On-site in Cincinnati, OH
Our client seeks a Lead, Exposure Management to coordinate urgent cybersecurity exposure events. The role will manage day-to-day response activities, assess enterprise exposure, coordinate stakeholders, track remediation progress, and drive issues to closure. The Lead will operate independently while partnering with a Principal for timely assessment, communication, escalation, and closure. The role will collaborate with other Leads to ensure continuity, backup coverage, and support for simultaneous events.
Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $85.00 to $95.00/hr. w2
Responsibilities:
- Lead coordination of active exposure events from initial intake through closure.
- Assess enterprise exposure and coordinate validation activities across technology teams.
- Facilitate response meetings and working sessions.
- Engage stakeholders, subject matter experts, and decision makers in a timely manner.
- Maintain organized, documented response activities focused on risk reduction.
- Track remediation and mitigation activities across multiple teams.
- Maintain ownership assignments, target dates, action items, and status updates.
- Identify and escape blockers, dependencies, and unresolved issues.
- Verify completion and documentation of remediation activities.
- Support transition of open issues to longer-term governance processes when necessary.
- Maintain the authoritative record for active response activities.
- Document decisions, timelines, exposure assessments, status updates, and closure evidence.
- Prepare concise updates for leadership and stakeholders.
- Ensure documentation supports audit, regulatory, and governance requirements.
- Identify situations requiring escalation to leadership, Incident Response, Risk Management, or other stakeholders.
- Support structured handoffs between teams and processes to ensure continuity of ownership and accountability.
- Participate in post-event reviews and lessons-learned sessions.
- Identify opportunities to improve coordination, communication, and response effectiveness.
- Contribute to updates of playbooks, procedures, templates, and response standards.
Experience Requirements:
- Experience in cybersecurity, vulnerability management, security operations, incident response coordination, technology risk, or related fields.
- Demonstrated ability to coordinate complex efforts involving multiple technical and business teams.
- Strong organizational, facilitation, and communication skills.
- Ability to operate effectively in fast-paced, high-visibility situations.
- Experience tracking issues, managing action plans, and driving accountability.
- Preferred: experience supporting vulnerability response, zero-day response, cloud security, or threat intelligence.
- Preferred: familiarity with enterprise security tools, ticketing platforms, and technology operations.
- Preferred: experience working within a regulated industry environment.
- Preferred: security certifications such as Security+, CySA+, CISSP, CISM, GCIH, or equivalent.