Manager Information Security - Cyber Threat Exposure
$105.79k - $141.05kLumen
Lumen is the trusted network for the AI‑powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities.
At Lumen, you’ll work on infrastructure customers rely on today and build for what’s next, where performance, security, and resilience matter.
This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you’re ready to take ownership, deliver meaningful impact, and help shape the future of AI‑ready connectivity, join us today.
The Role
The Manager of Information Security—Cyber Threat Exposure Management plays a critical role in solving complex challenges and building the infrastructure that powers what’s next for our customers and our world.
In this role, you won’t just manage vulnerabilities—you’ll shape how Lumen identifies, prioritizes, and reduces cyber risk across a rapidly evolving digital landscape. From strengthening asset visibility to advancing risk-based vulnerability management and governance, your work directly enables innovation by ensuring our foundation is secure, resilient, and ready to scale.
Location
This is a remote postion open to candidates based anywhere in the US.
The Main Responsibilities
This role matures vulnerability and asset management programs, improves data quality, advances risk-based remediation, and collaborates across security and technology teams to reduce enterprise exposure.
- Own the strategy, execution, and continuous maturity of the enterprise vulnerability management program, driving measurable reduction of cyber risk.
- Implement and refine risk-based prioritization using threat intelligence, exploitability, asset criticality, exposure, and business impact to focus remediation on the highest-risk vulnerabilities.
- Ensure comprehensive visibility across internal, cloud, and externally exposed assets through effective asset discovery, inventory governance, ownership assignment, and data quality management.
- Oversee vulnerability management and asset discovery platforms, supporting tool optimization, process automation, and consistent operational workflows.
- Drive remediation accountability by partnering with Security, IT, Cloud, Engineering, and business stakeholders to address critical vulnerabilities, visibility gaps, and risk exceptions.
- Define, monitor, and report key program metrics, including vulnerability backlog, mean time to remediate, SLA compliance, exception trends, asset coverage, and external exposure trends.
- Deliver clear executive-level reporting that translates technical findings into business risk, remediation priorities, and measurable program outcomes.
- Support audit, regulatory, and compliance requirements by maintaining evidence, reporting, and processes aligned to applicable security frameworks and control expectations.
- Lead, coach, and develop a high-performing team while fostering accountability, collaboration, operational excellence, and continuous improvement.
What We Look For in a Candidate
Minimum Qualifications:
- 5+ years of experience in information security, vulnerability management, security risk assessment, application security, system security, network security, or a related discipline.
- Experience leading, coaching, or managing technical personnel in a security, infrastructure, cloud, or technology operations environment.
- Undergraduate degree in Computer Science, Engineering, Information Security, or a related field, or equivalent combination of education and relevant experience.
- Broad technical knowledge of current and emerging technologies used within enterprise infrastructure, cloud environments, applications, and security operations.
- Experience communicating technical security risk to technical and non-technical audiences, including management and cross-functional stakeholders.
- Applicable professional or technical certifications should be in place, or the candidate must be willing to pursue relevant certification.
Preferred Qualifications:
- Professional or technical certifications such as CISSP, CISM, GISEC, Security+, cloud security certifications, or related security credentials.
- Experience with modern vulnerability management, asset discovery, cyber asset attack surface management, cloud security posture management, or external attack surface management platforms.
- Demonstrated understanding of risk-based vulnerability prioritization, remediation governance, exception management, and vulnerability lifecycle management.
- Knowledge of information security frameworks, control standards, and regulatory obligations, including ISO 27001/27002, NIST, SOX, PCI, FISMA, HIPAA, NACHA, and SSAE-16.
- Experience supporting audit readiness, evidence collection, control validation, and security reporting requirements.
- Knowledge of project management practices and experience driving cross-functional initiatives through influence, accountability, and measurable outcomes.
- Experience working in large enterprise environments, including complex data center, network, cloud, and hybrid technology ecosystems.
- Strong ability to translate complex technical findings into clear executive-level communication, business risk context, and actionable recommendations.
Compensation
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges
$105,786 - $141,047 in these states: AL AR AZ FL GA IA ID IN KS KY LA ME MO MS MT ND NE NM OH OK PA SC SD TN UT VT WI WV WY
$111,074 - $148,099 in these states: CO HI MI MN NC NH NV OR RI
$116,364 - $155,152 in these states: AK CA CT DC DE IL MA MD NJ NY TX VA WA
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's:
Benefits
#LI-Remote
Requisition #: 342405
Life at Lumen
Life at Lumen is human and connected, even in a fast moving, AI‑focused organization. We set clear expectations and trust people to meet them. With real support and shared accountability, teams collaborate better, move faster, and deliver meaningful outcomes.
