IT Security Technical Lead
Job Description
- IT Security Technical Lead – Vulnerability Management responsible for developing, leading, and continuously improving the enterprise-wide Vulnerability Management and Security Assessment program
- This role ensures that vulnerability management across systems, applications, and clouds are identified, assessed, prioritized, and remediated alignment with business risk and compliance objectives.
- The successful candidate will combine technical expertise, strategic oversight, and leadership skills to drive a measurable reduction in organizational risk while supporting Quest Diagnostics mission to protect data, systems, and customer
Responsibilities:
- Lead the global Vulnerability Management program, including policy management, scanning, reporting, and remediation tracking.
- Design and maintain a comprehensive Vulnerability Management framework aligned with NIST, HIPAA, PCI, SOX, & etc.
- Lead rapid assessment and remediation efforts for Zero day vulnerabilities, including immediate impact analysis, exploitability review, and prioritization based on business risk.
- Server as Subject Matter Expert (SME) for Qualys, or similar scanning platforms – ensuring accurate detection, prioritization, and reporting of vulnerabilities.
- Partner and Infrastructure, Application, and Risk Teams to coordinate assessment and remediation activities across diverse environments.
- Define and monitor metrics and KPIs to evaluate program effectiveness and communicate progress to Senior leadership.
- Develop and maintain dashboard and reports highlighting trends, remediation SLA performance and residual risk posture
- Conduct ad-hoc vulnerability assessments and provide risk-based recommendations for remediation and mitigation
- Provide consultancy and guidance on Vulnerability risk, Security exception, and compensating controls to technical and business stakeholders.
- Support security compliance efforts by ensuring timely remediation of vulnerabilities tied to audit findings and regulatory frameworks (HIPAA, PCI, SOX).
- Develop and deliver training, workshops, and awareness sessions to improve understanding and accountability across teams.
- Continuously evaluate and implement process and automation improvement to enhance efficiency and reporting accuracy.
- Conduct network penetration testing for PCI environment using CoreImpact (Fortra) or similar tools to validate security controls and achieve regulatory compliance.
Qualifications:
Required Work Experience:
- Bachelor’s degree in computer science information security, or related discipline
- Minimum 7 years if experience in IT Security, including 3+ years leading a Vulnerability or Threat management program
- Proven experience with Qualys, Tenable, Wiz or equivalent vulnerability management tools.
- Hands on experience performing network penetration testing for PCI environments or equivalent
- Strong understanding of CVSS, CVE, & CWE
- Familiarity with remediation strategies across Windows, Linux Network, and Cloud environments
- Excellent Communication and stakeholder management skills with ability to convey risk to both technical and non-technical audiences.
- Certifications such as CISSP, CISM, CISA, GPEN, or Qualys VMDR specialist
- Experience in regulated industries (Healthcare, Financial or Life Sciences)
- Familiarity with ServiceNow, Archer, or similar GRC platforms for exception and risk tracking
- Experience leading and mentoring security engineers, specialists, or analysts.
Preferred Work Experience:
- Develop and maintain custom scripts and API integrations to automate and streamline reporting and remediation workflows.
- Leverage Qualys CAR (Custom Assessment and Remediation) and optimize for efficient remediation and scanning.
53605
Quest Diagnostics honors our service members and encourages veterans to apply.
While we appreciate and value our staffing partners, we do not accept unsolicited resumes from agencies. Quest will not be responsible for paying agency fees for any individual as to whom an agency has sent an unsolicited resume.
Equal Opportunity Employer: Race/Color/Sex/Sexual Orientation/Gender Identity/Religion/National Origin/Disability/Vets or any other legally protected status.
“I love working here because Quest has been my second family and second home. I've experienced a wholesome work environment, and good management.”
- Quest Employee
- Medical Courier Grand Rapids, Michigan 03/03/2026
- Medical Laboratory Scientist I Clifton, New Jersey 03/03/2026
- Medical Courier Grand Rapids, Michigan 03/03/2026
No jobs have been saved.
No jobs have been saved.
Quest Diagnostics is an equal employment opportunity employer. Our policy is to recruit, hire and promote qualified individuals without regard to race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any any other legally protected status . Quest Diagnostics observes minimum age requirements established by federal, state and/or local laws, and will ask an applicant for verification when deemed necessary.
Quest Diagnostics is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please complete the accommodation request form.