Director, Exposure Management (Cybersecurity Defense)
$135.4k - $208.1kCardinal Health
What Cybersecurity Defense contributes to Cardinal Health
Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Exposure Management is responsible for establishing, leading, and overseeing the exposure management program to proactively identify, prioritize, and reduce cybersecurity risk across network, cloud, endpoint, and data environments. This role drives the strategy and execution of vulnerability management, security configuration management, cloud and network security, endpoint security, and data protection capabilities. Moreover, this Director leads core aspects of exposure management, including vulnerability identification and prioritization, security configuration management, cloud and network security monitoring, endpoint and mobile security, data loss prevention (DLP), and data security posture management (DSPM). This person plays a critical role in reducing the organization's attack surface, improving security posture, and enabling alignment with overarching cybersecurity & GTBS strategies.
Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based in Central or Eastern time zones (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)
Responsibilities
Develop and lead the exposure management strategy aligned with cybersecurity, risk management, and business objectives.
Define governance frameworks and processes to identify, assess, prioritize, and remediate security exposures across the organization.
Collaborate with cybersecurity leadership to align exposure management initiatives with broader cyber defense and risk reduction strategies.
Serve as an advisor to leadership on exposure trends, risk posture, and mitigation priorities.
Oversee enterprise vulnerability management capabilities, including identification, assessment, prioritization, and remediation tracking.
Define risk-based prioritization methodologies to evaluate vulnerabilities based on threat intelligence, exploitability, and business impact.
Oversee vulnerability scanning, reporting, and remediation processes across infrastructure, applications, and cloud environments.
Oversee vulnerability management tooling and engineering strategy (e.g., Rapid7) to support exposure visibility and remediation workflows.
Lead cloud security monitoring and posture management processes to detect misconfigurations, vulnerabilities, and anomalous activity across cloud environments.
Oversee CNAPP and CASB tooling strategies to monitor, control, and secure cloud applications and infrastructure.
Define firewall monitoring standards and rule configurations in collaboration with security architecture to ensure alignment with security policies.
Manage firewall and network security tooling to detect misconfigurations, policy violations, and anomalous activity.
Ensure alignment of cloud and network security controls with enterprise architecture and risk requirements.
Oversee endpoint security capabilities, including configuration management, drift detection, and enforcement of secure baselines.
Lead endpoint hardening, and monitoring strategies to reduce endpoint-related risks.
Direct mobile security initiatives to protect devices and applications through policy enforcement and monitoring.
Oversee endpoint and mobile security tooling strategy to enable consistent protection and compliance across the enterprise
Lead enterprise data protection capabilities, including endpoint, network, and cloud DLP programs.
Oversee design, implementation, and optimization of DLP tooling to monitor and prevent unauthorized data access, use, or exfiltration.
Establish and manage Data Security Posture Management (DSPM) capabilities to discover, classify, and assess sensitive data across environments.
Ensure alignment of data protection controls with regulatory requirements, privacy standards, and enterprise policies.
Define and enforce security configuration standards across systems, infrastructure, and endpoints.
Oversee configuration drift detection and remediation processes to maintain secure and compliant baselines.
Collaborate with IT and engineering teams to ensure secure configurations are embedded into system builds and deployment pipelines.
Drive continuous improvement of configuration management practices to reduce exposure and improve resilience.
Lead engineering and optimization of exposure management tools, including vulnerability management, CNAPP, CASB, DLP, and endpoint security platforms.
Define use cases, technical requirements, and configurations to enhance detection, monitoring, and remediation capabilities.
Drive automation of exposure detection, prioritization, and remediation workflows to improve efficiency and scalability.
Ensure integration of exposure management tools with broader cybersecurity platforms and processes.
Collaborate with cybersecurity, IT, engineering, and business teams to integrate exposure management into enterprise processes and initiatives.
Partner with risk and compliance teams to align exposure management activities with enterprise risk frameworks and regulatory requirements.
Provide actionable insights and reporting to leadership on exposure trends, remediation progress, and risk reduction outcomes.
Support audit and regulatory activities by providing documentation and evidence related to exposure management practices.
Define and track KPIs and KRIs related to vulnerability management, configuration compliance, and exposure reduction.
Provide regular reporting to leadership on security posture, exposure trends, and remediation effectiveness.
Identify opportunities to enhance exposure visibility, prioritization accuracy, and remediation efficiency.
Drive continuous improvement initiatives to mature exposure management capabilities.
Build and lead a high-performing exposure management team with capabilities across vulnerability management, cloud security, endpoint security, and data protection.
Develop team capabilities through training, mentoring, and structured career development initiatives.
Foster a culture of accountability, collaboration, and continuous improvement.
Ensure alignment of team capabilities with evolving threat landscape and organizational needs.
Qualifications
Ideally targeting individuals with 10+ years of experience in cybersecurity, with a focus on vulnerability management, cloud security, endpoint security, or data protection.
