Manager Information Security - Cyber Threat Exposure
$105.79k - $141.05kLumen
Lumen is the trusted network for the AI‑powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities.
At Lumen, you’ll work on infrastructure customers rely on today and build for what’s next, where performance, security, and resilience matter.
This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you’re ready to take ownership, deliver meaningful impact, and help shape the future of AI‑ready connectivity, join us today.
The Role
The Manager of Information Security—Cyber Threat Exposure Management plays a critical role in solving complex challenges and building the infrastructure that powers what’s next for our customers and our world.
In this role, you won’t just manage vulnerabilities—you’ll shape how Lumen identifies, prioritizes, and reduces cyber risk across a rapidly evolving digital landscape. From strengthening asset visibility to advancing risk-based vulnerability management and governance, your work directly enables innovation by ensuring our foundation is secure, resilient, and ready to scale.
Location
This is a remote postion open to candidates based anywhere in the US.
The Main Responsibilities
This role matures vulnerability and asset management programs, improves data quality, advances risk-based remediation, and collaborates across security and technology teams to reduce enterprise exposure.
- Own the strategy, execution, and continuous maturity of the enterprise vulnerability management program, driving measurable reduction of cyber risk.
- Implement and refine risk-based prioritization using threat intelligence, exploitability, asset criticality, exposure, and business impact to focus remediation on the highest-risk vulnerabilities.
- Ensure comprehensive visibility across internal, cloud, and externally exposed assets through effective asset discovery, inventory governance, ownership assignment, and data quality management.
- Oversee vulnerability management and asset discovery platforms, supporting tool optimization, process automation, and consistent operational workflows.
- Drive remediation accountability by partnering with Security, IT, Cloud, Engineering, and business stakeholders to address critical vulnerabilities, visibility gaps, and risk exceptions.
- Define, monitor, and report key program metrics, including vulnerability backlog, mean time to remediate, SLA compliance, exception trends, asset coverage, and external exposure trends.
- Deliver clear executive-level reporting that translates technical findings into business risk, remediation priorities, and measurable program outcomes.
- Support audit, regulatory, and compliance requirements by maintaining evidence, reporting, and processes aligned to applicable security frameworks and control expectations.
- Lead, coach, and develop a high-performing team while fostering accountability, collaboration, operational excellence, and continuous improvement.
What We Look For in a Candidate
Minimum Qualifications:
- 5+ years of experience in information security, vulnerability management, security risk assessment, application security, system security, network security, or a related discipline.
- Experience leading, coaching, or managing technical personnel in a security, infrastructure, cloud, or technology operations environment.
- Undergraduate degree in Computer Science, Engineering, Information Security, or a related field, or equivalent combination of education and relevant experience.
- Broad technical knowledge of current and emerging technologies used within enterprise infrastructure, cloud environments, applications, and security operations.
- Experience communicating technical security risk to technical and non-technical audiences, including management and cross-functional stakeholders.
- Applicable professional or technical certifications should be in place, or the candidate must be willing to pursue relevant certification.
Preferred Qualifications:
- Professional or technical certifications such as CISSP, CISM, GISEC, Security+, cloud security certifications, or related security credentials.
- Experience with modern vulnerability management, asset discovery, cyber asset attack surface management, cloud security posture management, or external attack surface management platforms.
- Demonstrated understanding of risk-based vulnerability prioritization, remediation governance, exception management, and vulnerability lifecycle management.
- Knowledge of information security frameworks, control standards, and regulatory obligations, including ISO 27001/27002, NIST, SOX, PCI, FISMA, HIPAA, NACHA, and SSAE-16.
- Experience supporting audit readiness, evidence collection, control validation, and security reporting requirements.
- Knowledge of project management practices and experience driving cross-functional initiatives through influence, accountability, and measurable outcomes.
- Experience working in large enterprise environments, including complex data center, network, cloud, and hybrid technology ecosystems.
- Strong ability to translate complex technical findings into clear executive-level communication, business risk context, and actionable recommendations.
Compensation
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges
$105,786 - $141,047 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO MS MT ND NE NM OH OK PA SC SD TN UT VT WI WV WY $111,074 - $148,099 in these states: CO HI MI MN NC NH NV OR RI $116,364 - $155,152 in these states: AK CA CT DC DE IL MA MD NJ NY TX VA WA
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's: Benefits
#LI-Remote
Requisition #: 342405
Life at Lumen
Life at Lumen is human and connected, even in a fast moving, AI‑focused organization. We set clear expectations and trust people to meet them. With real support and shared accountability, teams collaborate better, move faster, and deliver meaningful outcomes.
