Information Security Analyst Exposure Management Lead IV

Javen Technologies
  • Cincinnati, OH
  • Instant Apply
3 days ago

Job Description

Title: Information Security Analyst – Exposure Management Lead IV
Location: Cincinnati, OH – 45202
Duration: 8+ months contract
 
TECHNICAL SKILLS
Must Have
Ability to operate effectively in fast-paced, high-visibility situations
Demonstrated ability to coordinate complex efforts involving multiple technical and business teams
Experience in cybersecurity, vulnerability management, security operations, incident response coordination, technology risk, or related fields
Experience tracking issues, managing action plans, and driving accountability
Exposure Risk and Response Coordination
Strong organizational, facilitation, and communication skills
 
Nice To Have
Experience in Financial Industry or Banking
 
JOB DESCRIPTION
Information Security Analyst - Exposure Management Lead
Position Summary
The Lead, Exposure Management serves as an operational coordinator for urgent cybersecurity exposure events. This role is responsible for leading day-to-day response activities, assessing enterprise exposure, coordinating stakeholders, tracking remediation progress, and driving issues to resolution.
The Lead is expected to independently manage active exposure events while partnering closely with the principal to ensure timely assessment, communication, escalation, and closure. This role work closely with other Leads to provide continuity, backup coverage, and support for simultaneous events.
 
Key Responsibilities
Exposure Response Coordination
·        Lead coordination of active exposure events from initial intake through closure.
·        Assess enterprise exposure and coordinate validation activities across technology teams.
·        Facilitate response meetings and working sessions.
·        Drive timely engagement of stakeholders, subject matter experts, and decision makers.
·        Ensure response activities remain organized, documented, and focused on risk reduction.
Remediation & Mitigation Tracking
·        Track remediation and mitigation activities across multiple teams.
·        Maintain ownership assignments, target dates, action items, and status updates.
·        Identify and escalate blockers, dependencies, and unresolved issues.
·        Verify that remediation activities are completed and appropriately documented.
·        Support transition of open issues to longer-term governance processes when necessary.
Documentation & Reporting
·        Maintain the authoritative record for active response activities.
·        Document decisions, timelines, exposure assessments, status updates, and closure evidence.
·        Prepare concise updates for leadership and stakeholders.
·        Ensure response documentation supports audit, regulatory, and governance requirements.
Escalation & Handoff Management
·        Identify situations requiring escalation to leadership, Incident Response, Risk Management, or other stakeholders.
·        Support structured handoffs between teams and processes.
·        Ensure continuity of ownership and accountability throughout the response lifecycle.
Continuous Improvement
·        Participate in post-event reviews and lessons-learned sessions.
·        Identify opportunities to improve coordination, communication, and response effectiveness.
·        Contribute to updates of playbooks, procedures, templates, and response standards.
 
Qualifications
Required
·        Experience in cybersecurity, vulnerability management, security operations, incident response coordination, technology risk, or related fields.
·        Demonstrated ability to coordinate complex efforts involving multiple technical and business teams.
·        Strong organizational, facilitation, and communication skills.
·        Ability to operate effectively in fast-paced, high-visibility situations.
·        Experience tracking issues, managing action plans, and driving accountability.
Preferred
·        Experience supporting vulnerability response, zero-day response, cloud security, or threat intelligence activities.
·        Familiarity with enterprise security tools, ticketing platforms, and technology operations.
·        Experience working within a regulated industry environment.
·        Security certifications such as Security+, CySA+, CISSP, CISM, GCIH, or equivalent.
 

Numbers & Facts

LocationCincinnati, OH

Skills

  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • CompTIA Security+unmatched
  • Computer Securityunmatched
  • Continuous Improvementunmatched
  • Enterprise Protectionunmatched
  • Event Managementunmatched
  • GCIH - GIAC Certified Incident Handlerunmatched
  • Incident Responseunmatched
  • Information/Data Security (InfoSec)unmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Organizational Skillsunmatched
  • Problem Solving Skillsunmatched
  • Record Keepingunmatched
  • Regulationsunmatched
  • Riskunmatched
  • Risk Managementunmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Support Documentationunmatched
  • Technical Operationsunmatched
  • Time Managementunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder