Talent.com
Pearl Consulting Group
Vulnerability Management LeadPearl Consulting Group • Toronto, ON, CA
Vulnerability Management Lead

Vulnerability Management Lead

Pearl Consulting Group • Toronto, ON, CA
7 days ago
Job type
  • Full-time
  • Quick Apply
Job description

Role Overview: We are seeking a seasoned Vulnerability Management Lead to oversee and evolve our enterprise-wide threat and vulnerability management program.

This role sits at the intersection of security operations and strategic program leadership — responsible for driving systematic identification, assessment, prioritization, and remediation of vulnerabilities across a complex global environment spanning on-premises infrastructure, cloud platforms, and hybrid deployments.

The ideal candidate brings both hands-on technical depth and the leadership acumen to engage stakeholders at all levels — from engineering teams executing remediations to executives requiring clear risk summaries.

This is a high-impact position for someone passionate about operational excellence and continuous program improvement.

Key Responsibilities: Own the end-to-end vulnerability management lifecycle across enterprise environments including Windows and Linux operating systems, network infrastructure, cloud platforms (AWS and Azure), containerized applications, and digital certificate management.

Execute and oversee ongoing vulnerability scanning, risk prioritization, and structured remediation workflows across cloud and on-premises systems, applying recognized industry frameworks and security best practices.

Develop and maintain a metrics and reporting framework to measure program maturity, track remediation SLAs, and communicate risk posture to internal and external stakeholders — leveraging automation to reduce manual effort and improve accuracy.

Serve as the internal subject matter authority on vulnerability risk, providing guidance to both technical and non-technical teams on threat impact, exploitability, and remediation options — including endpoint protection, network-level controls, and cloud-native security mechanisms.

Build and maintain collaborative working relationships with cross-functional and global teams to ensure vulnerability risks are clearly communicated, tracked, and resolved in alignment with organizational risk appetite.

Lead root cause analyses following security events or remediation gaps, and produce clear executive-level reports summarizing findings, risk exposure, and recommended courses of action.

Support day-to-day program operations including documentation upkeep, policy and procedure development, and participation in incident response activities as required.

Continuously assess and improve program tooling, processes, and detection capabilities to stay ahead of the evolving vulnerability landscape and organizational scale.

Plan and coordinate security testing and validation exercises — including scan coverage reviews, finding validation, and remediation verification — across applications, infrastructure, and data environments.

Prepare and deliver SLA-aligned, volume-based, and risk-tiered reporting for internal leadership and external stakeholders as required.

Qualifications: Bachelor's degree in a relevant field with 5+ years of progressive experience in information security, with a focus on vulnerability management or security operations.

Demonstrated hands-on proficiency with enterprise vulnerability scanning platforms such as Rapid7, Qualys, Tenable, or Armis; familiarity with SIEM tooling, ticketing/workflow systems (e.g., ServiceNow Vulnerability Response), and hybrid cloud security environments (AWS, Azure).

Proven track record leading vulnerability management functions — including full-cycle scanning operations, risk communication, and remediation tracking across diverse technology environments.

Working knowledge of data visualization and reporting platforms such as Wiz, Snowflake, or Power BI, with strong proficiency in Excel and PowerPoint for stakeholder reporting and analysis.

Scripting experience in Python or PowerShell is an asset, particularly for automation of vulnerability workflows and process optimization.

Familiarity with security and compliance frameworks such as NIST CSF or ISO 27001 is beneficial.

Strong organizational skills with the ability to manage competing priorities independently while contributing effectively within collaborative team settings.

Exceptional communication skills — able to translate complex, technical vulnerability findings into business-relevant language for executive and non-technical audiences.

  • Powered by JazzHR

Create a job alert for this search

Vulnerability Management Lead • Toronto, ON, CA

Similar jobs

Senior Manager, Software Vulnerabilities And Lifecycle Management Operations

ScotiabankToronto, Canada
Full-time

Senior Manager, Software Vulnerabilities and Lifecycle Management Operations Requisition ID: Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.T... Show more

 • Promoted

Endpoint Security Lead - Millenilink

Millenilinkrichmond hill, on, ca
Full-time

Contract (6 Months) | Potential Extension.Millenilink is partnering with a large enterprise organization seeking an experienced Endpoint Security Lead to support a major endpoint hardening, applica... Show more

 • Promoted

Vulnerability Management Lead

Pearl Consulting GroupToronto, Ontario, Canada
Full-time

Role Overview We are seeking a seasoned Vulnerability Management Lead to oversee and evolve our enterprise-wide threat and vulnerability management program.This role sits at the intersection of sec... Show more

 • Promoted

Senior Vulnerability & Compliance Leader

ScotiabankToronto, ON, CA
Full-time

A leading bank in the Americas is seeking a Vulnerability Compliance Manager in Toronto, Ontario.This role involves overseeing vulnerability assessments and ensuring compliance with security polici... Show more

 • Promoted

Endpoint Security Lead - richmond hill

Millenilinkrichmond hill, on, ca
Full-time

Contract (6 Months) | Potential Extension.Millenilink is partnering with a large enterprise organization seeking an experienced Endpoint Security Lead to support a major endpoint hardening, applica... Show more

 • Promoted

RevOps Practice Lead

MergeYourDatamarkham, on, ca
Full-time

MergeYourData is a RevOps consultancy and Top 0.HubSpot Partner globally, currently growing 150% YoY.We work with mid-market B2B companies and multi-company organizations who need their CRM to func... Show more

 • Promoted

Guidewire Developer/Tech Lead - Delta System & Software, Inc.

