Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Exposure Management (Cybersecurity Defense)

$135.4k - $208.1k

Cardinal Health

What Cybersecurity Defense contributes to Cardinal Health

Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Exposure Management is responsible for establishing, leading, and overseeing the exposure management program to proactively identify, prioritize, and reduce cybersecurity risk across network, cloud, endpoint, and data environments. This role drives the strategy and execution of vulnerability management, security configuration management, cloud and network security, endpoint security, and data protection capabilities. Moreover, this Director leads core aspects of exposure management, including vulnerability identification and prioritization, security configuration management, cloud and network security monitoring, endpoint and mobile security, data loss prevention (DLP), and data security posture management (DSPM). This person plays a critical role in reducing the organization's attack surface, improving security posture, and enabling alignment with overarching cybersecurity & GTBS strategies.

Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based in Central or Eastern time zones (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)

Responsibilities

  • Develop and lead the exposure management strategy aligned with cybersecurity, risk management, and business objectives.

  • Define governance frameworks and processes to identify, assess, prioritize, and remediate security exposures across the organization.

  • Collaborate with cybersecurity leadership to align exposure management initiatives with broader cyber defense and risk reduction strategies.

  • Serve as an advisor to leadership on exposure trends, risk posture, and mitigation priorities.

  • Oversee enterprise vulnerability management capabilities, including identification, assessment, prioritization, and remediation tracking.

  • Define risk-based prioritization methodologies to evaluate vulnerabilities based on threat intelligence, exploitability, and business impact.

  • Oversee vulnerability scanning, reporting, and remediation processes across infrastructure, applications, and cloud environments.

  • Oversee vulnerability management tooling and engineering strategy (e.g., Rapid7) to support exposure visibility and remediation workflows.

  • Lead cloud security monitoring and posture management processes to detect misconfigurations, vulnerabilities, and anomalous activity across cloud environments.

  • Oversee CNAPP and CASB tooling strategies to monitor, control, and secure cloud applications and infrastructure.

  • Define firewall monitoring standards and rule configurations in collaboration with security architecture to ensure alignment with security policies.

  • Manage firewall and network security tooling to detect misconfigurations, policy violations, and anomalous activity.

  • Ensure alignment of cloud and network security controls with enterprise architecture and risk requirements.

  • Oversee endpoint security capabilities, including configuration management, drift detection, and enforcement of secure baselines.

  • Lead endpoint hardening, and monitoring strategies to reduce endpoint-related risks.

  • Direct mobile security initiatives to protect devices and applications through policy enforcement and monitoring.

  • Oversee endpoint and mobile security tooling strategy to enable consistent protection and compliance across the enterprise

  • Lead enterprise data protection capabilities, including endpoint, network, and cloud DLP programs.

  • Oversee design, implementation, and optimization of DLP tooling to monitor and prevent unauthorized data access, use, or exfiltration.

  • Establish and manage Data Security Posture Management (DSPM) capabilities to discover, classify, and assess sensitive data across environments.

  • Ensure alignment of data protection controls with regulatory requirements, privacy standards, and enterprise policies.

  • Define and enforce security configuration standards across systems, infrastructure, and endpoints.

  • Oversee configuration drift detection and remediation processes to maintain secure and compliant baselines.

  • Collaborate with IT and engineering teams to ensure secure configurations are embedded into system builds and deployment pipelines.

  • Drive continuous improvement of configuration management practices to reduce exposure and improve resilience.

  • Lead engineering and optimization of exposure management tools, including vulnerability management, CNAPP, CASB, DLP, and endpoint security platforms.

  • Define use cases, technical requirements, and configurations to enhance detection, monitoring, and remediation capabilities.

  • Drive automation of exposure detection, prioritization, and remediation workflows to improve efficiency and scalability.

  • Ensure integration of exposure management tools with broader cybersecurity platforms and processes.

  • Collaborate with cybersecurity, IT, engineering, and business teams to integrate exposure management into enterprise processes and initiatives.

  • Partner with risk and compliance teams to align exposure management activities with enterprise risk frameworks and regulatory requirements.

  • Provide actionable insights and reporting to leadership on exposure trends, remediation progress, and risk reduction outcomes.

  • Support audit and regulatory activities by providing documentation and evidence related to exposure management practices.

  • Define and track KPIs and KRIs related to vulnerability management, configuration compliance, and exposure reduction.

  • Provide regular reporting to leadership on security posture, exposure trends, and remediation effectiveness.

