Talent.com
Vulnerability Management and Cyber Controls Lead
Vulnerability Management and Cyber Controls LeadApollo Inc • New York, NY, United States
Vulnerability Management and Cyber Controls Lead

Vulnerability Management and Cyber Controls Lead

Apollo Inc • New York, NY, United States
19 days ago
Job type
  • Full-time
Job description

Position Overview

At Apollo, we're a global team of alternative investment managers passionate about delivering uncommon value to our investors and shareholders. With over 30 years of proven expertise across Private Equity, Credit, and Real Estate, we're known for our integrated businesses, strong investment performance, and value-oriented philosophy - all powered by our people.

Role Overview

Apollo is seeking a Vulnerability Management and Cyber Controls Lead to join our dynamic and growing Cybersecurity organization. This individual will own and evolve the firm's global Vulnerability Management (VM) program - driving continuous improvement toward a best-in-class capability.

This is a technical and hands-on role, responsible for end-to-end processes spanning external exposure management, imminent threat response, vulnerability identification and prioritization, and facilitation of remediation across infrastructure, applications, and cloud environments.

The ideal candidate combines deep technical expertise with strategic vision - able to design, operate, and improve scalable, data-driven solutions that strengthen Apollo's overall security posture.

Primary Responsibilities

  • Own and mature the global Vulnerability Management program, covering external exposure, imminent threats, vulnerability identification and prioritization, and remediation facilitation.
  • Serve as the technical subject matter expert for vulnerability management tools and processes (e.g., Tenable, Qualys, Rapid7, or equivalent).
  • Continuously assess and improve VM processes to achieve best-in-class coverage, efficiency, and visibility.
  • Leverage automation, analytics, and threat intelligence to enhance accuracy and reduce remediation timelines.
  • Operate and optimize scanning platforms, discovery tooling, and reporting pipelines to ensure comprehensive asset visibility.
  • Partner with Infrastructure, Engineering, Application, and Cloud teams to drive effective risk reduction across environments.
  • Lead critical vulnerability identification and response exercises, including analysis of zero-day or imminent threats.
  • Develop and maintain metrics, dashboards, and executive-level reporting on vulnerability posture, remediation progress, and program maturity.
  • Collaborate with Enterprise Risk, Internal Audit, and Application Security teams to ensure alignment with firm-wide risk management practices.
  • Maintain ownership of service delivery quality, issue resolution, and stakeholder communication.
  • Stay current with industry trends, threat intelligence, and evolving tools to proactively strengthen Apollo's defenses.

Qualifications & Experience

  • 7+ years of experience in Cybersecurity, Infrastructure Security, or Vulnerability Management.
  • Technical proficiency across network, system, and application layers - including scanning methodologies, asset discovery, and exploit analysis.
  • Hands-on experience operating and tuning vulnerability management tools (e.g., Tenable.io, Qualys VMDR, Rapid7 InsightVM) and discovery utilities (e.g., Nmap, SSLScan, Shodan, or custom scripts).
  • Experience leveraging threat intelligence and CVSS / CISA / EPSS data for vulnerability prioritization.
  • Strong understanding of cloud infrastructure (AWS, Azure, GCP) and modern application stacks.
  • Proficiency in scripting or automation (e.g., Python, PowerShell, Bash) and query-based data analysis (SQL, Excel, or equivalent).
  • Demonstrated success in building and optimizing technical processes at scale; experience designing metrics, dashboards, and analytics (Tableau, PowerBI, or similar).
  • Ability to partner across technical and business teams, influence remediation activities, and communicate risk in clear, actionable terms.
  • Knowledge of IT processes, secure configuration baselines, and control frameworks (CIS, NIST, ISO, FFIEC).
  • Experience in financial services or other highly regulated environments preferred.
  • Consulting or architecture background a plus.
  • Pay Range

    $140,000 - $205,000

    Apollo Global Management, Inc. (together with its subsidiaries and affiliates) is committed to championing opportunity.

    The firm and its affiliates comply with applicable discrimination and equal opportunities legislation in all of its jurisdictions and do not discriminate in employment or recruitment based on race, color, religion, gender, national origin, veteran status, disability, age, citizenship, marital or domestic / civil partnership status, sexual orientation, gender identity or expression or any other protected characteristic under applicable law.

    The contents of the qualifications and experience section of this job description are a guideline only. If an applicant can otherwise demonstrate their suitability for the role they will be considered.

    The base salary range for this position is listed above. This position is also eligible for a discretionary annual bonus based on personal, team, and Firm performance. Compensation ranges are based on several factors including job function, level, and geographic location. Final offer amounts are determined by multiple factors including candidate experience and expertise, and may vary from the amounts listed here.

