Senior Manager - Information Security (Exposure Management)
$118.45k - $284.28kOak St. Health
Senior Manager, Exposure Management
We're building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you'll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time.
The Senior Manager, Exposure Management leads a team of remediation engineers responsible for reducing enterprise security risk across the organization's technology environment. This role drives the end-to-end remediation program, ensuring timely mitigation of vulnerabilities while balancing operational stability, business priorities, and risk tolerance. The Senior Manager partners across security, infrastructure, and application teams to implement scalable, risk-based remediation strategies and improve overall exposure management effectiveness.
Key Responsibilities
- Lead enterprise-wide vulnerability remediation efforts and execute risk-based strategies using CVSS, exploitability, asset criticality, and business impact
- Drive cross-functional collaboration with security, engineering, cloud, and infrastructure teams to ensure effective and timely remediation outcomes
- Oversee remediation lifecycle management, ensuring vulnerabilities are prioritized, tracked, and resolved within defined SLAs
- Establish and enforce prioritization models, including exception handling, risk acceptance, and escalation of high-risk issues
- Deliver executive reporting on exposure trends, remediation performance, and overall risk posture
- Improve remediation processes, tooling, and automation to enhance efficiency and reduce false positives
- Ensure alignment with regulatory and compliance frameworks and support audits, risk assessments, and governance activities
Required Qualifications
- 7+ years of experience in cybersecurity, with at least 3+ years focused on vulnerability or exposure management
- 3+ years of people leadership experience, including managing technical teams and driving outcomes
- Hands-on experience with vulnerability management platforms (e.g., Qualys, Tenable, Rapid7, Wiz)
- Strong understanding of operating systems (Windows, Linux, macOS), networking concepts, and enterprise infrastructure
- Proven ability to apply risk-based decisioning in vulnerability prioritization and remediation
Preferred Qualifications
- Relevant industry certifications (e.g., CISSP, GIAC, CEH, Qualys VMDR) combined with strong analytical, problem-solving, and troubleshooting skills
- Experience with patching, configuration management, and remediation tools (e.g., SCCM, Ansible, Puppet) in large-scale environments
- Knowledge of secure coding practices and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25)
- Hands-on experience with scripting and automation (e.g., Python, PowerShell, Bash) to improve remediation efficiency
- Proven ability to manage enterprise-scale remediation programs in cloud or hybrid environments and clearly communicate technical risk to both executive and non-technical stakeholders
Education
- Bachelor's degree or equivalent experience (HS diploma + 4 years relevant experience)
The typical pay range for this role is:
$118,450.00 - $284,280.00
This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company's equity award program.
Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.
Great benefits for great people
We take pride in offering a comprehensive and competitive mix of pay and benefits that reflects our commitment to our colleagues and their families. This full-time position is eligible for a comprehensive benefits package designed to support the physical, emotional, and financial well-being of colleagues and their families. The benefits for this position include medical, dental, and vision coverage, paid time off, retirement savings options, wellness programs, and other resources, based on eligibility.
$84k - $126k
...exciting opportunity within the Security Strategy and Governance (... ...developing and refining information security strategy,... ...ABOUT THE ROLE: The Senior Technical Program Manager is an expert-level technical... ...Fraud Examiner * Exposure to AI governance, model risk...SeniorFull timeFlexible hours$170.6k - $390k
...the world to grow your career in information security! The opportunity The Senior Network Security Architect is a... ...Join our dynamic team as a Senior Manager in Cybersecurity Engineering,... ...Automation and Infrastructure‑as‑Code exposure (e.g., Terraform, ARM,...SeniorSummer holidayRemote workFlexible hours$118.45k - $260.59k
CVS Pharmacy is seeking a Senior Manager - Zero Trust in Boston, MA. This senior management role involves directing the Zero Trust strategy, managing a dedicated team, and ensuring sensitive data security across corporate systems. Candidates must have 7+ years in Data...Senior$180k - $200k
...Manager, Information Security Compliance & Risk | Hybrid, Boston, MA | $180,000–$200,000 + 20% Bonus | GRC • Risk • Audit • AI Governance A... ...party risk evaluation and vendor ecosystem assessments Exposure to complex or enterprise‑level security problems Bachelor...SuggestedTemporary work$112.5k - $202.5k
...prospect of working with innovative security products? Are you passionate about... ...knowledge to help map APIs, assess exposure, showcase attacks patterns and indicators... ..., and drive impact. As a Senior Technical Account Manager, you will be responsible for: Owning...SeniorWork experience placementWork at office$159.7k - $187.9k
...Manager, Information Security The Manager, Information Security is responsible for the implementation of Coverys' information security strategy and policy and assisting in its development, with the goal of safeguarding the organization against threats, weaknesses and...$170k - $230k
...Senior Software Engineering Manager At WHOOP, we're on a mission to unlock human performance and healthspan. WHOOP empowers members to perform at... ...Protecting our members' data and ensuring our systems scale securely and reliably is core to this mission. As a Senior...SeniorFull timeWork at officeRelocation$127.5k - $195.5k
...Senior Manager, Communications / StoryWorks Operations SharkNinja is a global product design... ...clear, simple ways for teams to stay informed on priorities and progress Continuously... ..., marketing, or creative teams, with exposure to high-volume, multi-format content...SeniorTemporary workFlexible hoursShift work$90k
...Job Summary Manage and oversee a high-volume 24/7 Command Center supporting approximately 73 properties. This role manages emergency... ...performance management Requirements • 5+ years command center or security operations leadership • Experience managing multi-site...SeniorFull timeAll shiftsShift work$121k - $148k
...is a global leader in healthcare data management and interoperability , providing mission... ...the industry — where availability and security are non‑negotiable requirements. As a... ...certifications in product management or information security (e.g., CISSP, CISM, CCSK) are...SeniorTemporary work- A nonprofit research and development company in Cambridge seeks a Supply Chain Risk Manager to oversee operations and ensure compliance with Department of Defense programs. The role requires leading cross-functional teams, strong knowledge of supply chain risk management...Senior
$81.15k - $83.57k
...Information Technology Manager/Information Security Officer - Career Centers Department: Education, Training, and Youth Services Employment Type: Permanent - Full Time Location: Boston/Cambridge/Chelsea/Woburn/Malden Compensation: $81,154 - $83,574 / year...Permanent employmentFull timeLocal areaRemote work$175k - $213k
...Senior Manager, Cyber Security Operations Ardelyx is a commercial-stage biopharmaceutical company focused on redefining treatment approaches... ...operational cost Qualifications: ~ Bachelor's degree in Information Security, Computer Science, or related field ~8+ years...SeniorFull timeWork at officeFlexible hours- Position Overview The Senior Manager, Cybersecurity Operations, serves as a key leader responsible... ...team. Develop, implement, and maintain security operations processes, policies, and... ...and relevant industry groups to stay informed on emerging threats and best practices....SeniorContract workLocal areaRemote work
- ...Trilagen is looking for a Senior Business Development Manager to join our Identity Security and Cybersecurity team. In this strategic role, you will be responsible for leading efforts to identify and secure new business opportunities within the security sector. You will...SeniorFull time
$168.3k - $296.7k
...actors may conduct fake interviews and ask for personal information, such as your social security number. What to know: Commvault does not conduct... ...journey for Cyber Resilience and DSPM features. You will manage the product frominitialconcept through to the launch of...Remote workShift work- Action for Boston Community Development is hiring an Information Technology Manager/Information Security Officer to lead IT operations across several locations in the Boston area. This hybrid role combines leadership and technical responsibilities, focusing on secure technology...
