Talent.com
Querentia
Vulnerability ManagerQuerentia • Montreal, Quebec, Canada
Vulnerability Manager

Vulnerability Manager

Querentia • Montreal, Quebec, Canada
30+ days ago
Job type
  • Full-time
Job description

The Vulnerability Manager will lead the IT Infrastructure Cybersecurity Operations team overseeing the enterprise-wide vulnerability remediation program for CA-CIBs infrastructure environment. This role bridges the Information Security team and IT Infrastructure platform teams ensuring timely remediation of vulnerabilities across servers networks databases and virtualization infrastructure while maintaining executive visibility through regular reporting.

Key Responsibilities

Infrastructure Vulnerability Remediation Management

Lead remediation efforts for vulnerabilities across IT Infrastructure domains.

Track vulnerabilities from Tenable penetration testing security assessments and threat intelligence feeds

Monitor remediation progress against established SLA deadlines

Engage proactively with Infrastructure Network Database and Virtualization teams to ensure timely closure

Maintain comprehensive dashboards and metrics on vulnerability remediation status

Stakeholder Management & Reporting

Present monthly vulnerability management reports to IT Infrastructure Management Steering Committee and CISO office

Provide executive insights on remediation trends infrastructure risk exposure and program effectiveness

Escalate critical infrastructure vulnerabilities to CTO Infrastructure Directors and Risk Management

Technical Guidance & Infrastructure Support

Provide expert guidance on remediation strategies patching approaches and configuration hardening

Troubleshoot complex remediation scenarios involving legacy systems business-critical infrastructure or technical dependencies

Recommend best practices for infrastructure vulnerability mitigation aligned with banking industry standards

Advice on patch management strategies balancing security requirements with infrastructure stability

Risk Acceptance & Control Validation

Review and validate risk acceptance requests when immediate remediation is not feasible due to business criticality legacy constraints vendor limitations or complex dependencies

Assess adequacy of proposed compensating controls (network segmentation access controls monitoring)

Guide teams in developing robust compensating controls that effectively reduce risk exposure

Ensure risk acceptance documentation meets CA-CIB governance regulatory and compliance requirements.

Program Leadership & Governance

Drive continuous improvement of the infrastructure vulnerability management program

Develop and maintain vulnerability management policies procedures and workflows aligned with CA-CIB IT governance

Foster collaboration between Information Security and IT Infrastructure teams

Support regulatory examinations and audits related to infrastructure security

Required Qualifications

Bachelors degree in Computer Science Information Technology Information Security or related field

7 years of experience in IT infrastructure security cybersecurity operations or vulnerability management within banking or financial services

3 years in a leadership or management role

Strong understanding of vulnerability assessment tools (Tenable/Nessus) and infrastructure scanning methodologies

Experience with risk management frameworks and control validation in regulated environments

Proven ability to communicate technical infrastructure security concepts to executive audiences

Understanding of banking regulatory requirements and IT risk management

Preferred Qualifications

Relevant certifications: CISSP CISM or similar

Experience with vulnerability management platforms and ITSM systems (ServiceNow)

Background in both information security and IT infrastructure operations

Experience working in large complex banking IT environments

English (mandatory) French language skills (preferred)

Key Competencies

Strong analytical and problem-solving skills with infrastructure focus

Excellent communication and presentation abilities in English

Proactive and results-oriented mindset with ability to work under regulatory pressure

Ability to influence infrastructure teams without direct authority

Strategic thinking with attention to operational detail and business impact

Stakeholder management and negotiation skills across technical and business functions

Ability to balance security requirements with business continuity and operational resilience

Working Environment

Location: Montreal Quebec

Working from home on a voluntary basis for up to 2 days per week after 3 months of joining

Collaboration with global IT Infrastructure and Security teams

Exposure to senior IT and Risk leadership


Employment Type : Full Time
Experience: years
Vacancy: 1
Create a job alert for this search

Vulnerability Manager • Montreal, Quebec, Canada

Similar jobs

Vulnerability Mitigation Specialist (Hybrid)

Morgan StanleyMontreal
Full-time

We’re seeking someone to join our team as a Vulnerability Mitigation Specialist to identify, validate, and mitigate vulnerabilities across systems, with a focus on reducing false positives in vulne... Show more

 • Promoted

Lead Vulnerability Management Officer - AMER Region

SGS Société Générale de Surveillance SAMontreal
Full-time

Shape security strategies as the Lead Vulnerability Management Officer at Societe Generale, focusing on vulnerability and configuration management in the AMER region.In this prominent role, you wil... Show more

 • Promoted

Kubernetes Support Engineer - montcalm (Laurentides)

VeriParkSaint-Lin-Laurentides, QC, Canada
Full-time

We enable financial institutions to become AI‑first digital leaders.As a skilled team of global scale, we work with the best clients for great and exciting projects, in an environment where we lear... Show more

 • Promoted • New!

