Senior Manager, Cybersecurity, CTEM & Vulnerability Intelligence - Remote
Boost your chances before you apply.
Stryker
Kalamazoo, MI, US
Summary
You will lead the enterprise Continuous Threat Exposure Management (CTEM) and Vulnerability Management program across IT, cloud, and product environments. This involves partnering with cross-functional teams to reduce exposure through risk-based discovery, prioritization, and remediation.
Job Description
Work Flexibility: Remote
Preference will be given to candidates residing in the Eastern or Central time zones.
As a Senior Manager, CTEM & Vulnerability Management, you will lead the enterprise Continuous Threat Exposure Management (CTEM) and Vulnerability Management function across enterprise IT, cloud, operational technology (OT), and product environments. You will partner with Product Security, Threat Intelligence, Security Operations, Infrastructure, Cloud, and Engineering teams to reduce exposure through risk-based discovery, prioritization, validation, and remediation.
What you will do:
Technical Responsibilities:
• Lead the enterprise CTEM and Vulnerability Management program, including its strategy, roadmap, and operating model.
• Oversee vulnerability scanning and assessment across infrastructure, cloud, endpoint, application, identity, network, and OT environments.
• Manage the product security vulnerability lifecycle with Product Security, including intake, triage, risk assessment, remediation tracking, software bill of materials (SBOM) analysis, and coordinated vulnerability disclosure support.
• Prioritize vulnerabilities and exposures using CVSS, EPSS, CISA Known Exploited Vulnerabilities (KEV), threat intelligence, asset criticality, and business context.
• Lead attack surface management, exposure validation, and breach and attack simulation activities to confirm exploitability and control effectiveness.
• Evaluate emerging vulnerabilities, exploits, and threat intelligence affecting enterprise systems, marketed products, and embedded systems.
• Drive automation for vulnerability discovery, data enrichment, ticketing, remediation workflows, and reporting through SOAR platforms, APIs, Python, or PowerShell.
• Support cyber incident investigations with vulnerability context, exposure analysis, and remediation expertise.
Leadership & People Management Responsibilities:
• Partner with Infrastructure, Cloud, Application, Product Security, and Engineering teams to establish risk-based service-level agreements, drive remediation, and track plans of action and milestones.
• Establish governance standards, quality assurance procedures, and documentation for vulnerability and exposure management operations.
• Measure and report exposure reduction, remediation performance, validation results, and operational metrics to executive stakeholders.
• Lead vulnerability management, exposure management, or product security vulnerability teams.
Knowledge and Capabilities:
• Analyze complex vulnerability data and large volumes of exposure telemetry to identify risk and guide response.
• Translate technical findings, remediation status, and risk trends into clear written, verbal, and presentation-ready updates for technical and executive audiences.
What You Need:
Required Qualifications
• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
• Minimum 10 years of experience in cybersecurity.
• Minimum 3 years of experience leading vulnerability management, exposure management, or product security vulnerability teams.
• Experience managing product vulnerabilities, including triage, coordinated vulnerability disclosure, SBOM analysis, and remediation with product engineering teams.
• Experience with Tenable, Qualys, Rapid7, Wiz, ServiceNow Vulnerability Response, or equivalent vulnerability and exposure management technologies.
• Experience implementing automation through SOAR platforms, APIs, Python, or PowerShell.
Preferred Qualifications
• Master's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.
• CISSP, CISM, GEVA, GPEN, GIAC, Tenable, Qualys, or equivalent professional certification.
United States of America Pay Ranges:
- USN: $155,900 - $259,700 USD Annual
- US5: $163,700 - $272,700 USD Annual
- US10: $171,500 - $285,700 USD Annual
- US15: $179,300 - $298,700 USD Annual
- US20: $187,100 - $311,600 USD Annual
- US30: $202,700 - $337,600 USD Annual
View the U.S. work location and transparency guide to find the pay range for your location.
Travel Percentage: None
Stryker Corporation is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected veteran status. Stryker is an EO employer – M/F/Veteran/Disability.
Stryker Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.
Stryker is a global leader in medical technologies and, together with our customers, we are driven to make healthcare better. We offer innovative products and services in MedSurg, Neurotechnology and Orthopaedics that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 150 million patients annually. More information is available at stryker.com and careers.stryker.com.
Facts:
● 2025 Sales: $25.1 billion
● Industry: Medical Instruments & Supplies
● Employees: 56,000 worldwide
● $1.6 billion spent on research and development in 2025
● 14,600 patents owned globally in 2025
● Products sold in 61 countries
● Fortune 500 Company
● 10 consecutive years as one a World's Best Workplace
Stryker’s social media community guidelines: https://www.stryker.com/content/m/legal/social-media-community-guidelines/en/index.html
Notice Regarding Employee Conduct on Facebook/LinkedIn
Meta/LinkedIn does not permit employers to verify or validate “employees” in the (META: “Works at” LinkedIn: “Experience”) section of users’ profiles. Please be aware that the views expressed by individuals on their personal accounts and do not necessarily represent the views of our company. If you encounter any issues with a person claiming to be our employee, we recommend using the “Report Profile” feature. If you’d like to report concerns to our Ethics Hotline, you may do so at: https://app.convercent.com/en-us/LandingPage/b6bb4e84-9fcb-ea11-a974-000d3ab9f296
Company size
10,001+ employees
Industry
Medical Equipment Manufacturing
Org type
Public Company
Headquarters
Kalamazoo, MI
Stryker is a global leader in medical technologies and, together with our customers, we are driven to make healthcare better. We offer innovative products and services in MedSurg, Neurotechnology and Orthopaedics that help improve patient and healthcare outcomes. Alongside its customers around the world, Stryker impacts more than 150 million patients annually. More information is available at stryker.com and careers.stryker.com.
Facts:
● 2025 Sales: $25.1 billion
● Industry: Medical Instruments & Supplies
● Employees: 56,000 worldwide
● $1.6 billion spent on research and development in 2025
● 14,600 patents owned globally in 2025
● Products sold in 61 countries
● Fortune 500 Company
● 10 consecutive years as one a World's Best Workplace
Stryker’s social media community guidelines: https://www.stryker.com/content/m/legal/social-media-community-guidelines/en/index.html
Notice Regarding Employee Conduct on Facebook/LinkedIn
Meta/LinkedIn does not permit employers to verify or validate “employees” in the (META: “Works at” LinkedIn: “Experience”) section of users’ profiles. Please be aware that the views expressed by individuals on their personal accounts and do not necessarily represent the views of our company. If you encounter any issues with a person claiming to be our employee, we recommend using the “Report Profile” feature. If you’d like to report concerns to our Ethics Hotline, you may do so at: https://app.convercent.com/en-us/LandingPage/b6bb4e84-9fcb-ea11-a974-000d3ab9f296
Company size
10,001+ employees
Industry
Medical Equipment Manufacturing
Org type
Public Company
Headquarters
Kalamazoo, MI