Our Lumen 8 behaviors guide how we interact, make decisions, and work together, shaping a culture built to perform and win.
To learn more about Life at Lumen and how we live the Lumen 8, please visit:
Background Screening
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Equal Employment Opportunities
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
Privacy Notice
Lumen is committed to protecting the privacy and security of personal information collected during the recruitment and hiring process. Our Privacy Notice explains how we collect, use, disclose, and protect applicant information, as well as how individuals may request access to or deletion of their personal data.
To review Lumen’s Privacy Notice, please visit:
Disclaimer
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
- Job Title Information Security Analyst [Threat & Vulnerability] Location Franklin Lakes... ...proactive mitigation of cyber threats which could impact... ...mitigate the risk of exposure. This includes reviewing... ...communication and project management skills Requires a highly...CyberContract workTemporary work
- MillenniumSoft Inc is seeking an Information Security Analyst in Franklin Lakes,... ...contract. You will join the Threat & Vulnerability team within... ...identifying and mitigating cyber threats. The role requires... ...communication skills, project management experience, and knowledge of...CyberContract work
$230.1k - $262.7k
Senior Manager, Information Security Office Consultant Full-time Jobs for Humanity is partnering with Capital... ...processes Escalate and manage cyber security risk Provide ad hoc support... ...Application Security Experience with Threat Modeling Experience with Penetration...CyberFull timePart timeWork at officeLocal areaShift work$120k - $202.5k
Senior Staff SaaS Security Engineer We are... ...leadership team in Global Cyber Security (GCS).... ...agent-to-SaaS threats. What You Will... ...Security Posture Management (SSPM), SaaS... ...findings, threat exposure, and remediation... ...Computer Science, Information Security, or a related...CyberTemporary work$188k - $275k
...CoreWeave is seeking a Senior Manager, Security Engineering, Incident... ...global incident response and cyber defense capabilities. In this... ...work closely with the Chief Information Security Officer (CISO), senior... ...in line with emerging threats, regulatory requirements, and...CyberPermanent employmentTemporary workCasual workWork at officeRemote workFlexible hours$120k - $202.5k
...are seeking a Product Security Engineer / Architect -... ...leadership team within Global Cyber Security (GCS). The... ...malware, and emerging threats. Why This Role Is... ...and stakeholder management skills. Education & Preferred... ...in Computer Science, Information Security, Engineering,...CyberTemporary workWork at office$145k - $165k
Position Summary As a Senior Manager in League Office Cyber Security department, he/she shall... ...Management, Cyber Threat Intelligence, AI Security... ...and reduce organizational exposure. Design, implement, and... ...senior leadership to support informed decision‑making and continuous...CyberTemporary workWork at officeLocal area$125k - $232k
Job Title Information Security Systems Engineer Job Code 37214 Job Location... ...vulnerability analysis and security management. Responsible for integration... ...in configuration and use of cyber defense and vulnerability... ...architectures. Assessing threats via attack/countermeasure...CyberLocal areaRemote workFlexible hours- ...A Cyber Security Analyst plays a crucial role in the Cyber Defense Team, focusing on the advanced aspects of cybersecurity management, threat analysis, and response activities. This position carries... ...forensic analysis of digital information and security incidents to understand...Cyber
- The NBA is seeking a Senior Manager to lead the League Office Cyber Security program, covering vulnerability management, AI security, threat intelligence, and risk governance across cloud and on‑prem environments. You will partner with NBA stakeholders, translate technical...CyberWork at office
- National Basketball Association (NBA) is seeking a Senior Manager in the League Office Cyber Security department to lead enterprise security programs spanning vulnerability management, threat intelligence, AI security, cloud security, and risk management. This role emphasizes...CyberRemote jobWork at office
- ...Job Description A Cyber Security Analyst plays a crucial role in the Cyber Defense Team,... ...the advanced aspects of cybersecurity management, threat analysis, and response activities. This... ...Conduct forensic analysis of digital information and security incidents to understand...CyberWork at officeRemote work
- Get notified about new System Security Administrator jobs in United States . 9,000+ System... ...Administrator (Fulltime) - 100% Remote Information Systems Security Officer (ISSO) Security... ...Systems Administrator (SaaS & Security Focus) Cyber Security Systems Engineer - Remote...CyberFull timeRemote work
- Prudential Ins Co of America is seeking a Cyber Detection Engineer responsible for designing enterprise threat detection capabilities. This role involves operationalizing and improving security alerts across different environments. The ideal candidate will have 3+ years...Cyber