Our Lumen 8 behaviors guide how we interact, make decisions, and work together, shaping a culture built to perform and win.
To learn more about Life at Lumen and how we live the Lumen 8, please visit:
Background Screening
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Equal Employment Opportunities
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
Privacy Notice
Lumen is committed to protecting the privacy and security of personal information collected during the recruitment and hiring process. Our Privacy Notice explains how we collect, use, disclose, and protect applicant information, as well as how individuals may request access to or deletion of their personal data.
To review Lumen’s Privacy Notice, please visit:
Disclaimer
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
- ...is for a Cloud Product SOC Manager in the Security Center of Excellence for PC... ...the industry. The security threat landscape presents a wide range... ...designated managers, cyber incident responders, and cybersecurity... ...event correlation using information gathered from a variety of...CyberLocal areaImmediate startHome office
- ...company in Raleigh seeks an experienced IT Security Analyst. This role includes supporting information security programs, analyzing threats, and enhancing security measures. Ideal... ...and guide less experienced team members. #J-18808-Ljbffr Global Channel Management, IncCyber
- ...Cyber Threat Analyst II PlanIT Group is seeking Cyber Threat Analyst II for our Federal customer in the Raleigh, NC area. The... ...for incident response Interface with Business Unit Information System Security Officers and Incident Response Teams Experience Level...CyberPermanent employmentWork experience placement
- ...seeking an experienced Technical Security professional to oversee the Bank's security against cyber threats. This remote role requires... ...security practices and risk management standards. Ideal candidates... ...associates. For detailed information, visit our benefits page. #J...CyberRemote job
- ...Cytel is seeking a Cyber Security Analyst to support and... ...enhance the organization's information security operations.... ...vulnerability management efforts by reviewing... ...required, including threat detection, incident investigation... ...is advantageous. Exposure to scripting or...CyberPermanent employment
- ...This position is for a Senior Manager Software Security in the Security Center of... ...industry. The security threat landscape presents a wide range... ...all of them * At least 1 cyber security certification such... ...Common Vulnerabilities and Exposures (CVE) and Open Web...CyberLocal areaHome office
- ...Cyber Defense & Data Security Lead (Americas) Location: Raleigh/hybrid... ...impacting security threats and events. This... ...response and incident management, threat intelligence... .... Participate in exposure management response... ...375 Job Category Information Security Posting...CyberFull timeLocal areaShift work
- ...technological and digital security of the Bank at a high level... ...expertise. Mitigates exposure to cyber threats, security risks, and unauthorized... .... Protects assets and information through securing the data... ...SCOM, and Splunk), and risk management standards, Knowledge of Active...CyberRemote work
$76.4k - $138.6k
...by vast amounts of information. Data is more... ...in EY Information Security has a critical role... ...digital identity, cyber defense, application... ...the Attack Surface Management team, you will play... ...EY’s digital exposure through hands-on penetration... ...emulating threat actors, performing...CyberSummer holidayLocal areaFlexible hours$152.7k - $294k
...trust. As part of EY Information Security, this role is focused... ...services, proactively manage risk, and respond... ...strategy, digital identity, cyber defense, application... ..., or reputational exposure. Escalate execution... ..., and the potential threats they face. Risk...CyberSummer holidayLocal areaFlexible hours- Capital One is seeking a Senior Manager, Cyber Threat Researcher to leverage cyber threat intelligence for the benefit of its customers. The role involves detecting and characterizing cyber threats, collaborating across teams, and utilizing tools to connect data sources...CyberRemote job
- IT Security Analyst needs 3+ years experience IT Security Analyst requires: IT security Cyber security Finance industry IT Security Analyst duties: Supports Information Security and Cyber Threat management programs within the Bank at an advanced level of ability. Analyzes...Cyber
- ...Join to apply for the Cyber Security Analyst II role at SECU Join to apply for the... ...is responsible for implementing, managing, and optimizing Security Information and Event Management (SIEM)... ...security teams to ensure effective threat detection and response. The Security...Cyber16 hoursFull timeInternshipWork from home
- ...maintaining the technical IT/cyber security capabilities necessary for safeguarding the firm's information systems and applications (software... ...stack which includes threat modeling of application designs... ...configuration, installation, change management, and operational handoff...CyberWork experience placement
- ...We are looking for a motivated Privileged Access Management (PAM) Engineer to join our Information Security team. This role is ideal for someone with foundational... ...(e.g., CyberArk, HashiCorp Vault, Delinea ) or exposure to identity/security platforms. ~ Familiarity...CyberWork at officeRemote work
