Lead Info Sec Vulnerability

TIAA

Confirmed live today High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Dallas, TXCharlotte, NCIselin, NJ
Employment
Full-time
Posted
1 day ago
Freshness
Confirmed live today

Market check

Salary context

How this pay compares to similar roles

Similar $179k
$115k $232k
below market most similar roles pay here above market

This listing doesn't post a salary. Most similar roles pay $150,343–$207,000.

Based on 240 similar postings.

Employer

About TIAA

TIAA (Teachers Insurance and Annuity Association of America) is a leading Fortune 100 financial services organization and a premier provider of retirement services in the academic, research, medical, cultural, and governmental fields.

TIAA currently has 15 open roles on FindRole.

Most-posted roles

View all roles at TIAA

At a glance

TL;DR · Lead Info Sec Vulnerability

The Lead Info Sec Vulnerability role serves as an individual-contributor position focused on integrating AI into vulnerability management operations. You will lead the triage of findings from AI-enabled scans while building AI-driven scanning workflows and validation agents to improve accuracy and reduce false positives. Key responsibilities include designing automated processes, benchmarking LLM performance, and advising on risk-based prioritization using frameworks like CVSS, EPSS, and CISA KEV. You will utilize AI development tools, Snyk, Tenable, and Wiz to manage security across infrastructure, cloud, and container contexts. This role solves the technical challenge of scaling vulnerability identification and remediation at machine speed by maturing agentic capabilities and establishing standardized evaluation criteria for automated security testing harnesses within a unified vulnerability management program.

What you'll do

  • Build and mature AI-enabled vulnerability scanning capabilities using AI development tools and platforms.
  • Design and iterate on AI-based validation agents to verify scan findings and reduce false positives.
  • Lead the triage, validation, and prioritization of vulnerability findings generated from AI-enabled tools.
  • Integrate AI and agentic capabilities into daily vulnerability management workflows to improve speed and scale.
  • Develop standardized evaluation criteria to benchmark performance across different LLM providers and testing harnesses.
  • Advise management on risk-based prioritization and produce reports outlining findings and recommended remediation.
  • Analyze complex software systems to determine the causes and exploitation methods of identified vulnerabilities.
  • Design and implement process automation and tooling specific to cyber and vulnerability operations.

What we're looking for

  • 5+ years of experience in information security, vulnerability management, assessment, or related security operations.
  • 7+ years of experience in information security or vulnerability management (preferred).
  • Experience and understanding of vulnerability prioritization frameworks (CVSS, EPSS, CISA KEV) and risk-based remediation.
  • Experience building with AI development tools and platforms, including developing and iterating on AI-driven workflows or agents (preferred).
  • Experience building or evaluating AI-based validation/verification agents and developing evaluation criteria for LLM/agent performance (preferred).
  • Familiarity with vulnerability scanning platforms (e.g., Tenable, Wiz), SAST/DAST/SCA tooling, and CI/CD pipeline integration (preferred).
  • Ability to work independently as an individual contributor across infrastructure, application, cloud, and container security contexts (preferred).
  • University degree (preferred).

More like this

Similar roles

Lead InfoSec Engineer, Vulnerability Management

S&P Global

New York, NY 24 days ago $125,000–$145,000
Vulnerability Management DAST SAST Qualys Tanium Rapid7 Fortify Checkmarx Veracode Power BI Tableau NIST Cybersecurity Framework ISO 27001 CVE CVSS CWE CISSP CISM CEH GCIH
7+ yrs exp

Vice President, AI Vulnerability Operations

Mastercard

O Fallon 47 days ago $212,000–$339,000
Vulnerability Management Application Security Cloud Security AI Machine Learning Automation Infrastructure-as-Code Software Supply-Chain Security Incident Response CVSS EPSS KEV OWASP MITRE ATT&CK NIST Security Operations
10+ yrs exp

Lead, Application Security

Prudential Financial

Newark, NJ 41 days ago
Application Security DevSecOps SAST SCA DAST ASPM CI/CD Python PowerShell Bash AWS Azure GCP OWASP Top 10 NIST PCI DSS SBOM MITRE ATT&CK Policy-as-Code Vulnerability Management

Fraud Intelligence Lead

Plaid

New York, NY +1 54 days ago $171,600–$267,600
SQL Python AI Data Science Anomaly Detection BI Tools Rule Engines Incident Response Threat Modeling Root Cause Analysis Data Querying Signal Gating Monitoring Systems
5+ yrs exp

Lead Info Security Systems Engineer

L3Harris

Colorado Springs, CO 19 days ago $110,500–$205,500
CMMC AWS DevSecOps CI/CD SAST DAST SCA SBOM IaC Fortify Coverity Anchore GitLab Tenable NESSUS Splunk OSCAL Zero Trust UML SysML UAF Encryption
9+ yrs exp

Lead Info Security Systems Engineer

L3Harris

Chantilly, VA 24 days ago $127,500–$236,500
DevSecOps CI/CD SAST STIG IaaS PaaS SaaS Splunk Tenable Nessus Fortify Coverity GitLab UML SysML UAF Encryption Firewalls Vulnerability Management
9+ yrs exp