Himalayas logo
Keeper Security, Inc.KI

Vulnerability Manager

Keeper Security is a cybersecurity company providing zero-trust and zero-knowledge security software for password management, secrets management, privileged access, and secure remote access. They serve millions of individuals and thousands of businesses globally.

Keeper Security, Inc.

Employee count: 201-500

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

Keeper Security is hiring an experienced Vulnerability Manager to lead and mature our enterprise vulnerability management program. This is a 100% remote position, with an opportunity to work a hybrid schedule for candidates based in the El Dorado Hills, CA or Chicago, IL metro area.

Keeper’s cybersecurity software is trusted by millions of people and thousands of organizations, globally. Keeper is published in 21 languages and is sold in over 120 countries. Join one of the fastest-growing cybersecurity companies and bring your IL5 DevOps expertise to mission-critical work.

About Keeper

Keeper Security is transforming cybersecurity for organizations around the world with next-generation privileged access management. Keeper’s zero-trust and zero-knowledge cybersecurity solutions are FedRAMP and StateRAMP Authorized, FIPS 140-2 validated, as well as SOC 2 and ISO 27001 certified. Keeper deploys in minutes, not months, and seamlessly integrates with any tech stack to prevent breaches, reduce help desk costs and ensure compliance. Trusted by thousands of organizations to protect every user on every device, Keeper is the industry leader for best-in-class password management, secrets management, privileged access, secure remote access and encrypted messaging. Learn more at KeeperSecurity.com.

About the Job

As the Vulnerability Manager, you will own the strategy, technology stack, and execution of Keeper’s enterprise vulnerability management program. You’ll lead initiatives that drive measurable risk reduction across Keeper’s commercial and public-sector deployments by integrating vulnerability discovery, prioritization, and remediation into every layer of our operations. You will work cross-functionally with Engineering, DevOps, IT, and Security Operations to embed vulnerability awareness into product development and cloud operations, while ensuring compliance with industry frameworks such as FedRAMP, StateRAMP, SOC 2, ISO 27001, and NIST 800-53.

Responsibilities

  • Own Keeper’s enterprise vulnerability management strategy, governance, and SLAs across all environments
  • Build scalable processes for vulnerability discovery, risk scoring, and remediation across multi-cloud and SaaS infrastructure
  • Manage vulnerability scanning and asset discovery tools (e.g., Tenable.io) and ensure continuous coverage
  • Correlate vulnerability data with threat intelligence and exploit activity to drive risk-based prioritization
  • Partner with Engineering, DevOps, IT, and Cloud Operations to ensure timely remediation and SLA adherence
  • Integrate vulnerability tracking and remediation into CI/CD and ticketing systems (e.g., Jira, ServiceNow, GitLab)
  • Automate scanning, correlation, and reporting workflows using scripting and API integrations
  • Develop dashboards and analytics to measure exposure trends and risk reduction progress
  • Monitor zero-day vulnerabilities, CISA KEV bulletins, and exploit campaigns to guide proactive mitigation
  • Ensure compliance alignment with frameworks such as FedRAMP, StateRAMP, SOC 2, ISO 27001, and NIST 800-53
  • Communicate vulnerability insights and risk metrics to leadership and key stakeholders
  • Mentor engineers and analysts, fostering a culture of precision, accountability, and continuous improvement
  • Represent vulnerability management in executive briefings, audits, and public-sector engagements

Requirements

  • 7+ years of experience in vulnerability management, security engineering, or cyber risk management
  • Proven success managing enterprise-scale vulnerability programs across SaaS and public-sector environments
  • Deep expertise in vulnerability scanning, CVE/CVSS scoring, exploit analysis, and risk prioritization
  • Strong understanding of cloud environments (AWS, GCP, Azure) and modern application stacks
  • Demonstrated ability to communicate technical risk clearly to both executive and non-technical stakeholders
  • Solid grasp of relevant compliance frameworks: NIST SP 800-53, CIS Controls, ISO 27001, SOC 2, FedRAMP, StateRAMP
  • Excellent problem-solving, organizational, and cross-functional collaboration skills

Preferred Qualifications

  • Certifications such as CISSP, CISM, OSCP, or GIAC GCVS/GCFA
  • Experience with automation, scripting, and data analytics (Python, PowerShell, API integration, Splunk, or Elastic dashboards)
  • Background in security architecture, red teaming, or exploit development
  • Familiarity with vulnerability disclosure programs and coordination with bug bounty platforms
  • Experience developing and presenting vulnerability metrics to senior leadership or board-level stakeholders
  • Bachelor’s degree in Cybersecurity, Computer Science, or a related field, or equivalent experience

Benefits

  • Medical, Dental & Vision (inclusive of domestic partnerships)
  • Employer Paid Life Insurance & Employee/Spouse/Child Supplemental life
  • Voluntary Short/Long Term Disability Insurance
  • 401K (Roth/Traditional)
  • A generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc)
  • Above market annual bonuses

Keeper Security, Inc. is an equal opportunity employer and participant in the U.S. Federal E-Verify program. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Classification: Exempt

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Mid-level
Senior

Location requirements

Hiring timezones

United States +/- 0 hours

About Keeper Security, Inc.

Learn more about Keeper Security, Inc. and their company culture.

View company profile

At the heart of Keeper Security is a mission to transform cybersecurity for people and organizations around the world. Founded in 2009 by Darren Guccione and Craig Lurey, the company was born from the idea of creating a secure and easy-to-use password manager and digital vault. This vision has since expanded to encompass a comprehensive suite of zero-trust and zero-knowledge security solutions. Keeper's culture is built on a foundation of innovation, creativity, and boldness. They are a global team, passionate about addressing the critical unmet needs of the cybersecurity market. The company actively fosters a diverse and inclusive environment, believing that varied perspectives fuel their drive for excellence. Team members are encouraged to be coachable, intuitive, persistent, and team-driven, contributing to a collaborative and supportive workplace.

Keeper Security invests significantly in the training and development of its employees, starting from their first day and continuing throughout their careers. This commitment to growth extends to their product philosophy, which emphasizes user-friendliness and robust protection. Their solutions, including password management, secrets management, privileged access management, secure remote access, and encrypted messaging, are designed to deploy in minutes and seamlessly integrate with any tech stack. This approach aims to prevent breaches, reduce help desk costs, and ensure compliance for their millions of individual users and thousands of organizational clients. The company's leadership team brings deep expertise in cybersecurity software, cloud computing, and mobile device technologies, guiding Keeper's commitment to customer success and its relentless pursuit of cybersecurity innovation. Keeper's work model is designed to maximize professional development and performance, offering a hybrid structure that includes in-office, work-from-home, and remote options, tailored to individual roles and locations.

Employee benefits

Learn about the employee benefits and perks provided at Keeper Security, Inc..

View benefits

401(K)

Keeper Security offers a 401(K) plan.

Paid holidays

Keeper Security offers paid holidays.

Wellness perks

Keeper Security offers wellness perks.

Vision Coverage

Keeper Security provides vision coverage.

View Keeper Security, Inc.'s employee benefits
Claim this profileKeeper Security, Inc. logoKI

Keeper Security, Inc.

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

41 remote jobs at Keeper Security, Inc.

Explore the variety of open remote roles at Keeper Security, Inc., offering flexible work options across multiple disciplines and skill levels.

View all jobs at Keeper Security, Inc.

Remote companies like Keeper Security, Inc.

Find your next opportunity by exploring profiles of companies that are similar to Keeper Security, Inc.. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan
Keeper Security, Inc. hiring Vulnerability Manager • Remote (Work from Home) | Himalayas