Skip to content
← Back to job listings

Exposure Management Analyst

medline (workday) · Pune, India

IT - Network / Systems / DB AdminExternal listingfull-timeabout 3 hours ago

About The Role

Job Summary

We are seeking a cybersecurity professional with strong experience in vulnerability management, risk assessment, infrastructure security, security operations, and stakeholder engagement. The candidate should be comfortable communicating with both technical teams and executive leadership while driving measurable reductions in organizational cyber risk.

Job Description

Key Responsibilities

Vulnerability & Attack Surface Management

  • Govern the end-to-end vulnerability lifecycle including identification, assessment, prioritization, remediation tracking, validation, and closure.
  • Perform vulnerability analysis using industry-standard tools.
  • Conduct risk-based prioritization using CVSS scores, exploitability data, business impact, threat intelligence, and asset criticality.
  • Track remediation activities and ensure adherence to established remediation SLAs.
  • Stay informed on emerging threats, vulnerabilities, and industry best practices.

Automation

  • Develop and maintain automated security workflows to improve operational efficiency and reduce manual efforts.
  • Utilize SOAR platforms, existing tool capabilities, and integrations to streamline security operations.

Risk & Exposure Management

  • Evaluate newly disclosed vulnerabilities, zero-day threats, and critical security advisories.
  • Assess business risk associated with vulnerabilities and provide remediation recommendations.
  • Drive reduction of organizational attack surface and cyber exposure.
  • Manage vulnerability exception and risk acceptance processes.
  • Support incident response investigations involving exploited vulnerabilities.

Reporting & Governance

  • Develop executive-level dashboards and vulnerability metrics.
  • Prepare weekly and monthly reports highlighting risk posture, remediation trends, and SLA compliance.
  • Present vulnerability-related findings to technical leadership and business stakeholders.
  • Maintain vulnerability management policies, standards, procedures, and operational runbooks.

Required Qualifications

  • Bachelor’s degree in information security, Computer Science, Information Technology, or related field.
  • 5+ years of experience in Vulnerability Management, Security Operations, or Cybersecurity.
  • Strong understanding of vulnerability assessment methodologies and remediation processes.
  • Working knowledge of scripting and API integration technologies such as PowerShell, Python, JSON, or XML.
  • Experience with security platforms and tools including SIEM, SOAR, EDR/XDR, NDR, and vulnerability management solutions.
  • Experience working with any of the vulnerability management solution i.e.,
  • Qualys VMDR, Tenable Nessus, Rapid7 InsightVM, CrowdStrike Exposure Management. (CrowdStrike Exposure Management is preferred)
  • Experience managing vulnerabilities in: Windows Server, Linux, Active Directory, Azure
  • Strong understanding of: CVSS, CVE Management, MITRE ATT&CK

Certifications

  • Security certifications such as Security+, CySA+, SC-200, GIAC, or similar are preferred but not mandatory

Click here to learn more about a career in IT at Medline!

Our benefit package includes health insurance, life and disability, 401(k) contributions, paid time off, etc., for employees working 30 or more hours per week on average. For a more comprehensive list of our benefits please click here. For roles where employees work less than 30 hours per week, benefits include 401(k) contributions as well as access to the Employee Assistance Program, Employee Resource Groups and the Employee Service Corp.

We’re dedicated to creating a Medline where everyone feels they belong and can grow their career. We strive to do this by seeking diversity in all forms, acting inclusively, and ensuring that people have tools and resources to perform at their best. Explore our Belonging page here .

Medline Industries, LP is an equal opportunity employer. Medline evaluates qualified individuals without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, age, disability, neurodivergence, protected veteran status, marital or family status, caregiver responsibilities, genetic information, or any other characteristic protected by applicable federal, state, or local laws.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing