Risk And Threat Vulnerability Management - TVM - Analyst
Talentmate
Philippines
24th March 2026
2603-23303-49
Job Description
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.
Primary Responsibilities
Perform end‑to‑end Vulnerability Management across on‑prem, application, and cloud environments
Conduct vulnerability identification, triage, prioritization, and remediation tracking
Partner with IT and engineering teams to provide technical guidance for vulnerability remediation
Utilize tools such as Rapid7, Tenable.io, Nessus, Security Center, Tanium, Nmap, and others for scanning and analytics
Develop and implement strategies to improve and automate the vulnerability management lifecycle
Provide insights using threat modeling, vulnerability trend analysis, and emerging threat intelligence
Monitor service performance against SLAs and drive improvements in customer satisfaction
Integrate vulnerability metrics into executive dashboards and overall risk reporting
Ensure adherence to business agreements, policies, procedures, regulatory requirements, and control compliance mappings
Monitor information security risks and drive remediation of policy exceptions and risk gaps
Manage the Risk Register, including risk acceptance, risk exceptions, and risk disposition activities
Ensure compliance with applicable data privacy regulations
Identify process and security gaps, recommend improvements, and support corrective action implementation
Perform and manage Control/Risk Assessments and ensure timely remediation of findings
Define risk thresholds, enhance the risk framework, and drive remediation of governance and process gaps
Manage policy and control exception workflows through the GRC platform
Conduct control testing to assess maturity and effectiveness of controls aligned with HITRUST and NIST 800‑53 Rev 2
Establish a baseline of vendor risk, identify areas of exposure, and align VRM strategies with client goals
Support the design and implementation of a consistent Vendor Risk Management program aligned with internal and regulatory requirements
Prepare executive‑level summaries with recommendations regarding third‑party remediation efforts and risk disposition
Maintain up‑to‑date knowledge of information security and quality management topics relevant to VRM obligation
Create and maintain real‑time dashboards for Policies, Standards, Risk Management, and TVM insights
Conduct monthly reviews of High and Critical risks with risk owners and executive leadership
Develop executive dashboards that provide visibility into goals, KPIs, KRIs, and risk trends
Communicate professionally across all stakeholder levels using multiple channels
Serve as Point of Contact (POC) in the leads absence
Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regard to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so
Required Qualifications
5+ years of technical experience in Information Security
5+ years of GRC platform implementation/migration experience (NAVEX, ServiceNow, LogicGate, RSM/Rsam, Perimeter, etc.)
5+ years of IT Audit experience with the ability to independently manage assessments and projects Experience with vulnerability management lifecycle, threat modeling, and remediation oversight
Solid understanding of ISO 27001, core security concepts, and federal cybersecurity standards (NIST 800‑53)
Proven excellent written and verbal communication skills; solid presentation skills
Relevant certifications: CISA, CISSP, Security+, CRISC, CISM, etc.
3+ years of experience directly in Threat & Vulnerability Management
Experience with cloud computing and cloud security risk assessments
Experience automating parts of the VM lifecycle
Solid understanding of cloud/on‑prem hybrid environments and related security risks
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone - of every race, gender, sexuality, age, location and income - deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
Business Consulting And Services Telephone Call Centers And Technology Information And Internet
What We Offer
About the Company
Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.
Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together.
Applicants
are
advised to research the bonafides of the prospective employer independently. We do NOT
endorse any
requests for money payments and strictly advice against sharing personal or bank related
information. We
also recommend you visit Security Advice for more information. If you suspect any fraud
or
malpractice,
email us at abuse@talentmate.com.
You have successfully saved for this job. Please check
saved
jobs
list
Applied
You have successfully applied for this job. Please check
applied
jobs list
Do you want to share the
link?
Please click any of the below options to share the job
details.
Report this job
Success
Successfully updated
Success
Successfully updated
Thank you
Reported Successfully.
Copied
This job link has been copied to clipboard!
Apply Job
Upload your Profile Picture
Accepted Formats: jpg, png
Upto 2MB in size
Your application for Risk And Threat Vulnerability Management - TVM - Analyst
has been successfully submitted!
To increase your chances of getting shortlisted, we recommend completing your profile.
Employers prioritize candidates with full profiles, and a completed profile could set you apart in the
selection process.
Why complete your profile?
Higher Visibility: Complete profiles are more likely to be viewed by employers.
Better Match: Showcase your skills and experience to improve your fit.
Stand Out: Highlight your full potential to make a stronger impression.
Complete your profile now to give your application the best chance!