Cyber Threat Exposure Management – Lead
Core
Lead strategy and drive maturity for Continuous Threat Exposure Management (CTEM), covering attack surface management, vulnerability management, and cloud security posture.
Role type
Senior technical lead (CTEM programme owner)
Builds
CTEM programme, toolchain strategy, governance standards, and executive risk dashboards
Domain
Cybersecurity / Cloud Security / Vulnerability Management
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
CTEM methodology, Attack Surface Management (ASM/EASM), Vulnerability Management lifecycle, Cloud Security Posture Management (CSPM), Penetration testing oversight, Secure SDLC integration, Stakeholder management, Team leadership, Risk-based scoring (CVSS/EPSS), Tool selection and integration
Preferred skills
Gartner CTEM methodology, AI-augmented triage, Attack path mapping, BAS, Audit frameworks (ISO 27001, SOC 1, Cyber Essentials Plus), Purple teaming
Technologies
Defender XDR/CSPM, Zscaler, Tenable, Tanium, AWS, Azure, OCI, SIEM, SOAR
Responsibilities
Own function strategy aligned to business risk appetite; Drive continuous improvement across CTEM phases; Establish governance and standards; Own toolchain selection and integration; Run continuous discovery of Internet-facing assets; Own vulnerability management programme end-to-end; Own CSPM strategy across cloud providers; Commission and manage penetration testing; Integrate security requirements into SDLC; Deliver executive dashboards and represent function in audits; Lead, coach, and develop the team
Seniority
Senior, hands-on IC with leadership responsibilities