Назад
Company hidden
9 дней назад

Exposure Management Analyst (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
India
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Exposure Management Analyst (Cybersecurity): Governing vulnerability and attack surface management for organizational infrastructure with an accent on risk-based prioritization, remediation tracking, and security automation. Focus on evaluating zero-day threats, reducing cyber exposure, supporting incident response, and presenting risk metrics to technical and business stakeholders.

Location: Pune, India

Company

hirify.global is a healthcare products and services company that provides an employee-focused environment with comprehensive benefits.

What you will do

  • Govern the full vulnerability lifecycle, from identification and assessment through prioritization, remediation tracking, validation, and closure.
  • Prioritize vulnerabilities using CVSS, exploitability data, business impact, threat intelligence, and asset criticality.
  • Develop automated security workflows using SOAR platforms, APIs, integrations, and existing security tools.
  • Evaluate zero-day threats and security advisories, recommend remediation, and manage vulnerability exceptions and risk acceptance.
  • Support incident response investigations involving exploited vulnerabilities and drive reductions in organizational attack surface.
  • Build executive dashboards and recurring reports covering risk posture, remediation trends, and SLA compliance.

Requirements

  • Bachelor’s degree in information security, computer science, information technology, or a related field.
  • 5+ years of experience in vulnerability management, security operations, or cybersecurity.
  • Strong knowledge of vulnerability assessment methodologies, remediation processes, CVSS, CVE management, and MITRE ATT&CK.
  • Working knowledge of PowerShell, Python, JSON, or XML for scripting and API integrations.
  • Experience with SIEM, SOAR, EDR/XDR, NDR, and vulnerability management platforms such as Qualys VMDR, Tenable Nessus, Rapid7 InsightVM, or CrowdStrike Exposure Management.
  • Experience managing vulnerabilities across Windows Server, Linux, Active Directory, and Azure.

Nice to have

  • Experience with CrowdStrike Exposure Management.
  • Security+ CySA+ SC-200, GIAC, or similar security certification.

Culture & Benefits

  • Health insurance, life and disability coverage, 401(k) contributions, and paid time off for eligible employees.
  • Additional access to the Employee Assistance Program, Employee Resource Groups, and Employee Service Corp. for employees working fewer than 30 hours per week.
  • Commitment to inclusion, belonging, diversity, and employee career growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →