Senior Manager - ASM Vulnerability Management

Deloitte T.T.L.
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Tech stack

Microsoft Windows
Bash
Cloud Computing
Cloud Computing Security
Configuration Management Databases
Computer Security
Information Systems
Linux
Middleware
Internet Security
JSON
Python
System Center Configuration Manager
Powershell
Red Hat Enterprise Linux - RHEL
Ansible
Software Vulnerability Management
Information Technology
Patch Management
Terraform
Cyber Warfare
Wsus
Qualys
ServiceNow

Job description

Are you an experienced cybersecurity professional looking to take on complex challenges, expand your leadership impact, and help shape the future of cyber defense? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface and overall cyber risk. In this role, you'll support high-impact client environments, collaborate with experienced cyber practitioners, and deliver solutions aligned to business and security priorities.

Recruiting for this role ends on 06/30/2026

Work you'll do

As an Associate Vice President, Engineering Management on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for:

  • Leading teams delivering exposure-based remediation and patching programs aligned to CTEM priorities
  • Overseeing end-to-end vulnerability and patch management operations, including deployment, maintenance, and reporting across technologies and lifecycle phases
  • Prioritizing and coordinating remediation using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
  • Guiding clients through exception management, emergency response, and process improvements that reduce risk and enhance threat visibility
  • Developing client deliverables, supporting proposals and points of view, and mentoring junior practitioners while driving quality delivery

Requirements

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others, * 10+ years of experience in information technology, information security, or both
  • Experience leading vulnerability management, patch management, or continuous threat exposure management (CTEM) remediation programs from strategy through execution
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager (MECM), Red Hat Satellite, Windows Server Update Services (WSUS), Tenable, Rapid7, or Qualys
  • Experience automating remediation workflows using PowerShell, Bash, Python, JSON, Ansible, Terraform, or a combination of these
  • Experience using Information Technology Service Management (ITSM) or configuration management database (CMDB) platforms such as ServiceNow to coordinate remediation and report exposure reduction
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future., * Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment or with a Big 4 firm
  • Experience with ServiceNow workflows, automation, or orchestration
  • Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), Center for Internet Security (CIS), International Organization for Standardization 27001 (ISO 27001), or Cloud Security Alliance Cloud Controls Matrix (CSA CCM)
  • Experience supporting proposals, statements of work, or work orders

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.

Apply for this position