Haystack
← Back to Jobs
Technology
SO

Cyber Security Engineer - CTEM

SOFT Inc.United States🇺🇸United StatesPosted Sep 16, 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
United States
Posted
22 hours ago

Job Description

SOFT's client located in Remotely is looking for a Cyber Security Engineer - CTEM for a long term contract assignment.

Qualifications:
Strong understanding of attack surface management, vulnerability management, cloud security, identity security, and network fundamentals.
Experience with CTEM aligned workflows or continuous risk reduction programs.
Ability to interpret complex exposure data and translate it into actionable insights.
Hands on experience with exposure, vulnerability, or ASM tooling (ASM, CSPM, CIEM, VM scanners, EASM, attack path analysis tools).
Knowledge of threat modeling, attacker techniques, and modern exploitation trends.
Strong communication skills for interacting with technical and non technical stakeholders

Responsibilities:
Initial Integrations, Solution Delivery, and Coordination
Lead technical onboarding and configuration of the new exposure management platform.
Coordinate data source integrations (cloud, identity, infrastructure, vulnerability scanners, etc.).
Validate ingestion accuracy, asset correlation, and exposure signal quality across environments.
Partner with engineering, cloud, IAM, and application teams to ensure successful rollout and operational readiness.
Assist in defining workflows, reporting structures, and remediation processes that align with CTEM cycles.
Document integration steps, system behavior, and operational procedures to support long term program maturity.

Attack Surface & Asset Visibility
Discover, map, and inventory external and internal attack surfaces across cloud, network, application, and SaaS environments.
Identify unknown, shadow, misconfigured, or abandoned assets contributing to organizational exposure.
Monitor asset changes and ensure continuous visibility into evolving environments.

Validation & Prioritization
Prioritize remediation based on active threats, exploitability, data sensitivity, operational criticality, and compensating controls.
Align validation and prioritization activities with CTEM cycle objectives.
Remediation Support & Tracking
Partner with application, infrastructure, cloud, identity, and asset discovery teams to guide remediation plans.
Track remediation progress and verify full resolution of exposures.
Identify systemic or recurring issues and recommend long term improvements.

Program Enablement & Governance
Contribute to scoping CTEM cycles and defining focus areas (cloud posture, identity exposures, internet facing risks, etc.).
Maintain standards, processes, and documentation for exposure management activities.
Provide clear metrics and reporting to leadership on exposure trends, risk posture changes, and remediation performance.
Support integration of exposure management activities into broader security architecture and operations.
Partner with IAM teams to analyze privilege misuse, identity sprawl, and authentication weaknesses.

Please refer to the Position ID when inquiring about a job posting or sending in your resume.

***INDEPENDENT CONSULTANTS ONLY! NO THIRD PARTIES/NO SUB CONTRACTORS***

Similar jobs