Security/ Vulnerability Management Operations Analyst

Compunnel, Inc.Montreal, Montreal (administrative region), CA
Full-time

Security/ Vulnerability Management Operations Analyst.The candidate will be joining the global Vulnerability Management team within the Firm’s Cyber Data Risk & Resilience organization.This analyst... Show more

 • Promoted

Lead - Systems Engineering Job Details | Purolator - Purolator

Purolatormontréal, qc, ca
Full-time

As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years.The places we go, the elements we brave, the pr... Show more

 • Promoted

Building Maintenance/Grooming Supervisor

Air Creebec inc.montréal (dorval), montréal (dorval), ca
Full-time

The Building Maintenance/Grooming Supervisor is responsible for undertaking maintenance general tasks for the building and offices, including cleaning, snow removal, and lawn mowing.Ensure the upke... Show more

 • Promoted

Chef d'équipe mécanique (Lead hand)

Équipement St-Germain inc.Sainte-Julienne, QC, CA
Full-time

Vous êtes fan de machinerie lourde? Nous aussi! Équipement St-Germain Inc.Chef d’équipe mécanique (Lead Hand).Pourquoi travailler pour Équipement St-Germain ? Parce que développer vos compétences e... Show more

 • Promoted

Azure local SME - Ascendion

Ascendionsaint-esprit, qc, ca
Full-time

Ascendion est une entreprise offrant une gamme complète de solutions en ingénierie numérique.Nous concevons et gérons des plateformes et des produits logiciels qui stimulent la croissance et offren... Show more

 • Promoted

Principal Advisor Underground - Brunel

Brunelsaint-esprit, qc, ca
Full-time

Position: Principal Advisor - Underground.Brunel is currently looking for a Principal Advisor – Underground for our mining client.The Principal Solutions Advisor - Underground is a strategic role w... Show more

 • Promoted

MONTREAL [HYBRID] - Vulnerability Manager - Financial Domain

QUANTEAM (RAINBOW PARTNERS Group)Montreal
Full-time

The Vulnerability Manager will lead the Cybersecurity Operations team focused on IT Infrastructure for an investment bank based in Montreal, overseeing the enterprise‑wide remediation program.This ... Show more

 • Promoted

InfoSec Cyber Advisor - laval

BRPlaval, qc, ca
Full-time

We are seeking a highly skilled InfoSec GRC Cyber Advisory professional to join our team and play a pivotal role in supporting governance, identifying cybersecurity risks, and providing strategic r... Show more

 • Promoted

Senior Advisor Vulnerability Management

National Bank of CanadaMontreal
Full-time

A career as a Senior Vulnerability Management Advisor in the Information Security team at National Bank means acting as an expert and playing a key role in improving vulnerability management practi... Show more

 • Promoted

Threat hunting practise Leader - laval

National Banklaval, qc, ca
Full-time

A career as a leader or practise leader in the threat Identification team at National Bank means acting as an expert in cybersecurity and proactive threat detection.This position allows you to have... Show more

 • Promoted

Data Security Services Compliance Manager - Entrust

Entrustmontréal, qc, ca
Full-time

At Entrust, we’re shaping the future of identity centric security solutions.From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration... Show more

 • Promoted

Bilingual Claim Manager - Empire Life

Empire Lifesaint-esprit, qc, ca
Full-time +2

Location: Remote, or if local to an office, hybrid - Kingston, Toronto, or Montreal.The total target compensation (TTC) range, including salary and target bonus, is $55,968 - $98,580.This TTC range... Show more

 • Promoted

Assistant department manager - IGA Famille Guilbault

IGA Famille Guilbaultsaint-esprit, qc, ca
Full-time

Number of hours per week : between 35 and 39.We offer employees competitive total compensation packages that vary by position and location.Some websites that display our job openings may provide sa... Show more

 • Promoted

Service Desk Analyst - Fujitsu (Laurentides)

FujitsuSaint-Lin-Laurentides, QC, Canada
Full-time

Job Summary<br/><br/>Analyze and resolve technical problems for School Districts.Responsibilities<br/><br/>Acts as technical resource for provincial L1 staff in troubleshoot... Show more

 • Promoted • New!

Director-Level Vulnerability Mitigator

Morgan-StanleyMontreal (administrative region), QC, CA
Full-time

Advance your career as a Vulnerability Mitigator at Morgan Stanley in Montreal.Focus on vulnerability validation and strengthening security measures in a hybrid work environment.As a part of the Cy... Show more

 • Promoted

Growth Manager (Laurentides)

Zazu Digital TalentSaint-Lin-Laurentides, QC, Canada
Full-time

Growth Manager — Amazon & TikTok Shop<br/><br/>Were working with a profitable, fast-growing DTC brand built around functional supplements and natural ingredients.The business is alr... Show more

 • Promoted • New!

Product Incubation Manager

Syntaxsaint-esprit, qc, ca
Full-time

The Product Incubation Manager drives new software product ideas through the company’s incubation track, from early ideation to MVP realization.The role focuses on accelerating innovation by struct... Show more