Director, Exposure Management (Cybersecurity Defense)
$135.4k - $208.1kCardinal Health
What Cybersecurity Defense contributes to Cardinal Health
Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Exposure Management is responsible for establishing, leading, and overseeing the exposure management program to proactively identify, prioritize, and reduce cybersecurity risk across network, cloud, endpoint, and data environments. This role drives the strategy and execution of vulnerability management, security configuration management, cloud and network security, endpoint security, and data protection capabilities. Moreover, this Director leads core aspects of exposure management, including vulnerability identification and prioritization, security configuration management, cloud and network security monitoring, endpoint and mobile security, data loss prevention (DLP), and data security posture management (DSPM). This person plays a critical role in reducing the organization’s attack surface, improving security posture, and enabling alignment with overarching cybersecurity & GTBS strategies.
Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based in Central or Eastern time zones (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)
Responsibilities
Develop and lead the exposure management strategy aligned with cybersecurity, risk management, and business objectives.
Define governance frameworks and processes to identify, assess, prioritize, and remediate security exposures across the organization.
Collaborate with cybersecurity leadership to align exposure management initiatives with broader cyber defense and risk reduction strategies.
Serve as an advisor to leadership on exposure trends, risk posture, and mitigation priorities.
Oversee enterprise vulnerability management capabilities, including identification, assessment, prioritization, and remediation tracking.
Define risk-based prioritization methodologies to evaluate vulnerabilities based on threat intelligence, exploitability, and business impact.
Oversee vulnerability scanning, reporting, and remediation processes across infrastructure, applications, and cloud environments.
Oversee vulnerability management tooling and engineering strategy (e.g., Rapid7) to support exposure visibility and remediation workflows.
Lead cloud security monitoring and posture management processes to detect misconfigurations, vulnerabilities, and anomalous activity across cloud environments.
Oversee CNAPP and CASB tooling strategies to monitor, control, and secure cloud applications and infrastructure.
Define firewall monitoring standards and rule configurations in collaboration with security architecture to ensure alignment with security policies.
Manage firewall and network security tooling to detect misconfigurations, policy violations, and anomalous activity.
Ensure alignment of cloud and network security controls with enterprise architecture and risk requirements.
Oversee endpoint security capabilities, including configuration management, drift detection, and enforcement of secure baselines.
Lead endpoint hardening, and monitoring strategies to reduce endpoint-related risks.
Direct mobile security initiatives to protect devices and applications through policy enforcement and monitoring.
Oversee endpoint and mobile security tooling strategy to enable consistent protection and compliance across the enterprise
Lead enterprise data protection capabilities, including endpoint, network, and cloud DLP programs.
Oversee design, implementation, and optimization of DLP tooling to monitor and prevent unauthorized data access, use, or exfiltration.
Establish and manage Data Security Posture Management (DSPM) capabilities to discover, classify, and assess sensitive data across environments.
Ensure alignment of data protection controls with regulatory requirements, privacy standards, and enterprise policies.
Define and enforce security configuration standards across systems, infrastructure, and endpoints.
Oversee configuration drift detection and remediation processes to maintain secure and compliant baselines.
Collaborate with IT and engineering teams to ensure secure configurations are embedded into system builds and deployment pipelines.
Drive continuous improvement of configuration management practices to reduce exposure and improve resilience.
Lead engineering and optimization of exposure management tools, including vulnerability management, CNAPP, CASB, DLP, and endpoint security platforms.
Define use cases, technical requirements, and configurations to enhance detection, monitoring, and remediation capabilities.
Drive automation of exposure detection, prioritization, and remediation workflows to improve efficiency and scalability.
Ensure integration of exposure management tools with broader cybersecurity platforms and processes.
Collaborate with cybersecurity, IT, engineering, and business teams to integrate exposure management into enterprise processes and initiatives.
Partner with risk and compliance teams to align exposure management activities with enterprise risk frameworks and regulatory requirements.
Provide actionable insights and reporting to leadership on exposure trends, remediation progress, and risk reduction outcomes.
Support audit and regulatory activities by providing documentation and evidence related to exposure management practices.
Define and track KPIs and KRIs related to vulnerability management, configuration compliance, and exposure reduction.
Provide regular reporting to leadership on security posture, exposure trends, and remediation effectiveness.
Identify opportunities to enhance exposure visibility, prioritization accuracy, and remediation efficiency.
Drive continuous improvement initiatives to mature exposure management capabilities.
Build and lead a high-performing exposure management team with capabilities across vulnerability management, cloud security, endpoint security, and data protection.
Develop team capabilities through training, mentoring, and structured career development initiatives.
Foster a culture of accountability, collaboration, and continuous improvement.
Ensure alignment of team capabilities with evolving threat landscape and organizational needs.
