Manager, Vulnerability & Data Security

1 day, 20 hours ago
Full-time
Senior
Cybersecurity
Marqeta

Marqeta

Marqeta is a pioneer in modern card issuing and payment solutions, offering businesses instant card issuance and payment processing through their innovative open API platform.

Diversified Financial Services
251-1K
Founded 2010

Description

  • Lead the vulnerability management program, including asset coverage, scanning cadence, prioritization, and measurable risk reduction.
  • Integrate Tenable and Snyk findings into engineering backlogs with clear remediation SLAs and partner with SRE, platform, and application teams.
  • Establish risk-based prioritization using CVSS, KEV, EPSS, exploitability, and business criticality, and publish leadership dashboards.
  • Improve patching and configuration baselines by building preventative controls and secure-by-default guardrails.
  • Coordinate vulnerability disclosure, penetration test intake, and threat-driven campaigns for actively exploited CVEs.
  • Report vulnerability program health, trends, and exceptions to security leadership and auditors.
  • Establish data ownership and stewardship across critical datasets, including roles, responsibilities, and decision rights.
  • Define and enforce data classification, access, and usage policies with least-privilege and segregation-of-duties guardrails.
  • Operationalize Sentra and Google DLP to monitor data exposure and access risks and drive remediation with accountable teams.
  • Build data lifecycle controls for creation, storage, use, sharing, archival, and destruction across platforms and workflows.
  • Partner with Security, Legal, Privacy, Data, and compliance teams to protect data and support safe analytics and product use cases.
  • Develop and report on program metrics and compliance evidence for PCI and SOX controls.

Requirements

  • 7–10+ years of experience in information security.
  • 3+ years of experience leading security programs or teams.
  • Hands-on experience managing vulnerabilities at scale with Tenable and Snyk across cloud-native environments, containers, endpoints, and CI/CD.
  • Experience building or maturing data security programs with Sentra (DSPM) and Google DLP.
  • Strong policy design and enforcement experience for data security.
  • Familiarity with PCI and SOX requirements.
  • Knowledge of SDLC, DevSecOps, and cloud security architectures such as AWS, GCP, or Azure.
  • Comfort working with IAM/IGA, SIEM, CNAPP, and ticketing/workflow integrations.
  • Solid understanding of data governance concepts such as stewardship and lineage.
  • Excellent communication and reporting skills with executive-ready updates.
  • Experience in regulated or fintech environments is preferred.
  • CISSP or CISM certification is a plus.

Benefits

  • Flexible First/remote work model anywhere within the United States.
  • Base salary range of $167,100–$208,900 nationally, $179,800–$224,700 in Premium locations, and $195,400–$244,400 in Premium Plus locations.
  • Annual bonuses for eligible employees.
  • Multiple health insurance options.
  • Flexible time off with no fixed limit.
  • Retirement savings program with company contribution and after-tax contributions.
  • Equity in a publicly traded company plus an Employee Stock Purchase Program.
  • Family-forming benefits, fertility support, and up to 20 weeks of parental leave.
  • Free therapy sessions, financial and professional coaching, and legal advice.
  • Monthly remote-work stipend and annual development dollars.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer

Prolific 51-250 Professional Services

Prolific is hiring a Senior Security Engineer to support security operations, cloud security, and compliance for a platform handling sensitive data at scale.

AWS CI/CD Datadog DevSecOps GCP Kubernetes Penetration Testing SIEM Terraform
1 day, 5 hours ago

Specialist Solutions Architect - Cloud Infrastructure & Security

Databricks 1K-5K IT Services

Databricks is seeking a Specialist Solutions Architect focused on Cloud Infrastructure and Security to help customers design, deploy, and secure Databricks environments across public cloud platforms.

Apache Spark AWS Azure Databricks Encryption GCP Hadoop Java Kafka Network Security OAuth Python SAML Scala SQL Terraform
1 day, 5 hours ago

Manager, Partner Systems and Automation

HubSpot 5K-10K Media

HubSpot is hiring a Manager, Partner Systems & Automation to lead the systems and automation work that supports its global partner ecosystem and turns partner strategy into scalable operational solutions.

CRM Looker REST API Snowflake SQL
1 day, 5 hours ago

Clinical Lead (Physician, MD/DO)

Form Health 11-50 Health Care Providers & Services

Form Health is seeking a Clinical Lead (Physician) to co-lead a clinical pod, support physicians and care teams, and help deliver high-quality telemedicine obesity care while improving operations and clinician well-being.

Microservices
1 day, 6 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers