Posted on: 11/09/2025
TVM Senior Manager
Experience : 12- 18 years
Location : Bangalore
Business Context and Main Purpose of the Role :
Role Purpose :
This role will lead and transform Unilevers Threat & Vulnerability Management (TVM) function, ensuring
proactive identification, assessment, and mitigation of cyber risks across the enterprise. This role is pivotal in managing complex threat landscapes, driving strategic change, and overseeing a hybrid team an Managed Security Service Provider (MSSP) to deliver world-class cyber resilience.
Role Summary :
Main Accountabilities :
- Own the global TVM program, including governance, tooling, process design, and performance
metrics.
- Lead transformation initiatives to modernize vulnerability management practices, integrate threat intelligence, and automate remediation workflows.
Operational Execution & Technical Oversight :
- Oversee vulnerability scanning operations across on-prem, cloud, and hybrid environments using platforms such as Qualys, Tenable, or Rapid7.
- Ensure timely and accurate vulnerability triage, risk-based prioritization, and remediation tracking in collaboration with IT and application teams.
- Integrate threat intelligence feeds into vulnerability workflows to contextualize findings and improve prioritization.
- Conduct hands-on analysis of critical vulnerabilities, zero-days, and emerging threats, providing technical guidance and escalation support.
Team Leadership & Development :
- Manage a hybrid team of onsite and remote security professionals, fostering a culture of accountability, innovation, and continuous learning.
- Mentor and develop team members, ensuring technical growth and alignment with Unilevers leadership principles.
- Drive collaboration across functions, including Cyber Threat Intelligence, Incident Response, and Application Security.
MSSP & Vendor Management :
- Manage vendor relationships, including contract negotiations, service reviews, and escalation handling.
- Ensure seamless integration of MSSP outputs into internal workflows and reporting structures.
Stakeholder Engagement & Communication :
- Engage with senior stakeholders, including business leaders, IT, and risk teams, to communicate risk posture and influence remediation decisions.
- Prepare and deliver executive-level reporting, including dashboards, risk summaries, and board-level updates.
- Represent TVM in audits, regulatory reviews, and governance forums, ensuring transparency and compliance.
Metrics, Reporting & Continuous Improvement :
- Leverage data analytics to identify trends, inform strategy, and support decision-making.
Key Skills and Relevant Experience :
Technical Skills :
- Deep expertise in vulnerability management tools and platforms (e.g., Qualys, Wiz, Tenable, Rapid7).
- Strong understanding of threat intelligence and its integration into vulnerability workflows.
- Experience with SIEM, SOAR, and EDR technologies (e.g., Splunk, Sentinel, CrowdStrike).
- Familiarity with cloud security (Azure, AWS, GCP), container security, and modern infrastructure.
- Knowledge of CVSS scoring, exploitability analysis, and risk-based prioritization.
- Ability to perform hands-on validation of vulnerabilities and support technical remediation efforts.
- Understanding of secure configuration baselines, patch management, and asset discovery.
Leadership & Soft Skills :
- Strong stakeholder management skills, with the ability to influence across technical and business
domains.
- Excellent communication skills, including executive-level reporting and presentation.
- Experience managing MSSPs and third-party vendors in a global environment.
- Ability to lead through ambiguity and manage complex, high-pressure situations.
- Strong organizational and project management skills, with a focus on delivery and outcomes.
- Collaborative mindset with a focus on team development and mentorship.
Qualifications :
- Relevant certifications (e.g., CISSP, CISM, CRISC, GIAC, OSCP) are highly desirable.
- Minimum 8- 10 years of experience in cybersecurity, with at least 3 years in a leadership role.
Did you find something suspicious?
Posted By
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1543898
Interview Questions for you
View All