Назад
Company hidden
9 дней назад

Senior Restricted Secure / High Secure Exposure Management Lead (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior/lead
Английский
b2
Страна
Romania
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Restricted Secure / High Secure Exposure Management Lead (Cybersecurity): Leading vulnerability and exposure management across Restricted Secure and High Secure environments with an accent on risk-based prioritization, enterprise scanning platforms, remediation governance, and secure-environment operations. Focus on identifying attack-path risks, coordinating remediation across infrastructure and cloud teams, automating exposure workflows, and reporting measurable risk reduction to security leadership.

Location: Bucharest, Romania. Candidates must have a valid visa and work permit to work in Romania. The role includes an office-based setup with flexible hours and a work-from-home policy.

Company

hirify.global develops secure connectivity and edge-processing solutions for embedded applications, helping make technologies and environments safer and more sustainable.

What you will do

  • Lead the technical and operational execution of exposure management across Restricted Secure and High Secure environments.
  • Operate vulnerability detection and exposure platforms, including Rapid7 InsightVM, Rapid7 InsightAppSec, and CrowdStrike Falcon Spotlight / Exposure Management.
  • Validate findings, maintain asset and exposure visibility, identify attack-path risks, and improve assessment coverage.
  • Coordinate remediation across infrastructure, endpoints, networks, applications, databases, identity, cloud, containers, and Kubernetes teams.
  • Manage risk acceptances, exceptions, compensating controls, evidence, and audit-ready governance through Archer and related processes.
  • Develop dashboards and executive reporting covering exposure coverage, remediation aging, backlog, recurrence, and risk reduction.

Requirements

  • 8+ years of experience in cybersecurity, vulnerability management, exposure management, security engineering, infrastructure security, or a related discipline.
  • 4+ years operating or leading vulnerability or exposure management capabilities in a complex enterprise environment.
  • Hands-on experience with ServiceNow Vulnerability Response, Rapid7, CrowdStrike, Archer, or comparable enterprise platforms.
  • Strong knowledge of vulnerability assessment, credentialed scanning, asset correlation, attack-surface management, risk scoring, remediation governance, and validation.
  • Experience with Windows, Linux, networks, applications, databases, identity systems, cloud platforms, containers, Kubernetes, and internet-facing assets.
  • Valid visa and work permit to work in Romania required at the application stage.

Nice to have

  • CISSP, CISM, CCSP, OSCP, GIAC, or equivalent cybersecurity certification.
  • Advanced experience or certifications in ServiceNow Vulnerability Response, Rapid7, CrowdStrike, Archer, cloud security, or attack-surface management.

Culture & Benefits

  • Permanent full-time contract with a bonus plan.
  • 25 vacation days, lunch vouchers, and the option to purchase company shares at a 15% discount.
  • Flexible working hours and a work-from-home policy.
  • Online and offline learning opportunities for professional development.
  • On-site cafeteria, restaurant, relaxation areas, free coffee, fresh fruit, and employee social activities.

Hiring process

  • Submit an application with a CV and motivation letter in English.
  • Complete an initial phone or video conversation with a Talent Acquisition Consultant after CV screening.
  • Participate in several business interviews.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →