Source Job

  • Own end-to-end vulnerability lifecycle, attack surface management, and cloud security posture across AWS, Azure, and OCI.
  • Operate CTEM phases, consolidate exposure data into prioritized views, and track KPIs for stakeholder reporting.
  • Embed security into SDLC, support penetration testing, and translate technical risk clearly for business audiences.

Vulnerability Management Cloud Security Penetration Testing

20 jobs similar to Cyber Threat Exposure Management Analyst

Jobs ranked by similarity.

UK Ireland

  • Lead complex incident response investigations end-to-end with minimal supervision.
  • Perform alert triage, phishing investigations, endpoint forensics, and data exfiltration analysis.
  • Mentor junior analysts and drive improvements to security processes.

Version 1 is a technology and transformation solutions provider trusted by global brands. With over 3,300 employees and €350m revenue, it has been recognized as a Great Place to Work for over a decade.

US

  • Lead vulnerability management and SOC 2 compliance across SaaS products and cloud infrastructure.
  • Harden Azure and Microsoft security tooling (Defender, Intune) and respond to security alerts.
  • Partner with engineering, IT, and legal to drive secure SDLC, policies, and customer security reviews.

HSP Group is a premier provider of global expansion services, helping companies with legal setup, HR, payroll, compliance, and tax across international markets. The company partners with scale-ups and innovative technology firms to reduce risk and scale faster, fostering a trusted-partner culture.

US

  • Lead the development and implementation of security strategies, policies, and procedures.
  • Architect secure systems and collaborate with engineering teams to integrate security throughout the software development lifecycle.
  • Conduct risk assessments, incident response, and mentor junior engineers to promote security awareness.

Gemini is a global crypto and Web3 platform founded in 2014, offering secure crypto products and services to individuals and institutions in over 70 countries. The company is publicly traded with a mission to bridge traditional finance with the emerging cryptoeconomy, fostering a diverse team that prioritizes trust and security.

Philippines

  • Lead vulnerability management and coordinate remediation across client environments.
  • Support SOC 2 compliance, security monitoring, and incident response activities.
  • Develop automation and scalable processes to improve security posture.

Atlas Technica shoulders IT management, user support, and cybersecurity for hedge funds and other investment firms. Founded in 2016, the company has grown through its uncompromising focus on service, values ownership and execution, and maintains a professional yet friendly global team.

Canada Unlimited PTO

  • Secure cloud infrastructure, applications, APIs, and AI-driven workflows.
  • Partner with engineering to embed security controls into production.
  • Lead vulnerability management and incident response activities.

Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. The company is a high-growth startup with a remote-first culture, emphasizing transparency, autonomy, and technical craftsmanship.

US

  • Perform vulnerability scanning support within approved scope and toolsets.
  • Coordinate patching prioritization and tracking with responsible teams.
  • Develop recurring vulnerability and patching reports for operational and executive stakeholders.

EVOCS is an IT consulting firm that helps businesses operate more effectively through practical expertise and technology solutions. The company is a trusted partner to a growing number of organizations, with a team focused on quality, consistency, and client success.

United States

  • Develop and implement effective cybersecurity strategies aligned with client objectives and industry best practices.
  • Design and implement advanced security controls and technologies, including SIEM, DLP, and endpoint protection.
  • Lead complex cybersecurity projects, manage client relationships, and contribute to thought leadership.

Avertium provides cybersecurity consulting and managed security services, focusing on Microsoft Cloud and other platforms. The company fosters a culture of remote teamwork, self-discipline, and innovation, leveraging industry best practices to deliver cost-effective solutions.

US

  • Oversee the enterprise vulnerability management program, including administering Tenable platforms and conducting regular assessments.
  • Monitor and respond to MDR alerts, investigate security incidents, and coordinate remediation efforts.
  • Review and approve cybersecurity-related change requests, ensuring security risks are communicated and mitigated.

Loenbro is a trusted, long-term construction lifecycle partner serving thousands of customers across the U.S. They have a national presence with a local approach, and build careers grounded in integrity, teamwork, excellence, and purpose.

US 3w PTO

  • Lead the enterprise Vulnerability Management and CDM program, directing scanning and prioritization strategies.
  • Coordinate remediation activities across system owners, engineering teams, and ISSOs to reduce cyber risk.
  • Develop executive metrics, dashboards, and reports to communicate vulnerability posture and operational risk trends.

True Zero Technologies is a veteran-owned small business that focuses on purposeful enablement of people and technology. Recognized as a Best Places to Work in 2023 and 2025, and listed on the Inc. 5000 fastest-growing companies, the company emphasizes a people-first culture and dedication to excellence.

Brazil

  • Triage inbound vulnerabilities: validate, classify, and prioritize based on real exploitability and business impact.
  • Perform blast-radius and impact analysis across affected systems and downstream consumers.
  • Own the secrets rotation strategy: inventory affected credentials and sequence rotation safely across production systems.

