368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
up to $130k per year
Location
In office (Tempe)
Seniority
Middle · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Gen Digital Inc. is a global cybersecurity, online privacy, and consumer technology leader. Dual-headquartered in Tempe, Arizona, and Prague, Czech Republic, the publicly traded company (NASDAQ: GEN) was formed through the 2022 merger of NortonLifeLock and Avast (and was previously known as Symantec Corporation).

About Gen:

Gen is a global company dedicated to powering Digital Freedom through its trusted consumer brands including Norton, Avast, LifeLock, MoneyLion and more. Our combined heritage is rooted in financial empowerment and cyber safety for the first digital generations, and today we deliver award-winning cybersecurity, online privacy, identity protection and financial wellness solutions to nearly 500 million users in more than 150 countries.

Together, we share a collective passion and vision to protect consumers and help them grow, manage and secure their digital and financial lives. We’re always looking for smart, fearless and high-impact talent who see AI as a teammate - leveraging it to move faster and deliver meaningful results.

When you’re part of Gen, you’ll have the flexibility, tools and support to do your best work and grow your career - from flexible working options and time off to competitive pay, benefits and well-being programs.

At Gen, we are scrappy and relentlessly customer driven. We create room for healthy debate, experimentation and continuous learning, and we seek out people with different experiences, identities and ideas to join our team. You’ll work with people who back each other, respect each other and understand that our differences are a competitive advantage.

If this sounds like you, we’d love you to be part of Gen.

About the Role:

We’re looking for an independent, driven security professional who thrives at the intersection of security, DevOps, and delivery. In this role, you will translate legal and security framework requirements into clear, actionable vulnerability management and remediation programs that operate across multiple Security and DevOps teams. You’ll help design, operationalize, and continually improve our vulnerability management lifecycle, from identification and triage through prioritization and remediation to validation and reporting. This includes secure development practices within regulatory frameworks guiding vulnerability handling, coordinated disclosure, SBOM transparency, patch management, and post-deployment monitoring. You will track, report, and escalate progress, risks, and dependencies, partnering closely with a Senior Project Manager and reporting to senior leadership.

If you enjoy making complex requirements practical, measurable, and delivered-this is for you.

Key Responsibilities:

  • Translate requirements → action: Break down legal, regulatory (including Cyber Resiliency Act), and security framework obligations into prioritized, testable tasks for engineering and platform teams. Define concrete technical control requirements across vulnerability detection, remediation SLAs, secure configuration baselines, SBOM management, and coordinated disclosure processes.

  • Own the vulnerability management lifecycle: Drive end-to-end vulnerability management across infrastructure, cloud, applications, containers, and third-party components-including scanning, triage, risk-based prioritization (CVSS + exploitability + business impact), remediation tracking, validation, and closure.

  • Integrate security into CI/CD: Partner closely with the Application Security team to support SAST, DAST, SCA, container, IaC, and cloud configuration scanning into CI/CD pipelines. Ensure findings are automatically ticketed, risk-ranked, and tracked to resolution with measurable SLAs.

  • Orchestrate implementation: Coordinate work across multiple security domains (e.g., IAM, vuln mgmt, cloud security, appsec) and DevOps/Platform teams to drive consistent adoption.

  • Plan & track delivery: Build delivery plans, track milestones, manage dependencies, and maintain a single source of truth (e.g., Jira/Azure Boards).

  • Stakeholder management: Align with product owners, architects, and security SMEs; resolve blockers and facilitate decisions.

  • Metrics & reporting: Develop actionable dashboards that show vulnerability aging, SLA compliance, backlog trends, recurring vulnerability patterns, report status, risk exposure, and remediation plans to senior leadership in concise dashboards.

  • Control mapping & evidence: Help map vulnerability management practices to regulatory frameworks and collect/curate evidence for audits.

  • Continuous improvement: Standardize templates, automate playbooks and evidence collection, and reduce manual triage effort to advance processes and program maturity.

  • Partner with PM: Work hand-in-hand with a Senior PM to align scope, timelines, compliance deadlines, and cross-team execution.

About you:

  • A degree in Information Technology or a related field, ideally with a focus on cybersecurity, is an advantage.

  • 3+ years of experience in vulnerability management, security engineering, or security program delivery in a cloud/software environment.

  • Demonstrated ability to work independently and drive outcomes across multiple teams.

