Cardinal Health logo

Purple Team Engineer Risk & Exposure Management

Cardinal Health

RemoteFull timeMid levelPosted today
Apply with JobAssist

About the role

Company Overview:

Headquartered in Dublin, Ohio, Cardinal Health, Inc. (NYSE: CAH) is a global, integrated healthcare services and products company connecting patients, providers, payers, pharmacists and manufacturers for integrated care coordination and better patient management. Backed by nearly 100 years of experience, with more than 48,000 employees in nearly 60 countries, Cardinal Health ranks among the top 20 on the Fortune 500 , America's Most Innovative Companies #51, Fortune Sector Leaders: Health Care #5 with a $223 billion. of revenue in FY25

About Cardinal Health International India (CHII):

Cardinal Health International India (CHII) is part of the Cardinal Heath Global Technology and Business Services (GTBS) team. CHII leverages technology to offer scalable and healthcare solutions to enhance efficiency and improve quality of care across the value chain. Our vision is to build a world class capability center that is an intersection of tech-innovation and learning, empowering our people to build solutions which will solve healthcares most complex challenges.

Department Overview

The Purple Team Engineer Risk & Exposure Management focuses on prioritizing, quantifying, and managing cyber risk by correlating threat intelligence, vulnerability data, attack paths, and business impact. This role ensures the organization focuses remediation and defense efforts on the risks that matter most, not just individual findings.

The engineer acts as a bridge between technical security teams and risk leadership, translating adversary behavior into measurable business exposure.

Key Responsibilities

Analyze and correlate data from:

  • Vulnerability management platforms
  • Red team and purple team exercises
  • Threat intelligence and exploit trends
  • Attack surface management tools
  • Identify and prioritize real-world exploitable risks rather than theoretical vulnerabilities Model attack paths and exposure scenarios across:
  • Identity
  • Cloud environments
  • Network and endpoint assets
  • Partner with Red and Blue teams to:
  • Assess likelihood and impact of attack techniques
  • Align technical findings to enterprise risk tolerance
  • Support risk scoring and reporting frameworks (e.g., CVSS + exploitability + business context)

Communicate risk posture to:

  • Security leadership
  • GRC and compliance teams
  • Engineering and infrastructure owners
  • Track remediation progress and residual risk
  • Influence security investments based on risk reduction outcomes

Required Qualifications

5 to 8+ years of experience in security operations, threat modeling, or risk management

Strong understanding of:

Adversary tradecraft (MITRE ATT&CK)

Vulnerability management and exploit lifecycles

Security control impact on risk reduction

Experience translating technical security findings into business risk

Strong analytical and communication skills

Preferred Qualifications

Experience with:

  • Attack surface management or breach and attack simulation tools
  • Risk quantification models (FAIR or similar)
  • Cloud risk management (AWS, Azure, GCP)
  • Background in purple teaming, red teaming, or detection engineering
  • Certifications such as CISSP, CRISC, GCIH, or threat-focused credentials

Why Join Cardinal Health?

  • Work for a Fortune 20 healthcare leader impacting millions of lives.
  • Be part of a rapidly growing cybersecurity organization.
  • Solve meaningful security challenges at global enterprise scale.
  • Learn from experienced security leaders and technical experts.
  • Access continuous learning, mentorship, and career development opportunities.
  • Thrive in a collaborative, supportive, and innovation-driven culture.

Join us in securing the future of healthcare while building a rewarding and impactful career.

Millions of jobs, with real people getting hired every day

20,000+
New jobs added daily
7,000,000+
Verified job listings
500,000+
Tailored applications submitted
FAQ

Questions, answered

Click "Apply with JobAssist" – we tailor your resume and application to this role and submit it for your approval.

Yes. This role at Cardinal Health was screened before publishing – we confirmed the employer before listing it.

The employer didn't disclose a salary range for this listing. JobAssist shows pay whenever it's available.

This position can be done from anywhere, with no in-office requirement.

Yes – every application is tailored from your profile and this job's requirements, and you can review and edit before it's sent.