Qualifications
Ideally targeting individuals with 10+ years of experience in cybersecurity, with a focus on vulnerability management, cloud security, endpoint security, or data protection.
Deep expertise in exposure management practices, including vulnerability assessment, configuration management, and risk-based prioritization.
Strong understanding of cybersecurity frameworks (e.g., NIST CSF, ISO 27001) and regulatory requirements.
Experience leading security engineering and operational teams focused on exposure reduction and risk mitigation.
Demonstrated ability to collaborate with cross-functional teams and influence technical and business stakeholders.
Strong leadership, analytical, and problem-solving skills.
Experience in highly regulated industries, a plus.
Experience with modern cloud security, network security, and data protection technologies, a plus.
#LI-LP
#LI-Remote
Anticipated salary range: $135,400 - $208,100
Bonus eligible: Yes
Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
Medical, dental and vision coverage
Paid time off plan
Health savings account (HSA)
401k savings plan
Access to wages before pay day with myFlexPay
Flexible spending accounts (FSAs)
Short- and long-term disability coverage
Work-Life resources
Paid parental leave
Healthy lifestyle programs
Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate’s geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.
Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.
To read and review this privacy notice click here (
$109.2k - $223.4k
...Job Description The Director for Global Defense - Japan is responsible for leading and growing strategic... ...roles, with significant Japan market exposure. ~ Working proficiency in Japanese... ..., governance) Stakeholder management in highly regulated environments Integrity...SuggestedContract workTemporary workFor contractorsLocal areaFlexible hours$195.42k - $370.53k
...Advisory. KPMG is currently seeking a Director, Banking and Payments IT M&A – Due... ...nativebanking /payment stacks Establish and manage program governance frameworks,ensuring... ...solutions, systems, infrastructure, and cybersecurity Strong strategic thinking and leadershipabilities...SuggestedFull timeH1bLocal area$195.42k - $370.53k
...Advisory. KPMG is currently seeking a Director, Private Equity IT M&A –Due Diligence... ...Strategy practice. Responsibilities: Manage a high-volume pipeline of rapid IT due... ...applications, infrastructure,and cybersecurity; familiarity with the security, data privacy...SuggestedFull timeH1bLocal area- ...Technical Program Manager - SkillBridge Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities... ...systems software development. This position will have exposure to a wide variety of program planning, organization...SuggestedImmediate startRelocation
- ...Technical Program Manager Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with... ...systems software development. This position will have exposure to a wide variety of program planning, organization, and...SuggestedFull timeWork experience placementImmediate startRelocation
- ...available for an experienced Technical Program Manager to lead and coordinate complex... ...interoperability, and digital health programs. Exposure to initiatives involving telehealth,... ...patient monitoring, care coordination, cybersecurity, health information exchange, analytics...Contract workImmediate startRemote work
$110k - $145k
Veteran Firm Seeking a Talent Acquisition Manager for a Hybrid Assignment in Boston, MA... ...Cleared Recruiting for the Department of Defense (DoD), the Intelligence Community (IC),... ...Experience with Workday or ERP implementations. Exposure to workforce planning, financial...- ...Senior Director of Capture Management About the Company Multi-billion-dollar federal service contractor serving defense, intelligence, civilian, and international markets. Industry Defense & Space Type Privately Held About the Role The Company is in need of a Senior Director...For contractors
$120k - $150k
...Science is seeking a forward-thinking Director to lead our undergraduate and graduate... ...in [B.S. in Computer Science, B.S. in Cybersecurity, B.S. in Information Technology, M.S. in... ...opportunities ~ Experience in serving students, management, and leadership ~ Record of clear...Full timeWork experience placementSummer workH1b- ...provide strategic advice and support to the Chief Counsel on the management of daily operations of the agency. We fight for equal justice... ...assigned clients through zealous advocacy, community-oriented defense, and the fullness of excellent legal representation. We are...Remote work
- ...Finally, DLP that works. Founded in 2024 and backed by leading cybersecurity VCs, we are already deployed with customers worldwide and... ...to join us. We are looking for a highly driven and strategic Director of Channel to build Jazz’s channel ecosystem from zero to one...Immediate startWorldwide
$229.5k - $310.5k
...research, clinical development, manufacturing, and commercialization. Our Cybersecurity organization is evolving to match that ambition, and we’re seeking a Senior Director of Identity & Access Management to define and drive our approach to a global digital identity...Full timeTemporary workFor contractorsWork at officeLocal areaFlexible hours$107k - $147k
...A leading technology firm is seeking a Technical Program Management Engineer for their Aerospace and Defense segment. The role involves managing complex projects, communicating status to leaders, and overseeing program budgets. Candidates should have a minimum of 5 years...Remote work$160k - $170k