Delta System & Software, Inc.newmarket, on, ca
Full-time

Job Title: Guidewire Tech Lead.Must have: Guidewire ACE Certification.Strong hands-on experience in PolicyCenter, BillingCenter, or ClaimCenter (v10.Lead and mentor a team of developers, driving de... Show more

 • Promoted

Remote Vulnerability Management Specialist AppSec

Aarorn Technologies IncToronto, ON, CA
Remote
Full-time

Join the cybersecurity effort as a Remote Vulnerability Management Specialist focused on Application Security.Your hands-on experience will be crucial for ensuring robust application security throu... Show more

 • Promoted

Test Lead

Calculated HireGreater Toronto Area, Canada, Canada
Full-time

Testing Lead – Wealth Management (System Migration).Toronto, ON (Hybrid – 3 days onsite per week).Through end of 2026 (with potential extension).Wealth Management system migration.Canadian financia... Show more

 • Promoted

Site Reliability Engineer - HCLTech

HCLTechtoronto, on, ca
Full-time

Hands-on experience with at least one major public cloud platform (Azure, AWS, or GCP).Strong understanding of cloud infrastructure and application runtime components, including compute, storage, n... Show more

 • Promoted

Growth Lead

Lilo Socialrichmond hill, on, ca
Full-time

Lilo Social is a full-funnel eCommerce growth agency specializing in acquisition and retention for direct-to-consumer brands.With a team of over 75 professionals, we deliver best-in-class paid medi... Show more

 • Promoted

Vulnerability Management Engineer

Flexton Inc.Toronto
Full-time

Be among the first 25 applicants.Get AI-powered advice on this job and more exclusive features.Direct message the job poster from Flexton Inc.Senior Technical Recruiter at Flexton Inc.Fullstack Dev... Show more

 • Promoted

Senior Security Specialist – Vulnerability & Mss Lead

CDW CanadaToronto, Canada
Full-time

A leading IT solutions provider is seeking a Sr.Specialist in Managed Security Services in Toronto.You will provide second-level technical support, mentor junior staff, and manage complex technical... Show more

 • Promoted

Senior Specialist, IT Vulnerability Management

Canada Mortgage and Housing CorporationToronto, ON, CA
Full-time +1

Select how often (in days) to receive an alert:.Senior Specialist, IT Vulnerability Management.Language Skill Levels (Read/Write/Speak):.Our salaries generally range from $104,180.The work you do a... Show more

 • Promoted

Senior Security Specialist – Vulnerability & MSS Lead

CDW CanadaToronto, Ontario, Canada
Full-time

A leading IT solutions provider is seeking a Sr.Specialist in Managed Security Services in Toronto.You will provide second-level technical support, mentor junior staff, and manage complex technical... Show more

 • Promoted

Senior Specialist, It Vulnerability Management

Canada Mortgage and Housing CorporationToronto, Canada
Full-time +1

Select how often (in days) to receive an alert: Senior Specialist, IT Vulnerability Management Job Requisition ID: 12038 Position Status: Permanent Full Time Position Type: Hybrid Travel Requireme... Show more

 • Promoted

Site Reliability Engineer

HCLTechtoronto, on, ca
Full-time

Hands-on experience with at least one major public cloud platform (Azure, AWS, or GCP).Strong understanding of cloud infrastructure and application runtime components, including compute, storage, n... Show more

 • Promoted

Security Awareness Engineer - CBL Solutions

CBL Solutionsnewmarket, on, ca
Full-time

The L3 Security Awareness Engineer is responsible for owning and driving enterprise wide Security Awareness using Proofpoint Zen Guide.This role focuses on behaviour change, human risk reduction, a... Show more

 • Promoted • New!

Vulnerability Lifecycle Product Manager

eBay Inc.Toronto, ON, CA
Full-time

Manage AI-driven security initiatives as a Vulnerability Lifecycle Product Manager.Your role will focus on enhancing operational efficiency and reducing false positives across diverse platforms.In ... Show more

 • Promoted

Vulnerability Management Specialist - Cyber Security Consultancy - $80,000 A Year - Remote

Hamilton Barnes Associates LimitedToronto, Canada
Remote
Full-time

Vulnerability Management Specialist needed for remote work.Responsibilities include vulnerability scanning, penetration testing, and client recommendations. Show more