Get more replies from employers
Send a job-specific resume in minutes.
Syneos Health in India seeks a Senior Cybersecurity Engineer focused on Exposure Management to drive CTEM program maturation, implement repeatable processes, and lead risk-based remediation efforts across the enterprise.
You will partner with security, infrastructure, cloud, endpoint, identity, and business teams to improve telemetry, asset discovery, and coverage, delivering measurable reductions in exposure and risk.
Syneos Health® is a leading fully-integrated life sciences services organization built to accelerate customer success. We partner with innovators at every point across the drug development and commercialization continuum, helping them navigate complexity, anticipate change and accelerate progress.
Every day we perform better because of how we work together, as one team, each the best at what we do. We bring together talented experts across a broad spectrum of business critical corporate functions. Every role plays an essential part in enabling our customers to achieve their goals. Our teams are agile, collaborative, and committed to delivering-for each other, for our customers, and ultimately for the people who rely on the services we support.
Discover what your 25,000 future colleagues already know:
Help define, implement, and continuously improve the CTEM lifecycle across scoping, discovery, prioritization, validation, and mobilization.
Translate exposure management strategy into repeatable operating processes, decision criteria, governance routines, and measurable outcomes.
Identify maturity gaps across asset coverage, signal quality, prioritization, validation, remediation ownership, exception handling, and executive reporting.
Partner with security, infrastructure, cloud, endpoint, identity, application, architecture, and business teams to establish shared accountability for exposure reduction.
Drive structured exposure review cycles that move the organization from vulnerability reporting to validated, risk-based remediation and measurable risk reduction.
Engineer and operate exposure management capabilities across infrastructure, cloud, endpoints, identity, applications, and third-party surfaces.
Maintain and enhance tooling that aggregates vulnerability data, asset context, threat intelligence, and exploitability signals.
Ensure accurate asset discovery, coverage validation, and telemetry quality across the enterprise attack surface.
Drive risk- and threat-informed prioritization beyond CVSS scoring.
Incorporate exploit intelligence, threat actor activity, asset criticality, and compensating controls.
Partner with technology and business owners to translate exposure into remediation priorities.
Correlate exposure data with threat intelligence and adversary TTPs.
Support zero-day and emerging threat response through rapid exposure analysis.
Define and maintain CTEM outcome metrics, including exposure reduction, risk burndown, validated closure rate, SLA adherence, exception aging, reintroduced exposure rate, coverage gaps, telemetry freshness, owner assignment accuracy, and remediation cycle time.
Build executive, operational, engineering, and audit views that clearly explain risk, accountability, trend, residual exposure, and progress against maturity goals.
Convert technical findings into business-relevant narratives that support prioritization, funding, architecture decisions, and remediation mobilization.
Identify recurring exposure patterns and recommend control, architecture, automation, or process improvements.
Lead exposure reduction initiatives across teams without direct reporting authority, using data, risk rationale, business impact, and clear decision records to drive alignment.
Facilitate remediation planning across infrastructure, cloud, endpoint, application, identity, SOC, GRC, and business stakeholders.
Build consensus on ownership, prioritization, compensating controls, exception paths, and remediation timelines.
Escalate systemic blockers with clear options, residual risk framing, and recommended decisions.
Mentor analysts and engineers while raising the overall maturity of exposure management practices.
7+ years of cybersecurity experience, including significant hands-on experience in vulnerability management, exposure management, threat-infor