Deep expertise in exposure management practices, including vulnerability assessment, configuration management, and risk-based prioritization.
Strong understanding of cybersecurity frameworks (e.g., NIST CSF, ISO 27001) and regulatory requirements.
Experience leading security engineering and operational teams focused on exposure reduction and risk mitigation.
Demonstrated ability to collaborate with cross-functional teams and influence technical and business stakeholders.
Strong leadership, analytical, and problem-solving skills.
Experience in highly regulated industries, a plus.
Experience with modern cloud security, network security, and data protection technologies, a plus.
#LI-LP
#LI-Remote
Anticipated salary range: $135,400 - $208,100
Bonus eligible: Yes
Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
Medical, dental and vision coverage
Paid time off plan
Health savings account (HSA)
401k savings plan
Access to wages before pay day with myFlexPay
Flexible spending accounts (FSAs)
Short- and long-term disability coverage
Work-Life resources
Paid parental leave
Healthy lifestyle programs
Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.
Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.
To read and review this privacy notice click here (
$135.4k - $208.1k
...What Cybersecurity Defense contributes to Cardinal Health Cybersecurity Defense focuses heavily... ...infrastructure at Cardinal Health. The Director, Cyber Detection & Response is... ...for SOC, incident response, and threat management functions. Serve as an advisor to leadership...SuggestedTemporary workLocal areaImmediate startRemote workFlexible hours- ...Anticipated End Date: 2026-06-18 Position Title: Director II, Cybersecurity: Cyber Defense & Security Analytics Job Description: Director... ...guiding information system security strategies and managing cyber defense initiatives with significant business...SuggestedTemporary workWork at officeLocal areaDay shift3 days per week1 day per week
- ...Cyber Technical Program Manager Lilly Cyber is seeking a Cyber... ...who has lived inside the cybersecurity field: who understands attacker... ...compliance obligations. Exposure to AI security governance, ML... ...scoping or threat-informed defense frameworks. Lilly is dedicated...Suggested
- ...Senior Director of Capture Management About the Company Multi-billion-dollar federal service contractor serving defense, intelligence, civilian, and international markets. Industry Defense & Space Type Privately Held About the Role The Company...SuggestedFor contractors
$95k - $120k
...Technical Account Manager Built on service. Powered by people. Impact exists because... ..., identifying risk and lifecycle exposure, and translating findings into clear, actionable... ...disaster recovery ~ Familiarity with cybersecurity concepts including identity, access...SuggestedWork at office$152.7k - $294k
...Exceptional program leadership and stakeholder management skills. Proven ability to lead cross‑... ...domains and technologies - including cybersecurity architecture, risk management, identity... ...in a large multinational company, with exposure to global teams and an understanding of...Summer holidayFlexible hoursShift work- ...Overview of Job Function: The Sr. Director, Technical Delivery ("Sr. Director") is... ...planning, capacity modeling, and performance management. Serve as senior escalation point... ...Establish and enforce enterprise-level cybersecurity and data-protection standards across...Local area
$130.9k - $154k
...looking for an Internal Audit IT Associate Manager to join the Internal Audit team focusing... ...for the Audit Committee and Board of Directors. Validate the effectiveness of control function... ...with both first and second lines of defense to maximize meetings utility, testing...Local area$90.1k - $209.5k
...indicators of compromise (IOCs), investigating security incidents, managing incident responses, and conducting digital forensics across... ...Management : Plan, scope and coordinate multiple complex, cybersecurity initiatives, ensuring effective prioritization, resource...Temporary workImmediate startFlexible hours- ...Human Resources Business Partner Manager Applied Composites (AC) is seeking a Human Resources Business Partner Manager who will be... ...components, assemblies, engineering and tooling to the aerospace, defense and space system markets. Our employees are treated with...Permanent employmentTemporary workWork at office
- Rolls-Royce plc is looking for an HR People Partner - Defense in Indianapolis, IN. This full-time role involves partnering with leadership to implement people strategies and address complex HR issues. Candidates must have extensive experience in HR and/or Labor Relations...Full time
- Planet Green Search is seeking a Director of Technical Account Management, Customer Success to lead the charge in ensuring effective cybersecurity solutions for clients. This role combines leadership in managing customer success while onboarding teams rapidly. With a primary...Remote job
- Rolls-Royce is seeking an HR People Partner for its Defense division in Indianapolis. This fulltime role is critical in supporting the... ...partnering with leadership on organization design, talent management, and employee relations. Qualifications include significant HR...Full time
$165k - $195k
...Director of Preconstruction Job Locations US-ND-Fargo | US-IN-Indianapolis... ...departmental budgeting and forecasting; manage spend and staffing plans, track performance... ...jobsites the work environment involves some exposure to hazards or physical risks, which...Temporary workFor contractorsWork experience placementWork at officeLocal areaRemote workFlexible hours$163k - $212k
