Description review

Lead Engineer, Vulnerability & Exposure Management

Danaher · Brazil · back to the listing

HR standards

62/100

needs work

Title ↔ description

88/100

strong

Reads as

Security Engineer

100% confident

What this role officially is

ICT security administrator — ESCO, the EU occupation classification

ICT security administrators plan and carry out security measures to protect information and data from unauthorised access, deliberate attack, theft and corruption.

Also known as: network security administrator, system security administrator, ICT security administrators, IT security administrator

How others title the same work

Large employers

  • Security Risk Management Specialist Canonical Ltd.
  • Security Software Engineer Canonical Ltd.
  • Senior Security Operations Engineer Canonical Ltd.
  • Staff Security Operations Engineer Canonical Ltd.
  • Ubuntu Security Engineer Canonical Ltd.

Startups

  • Security Engineer (Bangalore, India) AiPrise
  • Security & Trust Engineer Alex
  • Elucid | Senior Security Engineer | Boston, MA | ONSITE (hybrid) | $130k–$170k Elucid
  • Factory | Security Engineer | ONSITE, San Francisco, CA | Full-Time Factory
  • Factory | Security Engineer | Onsite in San Francisco | Full-time Factory

What the listing never says

  • No pay range published. Candidates cannot tell whether applying is worth their time. Pay transparency

The listing, marked up

Nothing in the wording of this listing tripped a check. The scores above still judge how complete and coherent it is.

Bring more to life.

At Danaher, our work saves lives. And each of us plays a part. Fueled by our culture of continuous improvement, we turn ideas into impact – innovating at the speed of life.

Our 60,000+ associates work across the globe at more than 15 unique businesses within life sciences, diagnostics, and biotechnology.

Are you ready to accelerate your potential and make a real difference? At Danaher, you can build an incredible career at a leading science and technology company, where we’re committed to hiring and developing from within. You’ll thrive in a culture of belonging where you and your unique viewpoint matter.

Learn about the Danaher Business System which makes everything possible.

At Danaher, the Lead Engineer, Vulnerability & Exposure Management engineers the scanning, ingestion, normalization, prioritization, ticketing, reporting, and automation workflows for vulnerability and exposure data. Program strategy and prioritization framework are set by leadership and the Global Lead, VEM; the Lead Engineer owns the engineering implementation and works independently to build it, integrating with cloud, endpoint, app, and remediation teams that each own their own systems.

This position reports to the Senior Manager, Exposure Management (CTEM) and is part of the Danaher Information Securitylocated in Brazil and will be a remote role.

In this role, you will have the opportunity to:

• Engineer scan coverage, data ingestion/normalization, prioritization logic, ticketing, and reporting pipelines.

• Build automation (Python/SQL/APIs) for prioritization, SLA logic,exceptionprocesses, and validation.

• Contribute to the CTEMoperating-modeldesign owned by the Global Lead; implementand refine it.

• Support the sustainability model: pipeline runbooks, data-quality checks, and service-ownership mapping.

The essential requirements of the job include:

• CrowdStrikeCCFA, Tenable VM Specialist, Qualys VMDR, GIAC GSEC/GMON, ora cloudsecurity certification.

• 5+ years of experience in vulnerability management or security engineering

• Hands-on experience engineering vulnerability/exposure tooling (such as Tenable, Qualys, Rapid7, CrowdStrike FEM, or Defender), including scan coverage, authenticated scanning, and data normalization.

• Experience building automation and integrations (such as Python, SQL, and REST APIs) across vulnerability, ticketing (e.g., ServiceNow/Jira), and cloud or endpoint data sources.

• Experience applying risk-based prioritization beyond CVSS using threat intelligence such as EPSS and CISA KEV and asset context.

It would be a plus if you alsopossesspreviousexperience in:

• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field.

• Experience with attack surface management, cloud posture, or container/Kubernetes exposure.

• Experience with patch/remediation orchestration tooling (such as BigFix, SCCM/MECM, or Red Hat Satellite).

Join our winning team today. Together, we’ll accelerate the real-life impact of tomorrow’s science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.

For more information, visit .

Originally posted on Himalayas

How this was produced

Highlights are found by rule, not by a model: each one is a phrase matched at a known position, and every note is a template we wrote. The two scores come from a typed-decision model (Jev) that reads the listing against the official role definition and real listings for the same role, and returns probabilities rather than prose — it never writes any of the words on this page, and never chooses what to highlight.

Deterministic penalty applied to the HR score: 4 points (from 66 before penalties). Reviewed 21 Sep 2026.