CI&T helps large enterprises transform the potential of AI into real business impact with AI deployment and tech-integrated business solutions. With 30 years of experience and 8,000 CI&Ters across more than 25 countries, we collaborate to build solutions with real impact.

Germany

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling to enable development teams to shift left and integrate security into workflows.
  • Design and implement secure baselines for cloud resources and Kubernetes-based infrastructure, and drive vulnerability management efforts.

Wiz is a cloud security company enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime. As one of the fastest-growing startups, trusted by over 65% of the Fortune 100, Wiz values world-class talent and creativity.

US

  • Design, implement, and maintain security controls across AWS environments, including IAM, VPC, encryption, and logging.
  • Integrate security checks into CI/CD pipelines and harden Kubernetes/EKS workloads using Terraform and policy-as-code.
  • Automate vulnerability management, security monitoring, and incident response to reduce cloud and application risk.

Electric Power Engineers provides consulting expertise and energy intelligence software solutions for power and energy clients, focusing on modern, secure, and resilient grid challenges. They are leaders in the renewables space and emphasize collaboration, innovation, and making an impact on communities and the environment.

$130,000–$180,000/yr

  • Protect clients' digital assets by designing and implementing security solutions across multi-cloud environments.
  • Work closely with senior leadership and mentor junior team members while contributing across cybersecurity engineering, GRC, and security strategy.
  • Take ownership of client relationships and bring people along, adapting between engineering, strategy, and compliance conversations.

Riveron helps organizations implement leading governance, risk and compliance practices by combining deep expertise with pragmatic partnership. The firm serves startups, mid-market companies, and PE-backed portfolios with a collaborative and entrepreneurial culture.

$98,000–$116,000/yr
US

  • Integrate AppSec tools into CI/CD pipelines and manage application security vulnerabilities.
  • Monitor and respond to security incidents, tuning WAF policies and security rulesets.
  • Collaborate with IT partners to perform security reviews and remediate findings across cloud platforms.

EMCOR Group, Inc. is a Fortune 500 leader in mechanical and electrical construction, industrial and energy infrastructure, and building services. As a large company with a diverse portfolio, it emphasizes a culture of security and collaboration.

$129,813–$172,500/yr
US 3w PTO 3w maternity 3w paternity

  • Lead and maintain ATO documentation and coordinate with security, engineering, and project teams to ensure compliance.
  • Monitor security events, investigate threats, and assess vulnerabilities across cloud and enterprise environments.
  • Develop and implement security policies, conduct risk analysis, and provide cybersecurity guidance to stakeholders.

The company is a partner organization focused on cybersecurity and federal technology modernization. It offers a fully remote, mission-driven culture with opportunities for growth in a technology-focused environment.

Americas Unlimited PTO

  • Own post-sale success for enterprise customers running the CTEM platform across the full lifecycle, partnering with CISOs and security teams to drive measurable risk reduction.
  • Act as the voice of the customer inside the company, managing relationships with C-suite executives and operational teams to become a trusted advisor on cyber risk.
  • Drive key metrics such as GRR, NRR, and value realization while helping customers become self-sufficient on the platform.

Safe is an AI-driven cybersecurity company that provides a quantified, real-time view of security posture for enterprise clients. As a $170M Series C-funded category leader serving 10% of the Fortune 500, the company has a high-intensity, mission-driven culture with extreme ownership and radical candor.

US

  • Develop and execute enterprise cybersecurity strategy and multi-year security roadmap.
  • Lead cybersecurity risk management, security operations, and incident response programs.
  • Ensure compliance with HIPAA, HITRUST, NIST, and other regulatory frameworks.

Mom's Meals provides home-delivered meal solutions for individuals with health needs. The company values its team members and offers a generous benefits package.

Europe

  • Independently plan and conduct IT and cybersecurity risk assessments across European laboratories and IT environments.
  • Assess technical and organizational controls covering network security, IAM, endpoint security, cloud, and IT resilience.
  • Translate technical findings into clear business risks and produce high-quality reports for management.

Eurofins Scientific is an international life sciences company providing analytical testing services to make life safer and healthier. The company has grown to over 63,000 staff across a decentralized network of 950 laboratories in 60 countries, committed to diversity and sustainability.

US

  • Support security and compliance initiatives across cloud-based environments.
  • Conduct web application penetration testing and vulnerability assessments.
  • Implement and maintain security controls aligned with compliance frameworks.

Epsilon ASI is a technology company focused on providing secure and compliant environments for its clients. The company is looking for early-career security professionals to join its highly technical team in a remote setting.

US Australia 18w maternity 18w paternity

  • Own the full technology and security remit, including enterprise infrastructure, security, identity, applications, and workplace technology.
  • Lead and grow three functions: IT & Security Operations, Cloud Platform Engineering, and GRC.
  • Mature security operations with automation and serve as customer zero for the company's own platform.

UpGuard builds a Cyber Risk Posture Management platform that integrates security ratings, threat intel, and agentic AI to help organizations manage cyber risk. They are a certified Great Place to Work with a lean, high-growth culture and a global remote team.