  • Identify opportunities to enhance exposure visibility, prioritization accuracy, and remediation efficiency.

  • Drive continuous improvement initiatives to mature exposure management capabilities.

  • Build and lead a high-performing exposure management team with capabilities across vulnerability management, cloud security, endpoint security, and data protection.

  • Develop team capabilities through training, mentoring, and structured career development initiatives.

  • Foster a culture of accountability, collaboration, and continuous improvement.

  • Ensure alignment of team capabilities with evolving threat landscape and organizational needs.

Qualifications

  • Ideally targeting individuals with 10+ years of experience in cybersecurity, with a focus on vulnerability management, cloud security, endpoint security, or data protection.

  • Deep expertise in exposure management practices, including vulnerability assessment, configuration management, and risk-based prioritization.

  • Strong understanding of cybersecurity frameworks (e.g., NIST CSF, ISO 27001) and regulatory requirements.

  • Experience leading security engineering and operational teams focused on exposure reduction and risk mitigation.

  • Demonstrated ability to collaborate with cross-functional teams and influence technical and business stakeholders.

  • Strong leadership, analytical, and problem-solving skills.

  • Experience in highly regulated industries, a plus.

  • Experience with modern cloud security, network security, and data protection technologies, a plus.

#LI-LP

#LI-Remote

Anticipated salary range: $135,400 - $208,100

Bonus eligible: Yes

Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.

  • Medical, dental and vision coverage

  • Paid time off plan

  • Health savings account (HSA)

  • 401k savings plan

  • Access to wages before pay day with myFlexPay

  • Flexible spending accounts (FSAs)

  • Short- and long-term disability coverage

  • Work-Life resources

  • Paid parental leave

  • Healthy lifestyle programs

Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.

The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.

Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.

Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.

To read and review this privacy notice click here (

Vacancy posted 4 hours ago
Similar jobs that could be interesting for youBased on the Director, Exposure Management (Cybersecurity Defense) in Boston, MA vacancy
  • $135.4k - $208.1k

     ...What Cybersecurity Defense contributes to Cardinal Health Cybersecurity Defense focuses heavily...  ...infrastructure at Cardinal Health. The Director, Cyber Detection & Response is...  ...for SOC, incident response, and threat management functions. Serve as an advisor to leadership... 
    Suggested
    Temporary work
    Local area
    Immediate start
    Remote work
    Flexible hours

    Cardinal Health

    Boston, MA
    3 hours ago
  • $110k - $145k

     ...Veteran Firm Seeking a Talent Acquisition Manager for a Hybrid Assignment in Boston, MA...  ...Cleared Recruiting for the Department of Defense (DoD), the Intelligence Community (IC),...  ...with Workday or ERP implementations. Exposure to workforce planning, financial analytics... 
    Suggested

    HRUCKUS

    Boston, MA
    2 days ago
  • $195.42k - $370.53k

     ...Advisory. KPMG is currently seeking a Director, Private Equity IT M&A -Due Diligence...  ...practice. Responsibilities: Manage a high-volume pipeline of rapid IT due diligenceprojects...  ...applications, infrastructure,and cybersecurity; familiarity with the security, data... 
    Suggested
    H1b
    Local area

    KPMG

    Boston, MA
    21 hours ago
  •  ...Job Title: Director of Cybersecurity Location: Dallas, TX (preferred) / Hybrid Job Summary:...  ...implement and maintain robust cybersecurity defenses in a fast-paced startup environment....  ...and a proven track record of managing and evolving cybersecurity programs to... 
    Suggested

    Saviance

    Cambridge, MA
    1 day ago
  •  ...GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help...  ...expertise. We are seeking an exceptional Director of Cybersecurity Advisory to build and...  ...and Lead a Team: Recruit, develop, and manage a team of cybersecurity advisory... 
    Suggested
    Local area
    Remote work
    Flexible hours

    GuidePoint Security

    Boston, MA
    2 days ago
  • $120k - $150k

     ...Science is seeking a forward-thinking Director to lead our undergraduate and graduate...  ...in [B.S. in Computer Science, B.S. in Cybersecurity, B.S. in Information Technology, M.S. in...  ...opportunities ~ Experience in serving students, management, and leadership ~ Record of clear... 
    Full time
    Work experience placement
    Summer work
    H1b

