9 дней назад
Senior Restricted Secure / High Secure Exposure Management Lead (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Restricted Secure / High Secure Exposure Management Lead (Cybersecurity): Leading vulnerability and exposure management across Restricted Secure and High Secure environments with an accent on risk-based prioritization, enterprise scanning platforms, remediation governance, and secure-environment operations. Focus on identifying attack-path risks, coordinating remediation across infrastructure and cloud teams, automating exposure workflows, and reporting measurable risk reduction to security leadership.
Location: Bucharest, Romania. Candidates must have a valid visa and work permit to work in Romania. The role includes an office-based setup with flexible hours and a work-from-home policy.
Company
develops secure connectivity and edge-processing solutions for embedded applications, helping make technologies and environments safer and more sustainable.
What you will do
- Lead the technical and operational execution of exposure management across Restricted Secure and High Secure environments.
- Operate vulnerability detection and exposure platforms, including Rapid7 InsightVM, Rapid7 InsightAppSec, and CrowdStrike Falcon Spotlight / Exposure Management.
- Validate findings, maintain asset and exposure visibility, identify attack-path risks, and improve assessment coverage.
- Coordinate remediation across infrastructure, endpoints, networks, applications, databases, identity, cloud, containers, and Kubernetes teams.
- Manage risk acceptances, exceptions, compensating controls, evidence, and audit-ready governance through Archer and related processes.
- Develop dashboards and executive reporting covering exposure coverage, remediation aging, backlog, recurrence, and risk reduction.
Requirements
- 8+ years of experience in cybersecurity, vulnerability management, exposure management, security engineering, infrastructure security, or a related discipline.
- 4+ years operating or leading vulnerability or exposure management capabilities in a complex enterprise environment.
- Hands-on experience with ServiceNow Vulnerability Response, Rapid7, CrowdStrike, Archer, or comparable enterprise platforms.
- Strong knowledge of vulnerability assessment, credentialed scanning, asset correlation, attack-surface management, risk scoring, remediation governance, and validation.
- Experience with Windows, Linux, networks, applications, databases, identity systems, cloud platforms, containers, Kubernetes, and internet-facing assets.
- Valid visa and work permit to work in Romania required at the application stage.
Nice to have
- CISSP, CISM, CCSP, OSCP, GIAC, or equivalent cybersecurity certification.
- Advanced experience or certifications in ServiceNow Vulnerability Response, Rapid7, CrowdStrike, Archer, cloud security, or attack-surface management.
Culture & Benefits
- Permanent full-time contract with a bonus plan.
- 25 vacation days, lunch vouchers, and the option to purchase company shares at a 15% discount.
- Flexible working hours and a work-from-home policy.
- Online and offline learning opportunities for professional development.
- On-site cafeteria, restaurant, relaxation areas, free coffee, fresh fruit, and employee social activities.
Hiring process
- Submit an application with a CV and motivation letter in English.
- Complete an initial phone or video conversation with a Talent Acquisition Consultant after CV screening.
- Participate in several business interviews.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
10 дней назад
Research Engineer I - Python & Security (Cybersecurity)
12 дней назад
Senior Security Engineer II (Cloud Security)
149 000 - 235 000$
14 дней назад
Senior Consultant Automotive & Product Security
13 дней назад
Senior Security Engineer (Cedar Policy)
3 дня назад
DevSecOps Adoption Practitioner
8 дней назад