Working knowledge of security and risk frameworks (e.g., NIST, ISO 27001, CIS Controls), AI security and risk management best practices, regulatory requirements (e.g., HIPAA, PCI DSS), Microsoft security and risk management tools, identify and access management, network access controls, data loss prevention, and SIEM systems. Manages the Vulnerability Management Program using Thresholds' vulnerability management tools to identify and assess vulnerabilities, assigns a vulnerability treatment owner, tracks vulnerability treatment progress in the vulnerability register, and provides vulnerability management reporting to IT leadership.