...work every day. To learn more, please see Director, State Government AffairsWill be... ...policy goals. You must have strong project management, communications, political, interpersonal... ...political risk, audit readiness, and regulatory exposure.Lead rapid-response strategies for high-...Contract workLive inLocal areaRemote workWork from homeWorldwideShift work- ...Director, Innovation & Commercialization Developing and deploying innovative solutions... ...for small Haz waste generators Vendor-managed bulk waste inventory Digital... ...environmental sustainability (preferred) ~ Prior exposure to startup, venture or corporate...Temporary workFlexible hours
$175k
...Overview The Director of Preconstruction position will be responsible for the oversight... ...both public and private sector work, management of a 5-10 person estimating staff, compliance... ...critical issues and develop risk exposure summary with associated cost impacts....Temporary workWork experience placementFor subcontractorWork at officeLocal areaHome officeFlexible hours$150k - $190k
...Director Vendor ManagementRemote - United StatesJR013769 At Ensono, our Purpose is to... ...runs. As an expert technology adviser and managed service provider with cross-platform... ...vendor data. This role offers significant exposure to senior leaders and outputs feed directly...Full timeContract workTemporary workWork at officeRemote workWork from homeFlexible hours$64.5k - $151.8k
...solution designs. Partner with peer organizations such as Quality, Cybersecurity to ensure compliance requirements are captured and translated... ...strategy, documentation, and audit readiness. Proactively manage delivery risks, dependencies, and issues , providing clear...Full timeWork experience placementFlexible hoursShift work- Job Description Job Title: HR People Partner - Defense Working Pattern: Fulltime Working location: Indianapolis, IN As a People Partner... ...the People Strategy. The People Partner will be expected to manage relationships within the Defense business and will be responsible...Permanent employmentFull timeLive inWork at officeLocal areaRemote workRelocation packageFlexible hours3 days per week
- Job Title HR People Partner - Defense Working Pattern Full-time Location Indianapolis, IN Responsibilities Partner with the leadership... ...build an environment that supports people to be at their best. Manage local employee‑relations issues, including investigations and performance...Full timeLocal areaFlexible hours
- ...liability insurance company, has a new opportunity for an Underwriter Director at our Indianapolis location. Relocation may be considered for... ..., this full-time position will review, evaluate and analyze exposures and coverages in the Professional Liability, Directors &...Full timeRelocation
$148.5k - $257.4k
...across internal CMC networks (Drug Product Delivery, Project Management, Quality, Manufacturing, and Regulatory) to implement and deliver... ...positive work environment Additional Information Potential exposure to chemicals, allergens, and loud noises. Travel: 0 to 10%...Full timeTemporary workFlexible hours$177k - $308k
...need them, improve the understanding and management of disease, and give back to our... ...enterprise‑level scientific leader. The Director/Sr Director Pharmacometrics is expected... ...with cross‑program impact, contributing to exposure‑response, dose justification, and regulatory...Full timeImmediate startFlexible hours$17 per hour
...Description Starting at $17.00 per hour Job title: Associate Manager FLSA status: Non-Exempt Department : Operations... ...tolerate extreme temperatures for minimum of 30-minute intervals. Exposure to cleaning solvents. Salary Description Starting...Hourly payFull timeAll shiftsShift work$177k - $308k
...medicines to those who need them, improve the understanding and management of disease, and give back to our communities through... ...solubility, metabolic stability, DDI risk, transporter liabilities, exposure‑toxicity relationships, and PK/PD—grounded in mechanistic understanding...Full timeFlexible hours$148.5k - $257.4k
...need them, improve the understanding and management of disease, and give back to our... ...for pharmaceutical development. As the Director of Analytical Chemistry for linker payload... ...Information: Travel: 0 to 15% Potential exposure to chemicals, allergens, and loud noises...Full timeTemporary workLocal areaWorldwideFlexible hours- Director, Analytical Chemistry - Peptides page is loaded## Director, Analytical Chemistry... ...need them, improve the understanding and management of disease, and give back to our... ...Information:*** Travel: 0 to 15%* Potential exposure to chemicals, allergens, and loud noises...Temporary workLocal area
$250k - $275k
...Supported by an engaged Board of Directors and a missionaligned professional staff,... ...education and training beyond high school-while managing costs and debt responsibly-is critical... ...for enterprise risk oversight, compliance exposure, and operational readiness. The COO...- ...satisfaction goals. Maintain regular engagement with senior management and executives at client organizations. Travel regularly... ...trials or health research, with substantial strategic consulting exposure. #LI-KO1 Cytel Inc. is an Equal Employment / Affirmative...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Exposure Management (Cybersecurity Defense). Be the first to apply!
- director lease administration Indianapolis, IN
- erp director Indianapolis, IN
- residence director Indianapolis, IN
- director of foundation relations Indianapolis, IN
- director of benefits Indianapolis, IN
- nonprofit director Indianapolis, IN
- director of video production Indianapolis, IN
- senior director it Indianapolis, IN
- director biotech Indianapolis, IN
- alliance director Indianapolis, IN