$104.9k - $174.7k
...for high-severity security events, providing... ...on evolving threats, attack techniques... ...position supports the Information Security... ...including tabletops, cyber range exercises,... ...leadership, providing management with insight and... ...Vulnerability and exposure understanding...CyberLocal area$70k - $87.5k
...passion and customer focus to the business.The Cyber Security Analyst is responsible for contributing to, and strengthening, the Information Security function and role throughout the... ..., analysis and reporting of cyber threats in addition to ensuring business operations...CyberWork at officeLocal areaImmediate startRemote workHome officeFlexible hours$98.9k
...What you can expect The Security Engineer is responsible for security design and... ...design and implementation. Conducting threat modeling, architecture review,... ...Bachelor's degree in Computer Science, Information Science, Cyber Security, Computer or Electrical Engineering...CyberWork at officeRemote work- ...initiatives by working with Corporate Information Security Management, external vendors, and internal lines... .../initiatives to address emerging threats; managing portfolio reporting and delivery... ...management. Strong knowledge of cyber governance terms, disciplines and frameworks...CyberFull timePart timeWork at officeShift workDay shift
$94.1k - $150k
ASM Research, An Accenture Federal Services Company, is seeking a Cyber Threat Hunter in North Carolina to proactively protect enterprise environments from advanced cyber threats. This role involves analyzing network and log data to identify malicious activity and supports...Cyber$87.7k - $164k
...fuelled by vast amounts of information. Data is more valuable... ...everyone in EY Information Security has a critical role to play... ...strategy, digital identity, cyber defense, application... ...assessment on perceived security threats Maintain, manage, improve and update...CyberSummer holidayLocal areaFlexible hours$128.1k - $239.6k
...is fueled by vast amounts of information. Data is more valuable than ever... ...everyone in EY Information Security has a critical role to play.... ...strategy, digital identity, cyber defense, application security... ...focus on these pillars: Risk Management and Reduction: Assisting with...CyberWork experience placementSummer holidayLocal areaFlexible hours- ...principles to the solution of secure systems design... ...data encryption, key management, data warehousing, and... ...systems, enforce DoD Information Assurance (IAVA/IAVB)... ...compliance using DoD Cyber Exchange STIG Tools, and... ...these scans to identify threats and enforce remediation...CyberLocal area
$90k - $100k
...Job Title Cyber Security Analyst Location Charlotte, NC Salary $90,000.00 - $100,000.00 Employment Type Full-time Seniority Level Mid-... ...Experience Required 10-20 years of experience Job Function Information Technology Industries IT Services and IT Consulting Qualifications...CyberFull time$78k - $163.8k
...Analysis - TDNA) to support SOFETOPS missions. The role requires expertise in SIGINT and Cyber operations, along with a TS/SCI clearance. The candidate will analyze emerging threats and collaborate with intelligence teams. Strong communication and analytical skills are...Cyber$83.2k - $124.7k
...Operational Technology (OT) Cyber Security. We are seeking talented people... ...to support the design, management, implementation and delivery... ...will collaborate with the IT, Information Security, Electrical and Mechanical... .... To be aware of the cyber threats and vulnerabilities within...CyberFor contractorsLocal area- ...Cytel in Raleigh, North Carolina is seeking a Cyber Security Analyst to enhance its information security operations. This role requires monitoring, investigating... ..., participating in incident response, and managing vulnerability efforts. Ideal candidates should possess...Cyber
$170.6k - $390k
...world to grow your career in information security! The opportunity The... ...our dynamic team as a Senior Manager in Cybersecurity Engineering... ...data against a myriad of threats while leading cross-departmental... ...and Infrastructure‑as‑Code exposure (e.g., Terraform, ARM,...Summer holidayRemote workFlexible hours- Western Governors University is seeking a Senior Cyber Threat Hunter to protect its applications, systems, and networks. This role involves... ...testing, significantly influencing the university's security posture. Candidates should have a bachelor's degree in IT Security...CyberFull timeWork at officeFlexible hours
- ...automating, and maintaining security platforms that support... ...respond to security threats in real time. •... ...ML/DL systems against cyber threats, adversarial attacks... ...(SAIF), NIST AI Risk Management Framework, Framework... ...in Computer Science, Information Security, or related...CyberImmediate startRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Manager Information Security - Cyber Threat Exposure. Be the first to apply!
- security systems manager Raleigh, NC
- senior security manager Raleigh, NC
- security manager Raleigh, NC
- director information security Raleigh, NC
- corporate security manager Raleigh, NC
- security operations manager Raleigh, NC
- director global security Raleigh, NC
- senior director information security Raleigh, NC
- surveillance manager Raleigh, NC
- physical security manager Raleigh, NC

