Director, Enterprise Vulnerability & Exposure Management
Core
Architect and drive the global vulnerability and exposure management (CTEM) program, operationalizing enterprise strategy into a sustainable capability for governance, risk-based prioritization, and executive reporting.
Role type
Director, Enterprise Vulnerability & Exposure Management
Builds
Global CTEM operating model, risk-based prioritization logic, and integration blueprint across VM, ASM, cloud posture, and remediation tools.
Domain
Cybersecurity, Vulnerability Management, Exposure Management
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Enterprise vulnerability/exposure management strategy, risk-based prioritization using threat intelligence and asset context, mobilizing remediation across infrastructure/cloud/app/third-party teams, executive reporting, architecture of CTEM operating models, integration of VM with attack surface management and cloud security posture.
Preferred skills
CISSP, CISM, or CRISC certification, Bachelor's degree in Cybersecurity/CS/IT/Engineering.
Technologies
Tenable, Qualys, Rapid7, Wiz, Defender
Responsibilities
Define/scope, discover, prioritize, validate, and mobilize remediation across the enterprise attack surface; Design prioritization logic combining asset criticality, exploitability, exposure path, controls, and business impact; Set the integration blueprint across VM, ASM, cloud posture, red team/offensive testing, and remediation/ticketing tools; Design the sustainability & governance model including remediation SLAs, exception governance, service ownership, and metrics framework.
Seniority
Director, strategy & execution