    Wentworth Institute of Technology

    Boston, MA
    21 hours ago
  • $84k - $126k

     ...ABOUT THE ROLE: The Senior Technical Program Manager is an expert-level technical program leader with...  ...Risk and Information Systems Control, CompTIA Cybersecurity Analyst or Certified Fraud Examiner * Exposure to AI governance, model risk, or responsible-AI program... 
    Flexible hours

    Klaviyo

    Boston, MA
    2 days ago
  •  ...Overview of Job Function: The Sr. Director, Technical Delivery ("Sr. Director") is...  ...planning, capacity modeling, and performance management. Serve as senior escalation point...  ...Establish and enforce enterprise-level cybersecurity and data-protection standards across... 
    Local area

    Verint Systems

    Boston, MA
    1 day ago
  • $250k - $260k

     ...About Thrive Thrive is a leading global provider of NextGen managed services, delivering cybersecurity-first, cloud, infrastructure, AI-driven automation, and digital experience solutions to mid-market and enterprise clients. With nearly 30 acquisitions completed and... 

    THRIVE

    Boston, MA
    4 days ago
  •  ...provide strategic advice and support to the Chief Counsel on the management of daily operations of the agency. We fight for equal...  ...assigned clients through zealous advocacy, community-oriented defense, and the fullness of excellent legal representation. We are... 
    Remote work

    Committee for Public Counsel Services

    Boston, MA
    21 hours ago
  • $171k - $234k

     ...right place. Who We Are In order to be the cybersecurity partner of choice, we must trailblaze...  ...We are looking for an experienced Director, Deal Desk to oversee the commercial deal...  ...objectives. Financial Analysis & Risk Management: Provide sophisticated financial modeling... 
    Full time
    Work at office
    Visa sponsorship
    Work visa

    Dormont Manufacturing Co

    Boston, MA
    1 day ago
  • ## Director, Cybersecurity, Resilience & GovernancePostulerlocations: Boston, Massachusetts: Toronto...  ...Disaster Recover officers and onboarding Managers** as a key pillar in the Cybersecurity...  ...* Collaborate with the Second Line of Defense Risk teams for highest risk... 
    Temporary work
    Work at office
    Remote work
    Work from home
    Worldwide
    Flexible hours
    Shift work

    Manulife Insurance Malaysia

    Boston, MA
    21 hours ago
  •  ...strategies in accordance with data privacy law, and related cybersecurity and AI requirements. This role will support our Digital and Information...  ...for and respond to cyber/information incidents, including managing the incident response process Providing legal guidance at... 
    Work at office
    Local area

    Regeneron

    Cambridge, MA
    13 hours ago
  • Manulife Insurance Malaysia is seeking a Director for their Cybersecurity, Resilience & Governance team in Boston, Massachusetts. You will lead Business...  ...The role involves leading disaster recovery initiatives, managing a team, and ensuring compliance with global security... 
    Flexible hours

    Manulife Insurance Malaysia

    Boston, MA
    4 days ago
  • $112.5k - $202.5k

     ...problem-solving ability, empathy, creativity, and cybersecurity knowledge to help map APIs, assess exposure, showcase attacks patterns and indicators of compromise...  ...and drive impact. As a Senior Technical Account Manager, you will be responsible for: Owning the... 
    Work experience placement
    Work at office

    Akamai

    Cambridge, MA
    4 days ago
  • $166k - $220k

     ...Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology...  ...are a way of life. We are seeking our next Technical Program Manager to join Anduril, working in a cutting-edge start-up... 
    Full time
    Contract work
    Work experience placement
    Immediate start
    Worldwide

    Anduril Industries

    Quincy, MA
    4 days ago
  •  ...next generation of critical hardware across space, aerospace, defense, energy, and industrial applications. Our proprietary MetalsFIRST...  ...lifecycle. Build internal processes and systems for managing government opportunities, proposal development, reporting requirements... 
    Work at office
    Flexible hours

    Foundation Alloy Technology Explorations, Inc

    Cambridge, MA
    4 days ago
  • $120k - $225k

     ...About Us Wellington Management offers comprehensive investment management capabilities that span nearly all segments of the global...  ...technology roles (e.g., software engineering, DevOps, cloud, cybersecurity, data science, architecture, infrastructure, product... 
    Remote work
    Flexible hours
    1 day per week

    Wellington Management

    Boston, MA
    21 hours ago
  •  ...Technical Product Marketing Manager Ketryx is an AI software platform that enables healthcare...  ..., Automotive, Robotics, Aerospace, Defense). 2+ years of experience working in a...  ...Artificial intelligence (AI/ML) Cybersecurity Medical device or software as a medical... 
    Full time

