JobConnect

Senior Information Security Specialist – Vulnerability Management

Job Title: Senior Information Security Specialist – Vulnerability Management

Department / Division: Information Technology /Information Security

Salary Range:$118,248 - $130,696 + Bonus

Location: Ada, MI

What We’re Looking For:

The role serves as the primary liaison between Global stakeholders and the Vulnerability Management team. Managing security assessments, penetration testing, remediation tracking, reporting, and security governance activities to reduce cyber risk and strengthen the organization's security posture.

Providing vulnerability assessments to the Amway businesses globally through a comprehensive testing process. Someone that is comfortable in identifying, assessing, prioritizing, and driving the remediation of security vulnerabilities.

Looking for a candidate that is team player, collaborative, analytical, persistent and comfortable challenging the status quo.

What You’ll Do:

As a senior-level contributor, the individual is expected to evaluate emerging security technologies, mentor others, influence stakeholders, and champion continuous improvement initiatives. Stay informed on evolving threats and leverage AI-assisted security capabilities, automation, and advanced analytics to improve vulnerability management, penetration testing, and security operations outcomes. Additionally, they help assess and govern risks associated with internally developed and externally sourced solutions, ensuring secure adoption and alignment with enterprise security standards.

Required qualifications:

  • BA/BS Degree in Computer Science, Computer Science Engineering, Information Security, or related field
  • Good working knowledge of large and mid-range operating systems and related security software in a large, complex, multi-server, multi-protocol environment.
  • Strong knowledge of application security concepts including OWASP Top 10, SAST, DAST, SCA, secret scanning, API Security, secure code review practices, and Secure Software Development Lifecycle (SSDLC).
  • Attention to detail
  • Good customer service orientation
  • Good written and oral communication and interpersonal skills

Skills to be successful in the role:

  • Strong understanding of vulnerability management, risk assessment, remediation lifecycle management, and vulnerability prioritization frameworks.
  • Experience coordinating vulnerability assessments, penetration testing, red team exercises, and security reviews across application, infrastructure, cloud, API, endpoint, and container environments.
  • Working knowledge of Java, .NET, Python, JavaScript/TypeScript, cloud-native architectures, DevSecOps, CI/CD pipelines, source code repositories, build automation, containers, Infrastructure-as-Code (IaC), and deployment platforms.
  • Knowledge of infrastructure, cloud, network, endpoint, and container security principles.
  • Experience administering, automating, and optimizing vulnerability management and application security tools, including Tenable, Invicti, GHAS, Prisma Cloud, SonarQube, Veracode, Checkmarx, or equivalent platforms.
  • Strong analytical, problem-solving, stakeholder management, communication, and collaboration skills, with experience validating findings, assessing risk, driving remediation against SLAs, influencing cross-functional teams, and recommending effective mitigation strategies.
  • Experience preparing security metrics, dashboards, executive reporting, and risk summaries; supporting audit, regulatory, compliance, and cyber insurance requirements; and evaluating emerging security technologies.
  • Knowledge of AI-assisted security assessment capabilities, AI security risks, governance, and secure AI lifecycle practices, including the use of automation and AI to improve security operations and mitigate risks associated with internal and third-party AI solutions.
  • Familiarity with Agile methodologies and continuous improvement practices.

What’s special about this team:

What makes this team unique is the combination of global exposure, hands-on security technology and direct business engagement. The role goes beyond vulnerability scanning — the specialist will help identify and assess security weaknesses, work directly with global application and technology teams to drive remediation, manage penetration testing and translate technical vulnerabilities into business risk. It is an opportunity to build both deep technical expertise and global security leadership experience.

Amway does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need Amway immigration sponsorship (e.g., H-1B, STEM OPT, TN, etc.) now or in the future.

Actual compensation packages are based on a wide array of factors unique to each candidate, including but not limited to skill set, years & depth of experience, certifications and specific office location. This may differ in other locations due to cost of labor considerations.

Skills

  • Vulnerability Management
  • Penetration Testing
  • Security Assessment
  • Remediation Tracking
  • Security & Governance
  • Risk assessment
  • AI-Assisted Security

Related jobs

Amway Inc. Alticor Inc.Apply for this job