$125k - $150k
...endowments and foundations, senior investment professionals... ...With $75B+ in assets under management, the firm constructs customized... ...for ensuring all information security processes, policies and procedures... ...(Azure data factory). • Exposure to AI tools e.g. Codex, Claude...SeniorTemporary workWork at officeLocal areaImmediate startFlexible hours$125k - $155k
Senior Engineer, Data Protection & AI Security page is loaded## Senior Engineer, Data Protection... ...of assets under management, Bain Capital is one of... ...exceptional outcomes.**For more information visit:****Position... ...capabilities for sensitive data exposure through GenAI workflows...Senior- ...Massachusetts is seeking a Compliance Officer III to oversee security operations within the Metro Boston area. The role involves supervising... ...safety regulations are enforced, and developing emergency management plans. The ideal candidate has strong skills in supervision,...SeniorFull timeMonday to Friday
$159.8k - $234.3k
...SimpliSafe We're a high-tech home security company that's passionate about protecting... ...Home Secure. What You'll Do As Senior Manager, Product Security, you will be the... ...to 7 years of progressive experience in information security, with at least 3 years focused...SeniorWork at office$108.25k - $130k
...WITHIN THE TEAM The SaaS security engineer will lead and... ...SaaS security posture management (SSPM) platform and... ...solid understanding of information security, cloud... ...vendors Partner with Senior Manager and stakeholders... ...reporting on SaaS risk exposure and remediation progress...SeniorFull timeWork experience placementWork at office1 day per week- ...customer-centric technology services. The Senior Director of Security Architecture is responsible for... ...Bachelor’s Degree in Information Security, Cybersecurity, Computer Science... ...settings. Demonstrated expertise in managing security infrastructures, including...SeniorWork experience placementLocal area
- ...Senior IAM Automation & DevOps Engineer The Senior IAM Automation... ...identity and access management solutions using an engineering... ...architecture implementation, and securing both human and non-human... ...degree in Computer Science, Information Security, Engineering, or related...Senior
$171.78k - $190.34k
...targets and improve patient outcomes. For more information, please visit Job Summary As C4T's Senior Manager, IT Operations, you will oversee the day-to-day... ...change management practices to maintain a stable and secure technology ecosystem during a critical growth...Senior- ...accuracy, storytelling, and community impact? Spectrum News NECN is seeking a talented Senior Manager, News Gathering Operations to lead our team in delivering compelling, informative news coverage. Spectrum News NECN covers MA, NH, ME, VT, RI, and CT. We use...SeniorWork at officeLocal areaShift workWeekend work
$161.9k - $218.6k
..., we're seeking a Sr. Product Marketing Manager (PMM) who can shape the future of cloud... ...domains - from threat detection and network security to identity and access management. We... ...~ Bachelor's degree in Engineering, Information Technology, a related technical field or...SeniorLocal areaFlexible hours$114.1k - $268.18k
...KPMG is currently seeking a Manager, SAP Security for our Consulting practice... ...evaluate Associates and Senior Associates on engagements,... ...an appropriate field (e.g., Information Systems, Accounting, Computer... ...effective SAP audit experience; exposure to recent versions of SAP...H1bLocal area- The MathWorks, Inc. is looking for a Senior Program Manager to engage with cross-functional teams in developing high-quality software. This role... ...experience in software project management, preferably with exposure to Agile methodologies and tools like JIRA and Confluence....Senior
$140k
First Help Financial is seeking a Senior Manager for Business Operations to partner with leadership on strategic initiatives. The role is fully remote and offers a base salary starting at $140K, depending on experience. Responsibilities include shaping long-term direction...SeniorRemote job
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Manager - Information Security (Exposure Management). Be the first to apply!
- senior performance engineer Wellesley, MA
- senior leadership Wellesley, MA
- senior financial analyst remote Wellesley, MA
- senior vice president of operations Wellesley, MA
- senior software engineer remote Wellesley, MA
- senior director community engagement Wellesley, MA
- senior manager diversity & inclusion Wellesley, MA
- senior Wellesley, MA
- remote senior business analyst Wellesley, MA
- senior implementation engineer Wellesley, MA