  • Working understanding of regulatory security requirements and demonstrated experience with common frameworks/regulations implementation (e.g., ISO 27001, NIS2, SOC 2, GDPR, PCI DSS).

  • Strong translation skills: turn policy and control language into developer-ready user stories, acceptance criteria, remediation tasks, and runbooks.

  • Hands-on experience using work tracking tools (Jira, Azure DevOps, etc.) and crafting status reports/dashboards for leadership.

  • Strong communication skills: comfortable analyzing vulnerability trends, including ageing, patch latency, and systemic root causes, supported by concise writing ability, clear meeting facilitation, and demonstrated experience with stakeholder alignment.

  • Understanding of modern SDLC/DevOps practices (CI/CD, IaC, pipelines, change management).

  • Experience in cloud environments (AWS/Azure/GCP), including shared responsibility and guardrail patterns.

  • Wry sense of humor is a plus

What’s next:

  • Recruiter Phone Screen

  • Hiring Manager Interview

  • Technical Aptitude Interview

  • Cross-Functional Stakeholder Interview

  • Final Round Interview

Gen is an equal opportunity employer, and we’re committed to fair, inclusive practices at every stage of the candidate and employee journey. Employment decisions are based on merit, experience and business needs.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Tempe
AI Engineer 1 day ago
$25k – $103k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Gurgaon
Python
SQL
Databases
Databricks
Microsoft Fabric
AI/ML
AI Agents
Embeddings
Gemini
Hallucination
LangChain
LangGraph
LLM
Multimodal AI
Prompt Engineering
PyTorch
RAG
Semantic Search
Spark
TensorFlow
Hugging Face
LLM Guardrails
LLMOps
OpenAI
Semantic Search
DevOps
AWS
Azure
CI/CD
Apply
In office • Full-Time • 7+ years exp • Bachelor's Degree • Ho Chi Minh City
JavaScript
Python
AI/ML
Copilot
Cursor
DevOps
Azure DevOps
Jenkins
Azure
GitLab
QA
JMeter
k6
Playwright
Postman
Rest-Assured
Selenium
TestRail
Apply
$28k – $65k per year (Estimated) • In office • Full-Time • 12+ years exp • Bengaluru
Bash
PowerShell
Python
Node JS
JavaScript
Node JS
Commander.js
AI/ML
AI Agents
DevOps
Amazon EC2
Amazon EKS
AWS
Azure
Kubernetes
Amazon ECS
IAM
Cybersecurity
Crowdstrike
Zero Trust
Apply
$71k – $170k per year (Estimated) • In office • Full-Time • Netanya
Python
TypeScript
AI/ML
Accelerate
Fine-tuning
LangChain
LLM
NLP
Prompt Engineering
PyTorch
RAG
Edge AI
Hugging Face
AI Agents
DevOps
AWS
Azure
Docker
GCP
Kubernetes
Apply
$24k – $55k per year (Estimated) • Remote/Hybrid • Full-Time • 6+ years exp • Bachelor's Degree • Moscow
DevOps
AWS
Azure
SLI/SLO/SLA
Cybersecurity
GDPR
Management
Jira
ServiceNow
Apply
$220k – $240k per year • In office • Full-Time • New York • Mountain View
Analytics
A/B Testing
Apply
Senior Data Analyst 6 days ago
Remote/Hybrid • Full-Time • 3+ years exp • Prague • Brno
C++
Python
SQL
AI/ML
AI Agents
Analytics
Power BI
Tableau
A/B Testing
ETL/ELT
Apply
$195k – $270k per year • In office • Full-Time • 8+ years exp • New York
Apply
Technical Director 17 days ago
In office • Full-Time • 12+ years exp • Bachelor's Degree • Prague
DevOps
AWS
Apply
Remote/Hybrid • Full-Time • Prague • Brno
Bash
Python
Mobile
UIKit
Apply
$4k – $14k per year • In office • 3+ years exp • Bachelor's Degree • Tempe
DevOps
Incident Management
Apply
In office • 2+ years exp • PhD • Tempe
Apply
$93k – $216k per year (Estimated) • In office • Full-Time • Tempe
Apply
$85k – $202k per year (Estimated) • In office • Full-Time • Tempe
Apply
$140k – $200k per year • In office • PhD • Tempe
AI/ML
Text-to-Speech
DevOps
AWS
Azure
Docker
GCP
Kubernetes
Vercel
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.