    Create a job alert for this search

    Cyber And Management • New York, NY, United States

    Related jobs
    Cyber Warfare Technician

    Cyber Warfare Technician

    U.S. Navy • The Bronx, NY, US
    Full-time +1
    To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.As a Cryptologic Technician, you are one of the worlds greatest problem-solvers. Were looking for people with sha...Show more
    Last updated: 27 days ago • Promoted
    Disaster Recovery Lead- Remote

    Disaster Recovery Lead- Remote

    Staffing • Brooklyn, NY, US
    Remote
    Full-time
    Disaster Recovery Lead / Manager.We are seeking a highly skilled Disaster Recovery (DR) Lead / Manager to lead and manage our disaster recovery and business continuity initiatives across the US and Ber...Show more
    Last updated: 25 days ago • Promoted
    Director, Cyber Security

    Director, Cyber Security

    Veracity • Montvale, NJ, United States
    Full-time
    Montvale, NJ, Ogden, UT - Multiple locations (Must be onsite at least 3 days / week - Non-negotiable).This leadership role requires a strategic thinker with strong technical experience, hands-on expe...Show more
    Last updated: 19 days ago • Promoted
    Technology Vulnerability Management Engineer

    Technology Vulnerability Management Engineer

    Cooley • New York, NY, United States
    Full-time
    Technology Vulnerability Management Engineer.Cooley is seeking a Technology Vulnerability Management Engineer to join the Security team. Cooley Technology embraces a culture of customer service exce...Show more
    Last updated: 9 days ago • Promoted
    ServiceNow Application Vulnerability Remediation Specialist

    ServiceNow Application Vulnerability Remediation Specialist

    Purple Drive • Jersey City, NJ, United States
    Full-time
    ServiceNow - Application Vulnerability Remediation Specialist.New Jersey / Tampa, FL / Tempe, AZ (Onsite / Hybrid as per client requirement). Application Vulnerability Remediation.The role involves le...Show more
    Last updated: 30+ days ago • Promoted
    Head of IT Security, Controls & Technology Risk (LoD1)

    Head of IT Security, Controls & Technology Risk (LoD1)

    Groupe BPCE • New York, NY, United States
    Full-time
    We are seeking for a highly skilled and experienced Head of IT Controls, Security and Technology Risk (LoD1) who will lead a critical team within the Natixis CIB Americas (AMER) IT department.In th...Show more
    Last updated: 16 days ago • Promoted
    Cyber Security Director

    Cyber Security Director

    Groupe BPCE • New York, NY, United States
    Full-time
    The Information Technology - Cyber Security Engineer is a senior role responsible for overseeing incident response, managing security tools and engineering, conducting risk assessments, and oversee...Show more
    Last updated: 16 days ago • Promoted
    Director, Cyber Governance and Controls

    Director, Cyber Governance and Controls

    NBCUniversal • Englewood Cliffs, NJ, United States
    Full-time
    NBCUniversal is one of the world's leading media and entertainment companies.We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to...Show more
    Last updated: 11 days ago • Promoted
    Director, Cyber Data Security and Protection

    Director, Cyber Data Security and Protection

    KPMG • Montvale, NJ, United States
    Full-time
    KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Show more
    Last updated: 19 days ago • Promoted
    Vulnerability Remediation Associate

    Vulnerability Remediation Associate

    Artech • Jersey City, NJ, United States
    Full-time
    Competitive and commensurate with experience.Join our dynamic team where you will play a crucial role in ensuring the security and integrity of our systems. We are looking for a dedicated profession...Show more
    Last updated: 6 days ago • Promoted
    Cloud Cyber Security Solutions & Advisory - VP

    Cloud Cyber Security Solutions & Advisory - VP

    MUFG • Jersey City, NJ, United States
    Full-time
    Do you want your voice heard and your actions to count?.Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150...Show more
    Last updated: 19 days ago • Promoted
    Customs and Border Protection Officer

    Customs and Border Protection Officer

    US Customs and Border Protection • Avon-by-the-Sea, NJ, United States
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Compliance (Vulnerability Management Lead) - Assistant Director

    Cyber Compliance (Vulnerability Management Lead) - Assistant Director

    EY • New York, NY, United States
    Full-time
    At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
    Last updated: 19 days ago • Promoted
    Cyber Security Director

    Cyber Security Director

    Natixis Corporate & Investment Banking • New York, NY, United States
    Full-time
    The Information Technology - Cyber Security Engineer is a senior role responsible for overseeing incident response, managing security tools and engineering, conducting risk assessments, and oversee...Show more
    Last updated: 30+ days ago • Promoted
    Technology Vulnerability Management Engineer

    Technology Vulnerability Management Engineer

    Cooley LLP • New York, NY, United States
    Full-time
    Technology Vulnerability Management Engineer.Cooley is seeking a Technology Vulnerability Management Engineer to join the Security team. Cooley Technology embraces a culture of customer service exce...Show more
    Last updated: 11 days ago • Promoted
    Head of Cyber Incident Response & Cyber Threat Mitigation Services

    Head of Cyber Incident Response & Cyber Threat Mitigation Services

    Software Guidance and Assistance, Inc. • New York, NY, United States
    Full-time
    Software Guidance & Assistance, Inc.SGA), is searching for a hands-on.Head of Cyber Incident Response & Cyber Threat Mitigation Services. Holmdel, NJ; Bethlehem, PA; New York, NY; or Stamford, CT.Hy...Show more
    Last updated: 30+ days ago • Promoted
    AVP-Cybersecurity-Offensive lead

    AVP-Cybersecurity-Offensive lead

    ExlService Holdings, Inc. • Jersey City, NJ, United States
    Full-time
    The individual will utilize a variety of tools developed and act as a key team member and leader in testing engagements.They will advocate for cybersecurity best practices and will provide strong r...Show more
    Last updated: 30+ days ago • Promoted
    CyberArk SME

    CyberArk SME

    InterSources • New York, NY, United States
    Full-time
    Seeking a highly motivated candidate who demonstrates strong commitment to operational excellence, possesses technical proficiency in the deployment of Identity and Access Management solutions such...Show more
    Last updated: 30+ days ago • Promoted