SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Tide is a fintech platform serving over 2 million SMEs globally with business banking and administrative solutions including invoicing and accounting. The Product Security team is responsible for embedding security across the product surface, and the Remediation Operations function manages Tide's vulnerability management programme.
As a Remediation Operations Manager, you will lead the day-to-day execution of vulnerability management, acting as the connective tissue between security tooling and engineering/IT teams. Your responsibilities include:
• Triage and validate vulnerabilities from Tide's security tooling (Wiz, Semgrep, CrowdStrike Exposure Management, EASM platform), separating signal from noise and confirming exploitability and relevance.
• Support risk-based prioritization by ranking findings by severity, exploitability, asset criticality and business context to direct engineering effort effectively.
• Automate remediation workflows within Seemplicity (vulnerability management platform), building routing, ticketing, deduplication and escalation logic to minimize manual overhead.
• Verify and validate fixes through targeted re-scanning or manual checks, ensuring risks are genuinely mitigated before closure.
• Partner with engineering and IT teams as a trusted advisor, explaining findings, advising on practical fixes, and building understanding rather than treating security as compliance.
• Build reports and dashboards providing visibility of vulnerability posture, remediation progress, SLA adherence and trends for technical and senior stakeholders.
• Design and execute nudging strategies to shift remediation behaviors across teams, using data and incentives to reduce time-to-remediate and recurring issues.
• Maintain pipeline health by monitoring aging findings, chasing stalled items, identifying systemic blockers and feeding insights into vulnerability management strategy.
• Drive continuous improvement of remediation operations, refining processes, SLAs, taxonomies and tooling configuration as the threat landscape evolves.
You will measure success by risk reduced, not findings raised, and focus on delivery and outcomes.