$120k - $202.5k
...looking for a Senior Threat Modeler responsible for... ...technologies to identify security risks early in the... ...weaknesses, reduction of cyber risk, improved... ...communication and stakeholder management skills, with the... ...Science, Cybersecurity, Information Technology, Engineering...CyberShift work- Prudential Annuities Distributors (PAD) is looking for a Cyber Enabled Fraud Threat Management professional to analyze cyber-enabled fraud activities,... ...This role involves developing intelligence assessments to inform detection and response strategies. Ideal candidates...Cyber
- ...Description Summary: The Security Architect has primary... ...within the Bank’s Information Security team. The... ...business units, Risk Management, and Technology teams... ...Assessment, Mitigation, and Threat Modeling Maintain... ...in the Information / Cyber Security field....CyberWork at officeWork from home
- ...Opportunities Enterprise Security Architect (Remote)... ...Architect to join our Information Technology department.... ...security patterns. Conduct threat modeling and establish... ..., source type management, and indexing practices... ...certification options, Cyber Security Service Provider...CyberRemote workFlexible hours
- Prudential Financial is seeking a professional in Newark, NJ, to join their Cyber Enabled Fraud Threat Management team. This role involves analyzing fraud data and supporting organizational responses to cyber threats through detailed investigations and analytics. Ideal...Cyber
- ...systems, networks and data/information spanning the planning,... ...phases. Reviews threat and vulnerability assessments... ...Assurance Risk Management Framework (RMF), performing... ...as the Commander's Cyber Readiness Inspection (... ...Information Systems Security Officer, and providing...CyberTemporary workLocal areaTrial periodNight shift
$96.2k - $158.8k
...Classification: Technology - Information Security Are you interested in... ...Team & Role The Specialist, Cyber Detection Engineer will serve... ...and maintaining enterprise threat detection capabilities across... ...and reporting, and lifecycle management processes. The Skills & Expertise...CyberTemporary workPart time$96.2k - $158.8k
Job Classification Technology - Information Security Are you interested in building capabilities that enable the organization... ...Your Team & Role You will join a newly established Cyber Enabled Fraud Threat Management capability within the Cyber Defense and Response...CyberPart time$112k - $168k
...whether you're championing cyber security, defining how we harness the... ...priorities with technology strategy, managing regional demand, enabling... ...leadership of site-specific threats, vulnerabilities, and... ...breaking down problems and information using structured frameworks...CyberTemporary workLocal area- Cybersecurity Service Delivery Manager (SDM) Franklin Lakes,... ...MSSP Exp. (Managed Security Service Provider) is... ...management Lead multi domain Cyber-security delivery team... ...delivery Have good exposure to multiple domains of... ...and techniques, threat vectors, risk management...CyberWork experience placement
$120k - $202.5k
...looking for a Senior Network Security Architect. You will be... ...security standards and risk management objectives. Why This Role Is... ...cloud platforms, and data. As cyber threats continue to target network infrastructure... ...Science, Cybersecurity, Information Technology, Engineering, or...CyberTemporary workRemote workShift work- ...solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise content/data management... ...corporate ITIL certification), ISO 27001:2005 Information Security Management System (ISMS), and CMMI-DEV...CyberTemporary work
$120k - $202.5k
...Information Security Architect We are seeking a highly skilled Information Security Architect... ...technologies such as Data Security Posture Management (DSPM), Cloud Access Security Brokers... ...Stay current with emerging trends, threats, and technologies in data protection and...Temporary work$178.6k - $267.8k
...efficiency? As Vice President, Information Security - Automation Strategy, you'... ...followership. You will manage a team of Automation Leads,... ...IAM) & Security Operations, Cyber Defense and Response (CDR),... ...security outcomes, accelerating threat detection, investigation, and...CyberPart time$123.7k - $204.1k
Job Title Threat Hunting Lead Job Classification Technology - Information Security Responsibilities Lead proactive threat hunts across... ...such as MITRE ATT&CK and the Cyber Kill Chain. Execute advanced investigations... ..., reporting, and knowledge management. Industry Standard...Cyber$96.2k - $158.8k
...Classification: Technology - Information Security Are you passionate about... ..., strategic prevention, and cyber defense capabilities? Our Cyber... ...culture where proactive risk management is part of our DNA. When you... .... Stay informed on emerging threats and tactics that may impact...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager Information Security - Cyber Threat Exposure. Be the first to apply!