...serving the utility, industrial power, and defense markets worldwide. We deliver high‑... ...demanding applications. The Technical Product Manager (TPM) for Switches and Meters is a... ...is NOT a work‑from‑home position Regular exposure to noise, dust, heat, cold and odors. Pay...Work at officeWorldwide- The Committee for Public Counsel Services in Massachusetts is seeking a Chief Operating Officer to provide strategic management of daily operations. The COO will oversee multiple projects, enhance operational efficiencies, and support the Chief Counsel in guiding agency...Remote job
- ...related activities. Technical Program Manager [WD1] RHTP The RHTP is a large... .... will work closely with the Director of Program Strategy and Engagement and... ..., and digital health tools. Cybersecurity support for rural providers. Data...Contract workWork at officeRemote work
$286.2k - $326.7k
Senior Director, Field CTO- Capital One Software (Remote) Ever since our first credit card... ...: You understand that winning in cybersecurity requires a robust channel ecosystem. You... ...status, exempt or non-exempt status, and management level. This role is expected to accept...Remote jobFull timePart timeLocal areaShift work$184.11k - $216.6k
...laboratory technologies such as LIMS, process automation, and sample management. By benchmarking industry best practices and facilitating... ...across functions such as R&D, Operations, and cybersecurity to ensure integrated and scalable outcomes. In addition, this...$166k - $220k
ABOUT THE COMPANY Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities... ...ABOUT THE TEAM We are looking for our next Technical Program Manager to join our energetic and innovative team that is passionate about...Contract workWorldwide$166k - $220k
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology... ...are a way of life. We are seeking our next Technical Program Manager to join Anduril, working in a cutting-edge start-up environment...Full timeContract workWork experience placementImmediate startWorldwide$166k - $220k
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology... ...are a way of life. We are seeking our next Technical Program Manager to join Anduril, working in a cutting‑edge start‑up environment...Full timeContract workWork experience placement$184.11k - $216.6k
...such as electronic lab notebooks (ELN), laboratory information management systems (LIMS), and data science platforms, translating... ...dependencies such as data flows between R&D and Operations and cybersecurity requirements. The role applies a transparent, value-based prioritization...- A defense technology company is seeking a Technical Program Manager to drive the development of Autonomous Underwater Vessels (AUVs). The role requires significant experience in robotics, project management, and systems engineering. Responsibilities include managing engineering...
$166k - $220k
Anduril Industries is a defense technology company with a mission to transform U.S. and... ...THE TEAM Anduril is hiring an Associate Director, Capital Markets to design and execute debt... ...Own lender engagement and process management Build and manage relationships with banks...Full timeWork experience placement- ...Director of Preconstruction– Mechanical Construction Hybrid | Greater Boston, Massachusetts... ...This individual will be responsible for managing estimating resources, developing project... ..., accuracy, consistency, and risk exposure Coordinate and lead preconstruction review...Contract workFor contractorsFor subcontractorWork at office
$150k - $200k
...or an alternative application process. Director of Recruiting Full Time Professionals Corporate... ...both flexibility and in person exposure to industry experts. Role We seek a Director... ...s overall recruiting efforts, including management of our internal recruiting team, while...Full timeWork at officeRemote work3 days per week$213k - $280.5k
...Vesalius is seeking a Senior/Executive Director-level Head of Biology to lead biological... ...development and biology enabling capabilities; manage direct reports and coordinate matrixed... ...on neurodegeneration and meaningful exposure to cardiovascular and immune biology. Deep...$129k - $171k
...Washington; Washington, District of Columbia. Anduril Industries is a defense technology company with a mission to transform U.S. and allied... ...the Team To empower Anduril's Talent Acquisition team, hiring managers, and interviewers with the essential knowledge, skills, and...Full time$145.9k - $234.2k
The Role: Moderna is seeking a Senior Technical Program Manager (TPM) to drive project and program management of infrastructure (cloud... ...and Access Management, Builder Tools & Platforms, IT, Cybersecurity, software engineering, and business stakeholders to manage and...Permanent employment$130k - $170k
Job Title: Technical Product Marketing Manager Employment Status: Full-time Office Hours... ...Pharma, Automotive, Robotics, Aerospace, Defense). 2+ years of experience working in a... ...Validation Artificial intelligence (AI/ML) Cybersecurity Medical device or software as a medical...Full timeWork at officeMonday to Friday
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Exposure Management (Cybersecurity Defense). Be the first to apply!
- director mba Boston, MA
- director of inventory management Boston, MA
- director of public policy Boston, MA
- director of implementation Boston, MA
- director of materials management Boston, MA
- director of employee engagement Boston, MA
- emea director Boston, MA
- director of automation Boston, MA
- director of outreach and engagement Boston, MA
- director of process improvement Boston, MA


