilities of this role may be changed as directed by the Company at any time to promote and support our business and relationships with industry partners.
We love hearing from anyone who is enthusiastic about changing the games industry. Not sure you meet all qualifications? Let us decide! Research shows that women and members of other under-represented groups tend to not apply to jobs when they think they may not meet every qualification, when, in fact, they often do! We are committed to creating a diverse and inclusive environment and strongly encourage you to apply.
We are committed to working with and providing reasonable assistance to individuals with physical and mental disabilities. If you are a disabled individual requiring an accommodation to apply for an open position, please email your request to [email protected]. General employment questions cannot be accepted or processed here. Thank you for your interest.
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, gender identity, age, marital status, veteran status, or disability status, among other characteristics.
Rewards
We provide a suite of benefits that promote physical, emotional and financial well-being for ‘Every World’ - we’ve got our employees covered! Subject to eligibility requirements, the Company offers comprehensive benefits including:
- Medical, dental, vision, health savings account or health reimbursement account, healthcare spending accounts, dependent care spending accounts, life and AD&D insurance, disability insurance;
- 401(k) with Company match, tuition reimbursement, charitable donation matching;
- Paid holidays and vacation, paid sick time, floating holidays, compassion and bereavement leaves, parental leave;
- Mental health & wellbeing programs, fitness programs, free and discounted games, and a variety of other voluntary benefit programs like supplemental life & disability, legal service, ID protection, rental insurance, and others;
- If the Company requires that you move geographic locations for the job, then you may also be eligible for relocation assistance.
Eligibility to participate in these benefits may vary for part time and temporary full-time employees and interns with the Company. You can learn more by visiting https://www.benefitsforeveryworld.com/.
In the U.S., the standard base pay range for this role is $101,000.00 - $186,754.00 Annual. These values reflect the expected base pay range of new hires across all U.S. locations. Ultimately, your specific range and offer will be based on several factors, including relevant experience, performance, and work location. Your Talent Professional can share this role’s range details for your local geography during the hiring process. In addition to a competitive base pay, employees in this role may be eligible for incentive compensation. Incentive compensation is not guaranteed. While we strive to provide competitive offers to successful candidates, new hire compensation is negotiable.