    Venturefizz Product Management Community

    Boston, MA
    4 days ago
  • $166k - $220k

    Anduril Industries is a defense technology company with a mission to transform U.S. and...  ...THE TEAM Anduril is hiring an Associate Director, Capital Markets to design and execute debt...  ...Own lender engagement and process management Build and manage relationships with banks... 
    Full time
    Work experience placement

    Neura Market

    Boston, MA
    2 days ago
  • $150k - $200k

     ...work, with the goal of providing both flexibility and in person exposure to industry experts. Role We seek a Director of Recruiting to lead Vanderweil's overall recruiting efforts, including management of our internal recruiting team, while specializing in... 
    Remote work
    3 days per week

    Vanderweil Engineers

    Boston, MA
    2 days ago
  • $175.5k - $214.5k

     ...can do together. The Associate Director, Data Architect is a member of the IT...  ...the architecture, delivery, and ongoing management of enterprise integrations across the organization...  ...and ensure adherence to cybersecurity best practices. ~ Conduct regular audits... 

    Intellia Therapeutics, Inc.

    Cambridge, MA
    3 days ago
  • $175k - $225k

     ...Description Senior Director, Global Transaction Tax (State & Local Tax)...  ...attributes identified during diligence; Draft exposure calculations to quantify any issues...  ...next steps; Take responsibility for managing client relationships by communicating and... 
    Part time
    Local area
    Flexible hours

    Alvarez & Marsal

    Boston, MA
    21 hours ago
  • $168k - $272k

     ...Director / Senior Director, Tax Cambridge, MA USA LILA Sciences is seeking a Tax Director...  ..., sales & use, and R&D credits — and manage all related filings. Develop and...  ...state corporate income tax, with meaningful exposure to international tax. ~ Strong working... 
    Full time
    Work at office
    Local area
    Flexible hours

    Lila Sciences

    Cambridge, MA
    4 days ago
  • $163k - $212k

     ...day. To learn more, please see Senior Director, State Government Affairs Will be responsible...  ...goals. You must have strong project management, communications, political, interpersonal...  ...risk, audit readiness, and regulatory exposure. Lead rapid‑response strategies for high... 
    Contract work
    Live in
    Local area
    Remote work
    Work from home
    Worldwide
    Shift work

    Cengage Group

    Boston, MA
    5 days ago
  • $216.4k - $324.6k

     ...We are seeking a dynamic and experienced Director, AI Coding Platforms to lead our AI...  ...Platforms, you will be responsible for managing and scaling advanced agentic workflows and...  ...tools meet privacy standards and prevent exposure of proprietary source code to external models... 
    Full time
    Summer work
    Work at office
    Remote work
    Flexible hours
    2 days per week

    Vertex Pharmaceuticals

    Boston, MA
    2 days ago
  • $89.1k - $100.23k

     .... The Role We are looking for a Director of Outreach to own three of ULI Boston's...  ...Assistance Panels Source, recruit and manage TAPs from initial community inquiry...  ...without formal authority. Public sector exposure or close alignment is a meaningful advantage... 
    Work at office
    Local area
    Remote work
    Relocation
    Monday to Friday
    Afternoon shift

    Urban Land Institute

    Boston, MA
    2 days ago
  • $150k - $225k

     ...Director, Pricing—Commercial Excellence Alvarez & Marsal Private Equity Performance Improvement...  ...Services CDD/Strategy Interim Management Manufacturing Operations Improvement...  ...career development, training and exposure to international business assignments.... 
    Interim role

    Alvarez & Marsal

    Boston, MA
    2 days ago
  •  ...~ Experience leading cross-disciplinary engineering teams and managing client relationships ~ Proven success in designing automation...  ...systems in manufacturing, logistics, and other sectors ~ Exposure to AI/ML applications in robotics or computer vision systems... 

    TEPHRA

    Boston, MA
    1 day ago
  • $150k - $170k

    Revolutionspace is looking for a Sr. Talent Acquisition Partner based in Boston, MA, to lead recruitment for engineering talent. This full-cycle role involves sourcing, screening, and hiring top-tier candidates in a high-growth environment with a commitment to diversity...

    Revolutionspace

    Boston, MA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Exposure Management (Cybersecurity Defense). Be the first to apply!