
Director, Enterprise Vulnerability & Exposure Management
Posted Sep 11

Posted Sep 11
This is a fully remote position, open to applicants in Poland.
• Implement and advance Danaher’s global vulnerability and exposure management (CTEM) program.
• Develop and enhance the enterprise vulnerability and exposure management strategy.
• Establish a sustainable capability that encompasses governance, risk-based prioritization, validation, metrics, and executive reporting.
• Engage remediation owners across infrastructure, cloud, application, and third-party teams.
• Design the CTEM operating model that includes scope, discovery, prioritization, validation, and remediation mobilization across the enterprise attack surface.
• Create prioritization logic that integrates asset criticality, exploitability, exposure path, controls, and business impact beyond just raw CVSS.
• Establish the integration framework for vulnerability management, attack surface management, cloud posture, red team/offensive testing, and remediation/ticketing tools.
• Develop the sustainability and governance model, which includes remediation SLAs, exception governance, service ownership, and metrics framework.
• Report to the Danaher Global Chief Information Security Officer.
• Over 14 years of experience in cybersecurity, emphasizing vulnerability, exposure, or threat exposure management (minimum GCRF P5 Bachelor’s-track; recommended, pending Comp sign-off).
• Proven experience in leading enterprise or global vulnerability/exposure management or CTEM strategies, governance, and remediation across various business units.
• Familiarity with enterprise vulnerability/exposure platforms such as Tenable, Qualys, Rapid7, Wiz, or Defender.
• Ability to prioritize risks based on threat intelligence and asset context.
• Demonstrated experience in independently mobilizing remediation efforts across infrastructure, cloud, application, and third-party owners.
• Skilled in communicating exposure risk to executive stakeholders.
• Experience in integrating VM with attack surface management and cloud security posture is an advantage.
• A Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field is advantageous.
• Certifications such as CISSP, CISM, or CRISC are a plus.
• Competitive salary and performance-based bonuses.
• Comprehensive health and wellness programs.
• Opportunities for professional development and career advancement.
• Flexible work arrangements and a supportive work environment.
Alzheimer's Association®
The College Board
The College Board
Cargill
Get handpicked remote jobs straight to your inbox weekly.