Manager - ASM Vulnerability Management - Patching

Deloitte T.T.L.
Los Angeles, CA, United States
19 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$134,500.0 - $265,100.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Bash Shell Cloud Computing Cloud Computing Security Configuration Management Databases Cyber Security Information Systems Linux Middleware Internet Security JSON Python (Programming Language)
+12 more
System Center Configuration Manager Windows PowerShell Red Hat Enterprise Linux Ansible Software Vulnerability Management Information Technology Patch Management Terraform Cyber Warfare Wsus Qualys Servicenow

Job description

As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for…

  • Managing exposure-based remediation and patching activities aligned to CTEM priorities
  • Leading vulnerability and patch management operations across infrastructure, middleware, and applications
  • Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
  • Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk
  • Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners

Requirements

Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you’ll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte’s Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you’ll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities., * Ability to work independently and collaborate as part of a team

  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others, Required:
  • 10+ years of experience in information technology, information security, or both
  • Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
  • Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these
  • Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment or with a Big 4 firm
  • Experience with ServiceNow workflows, automation, or orchestration
  • Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
  • Experience supporting proposals, statements of work, or work orders

Benefits & conditions

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

3:47 min

Exploring JSON, CBOR, and JOSE for data serialization

Aaron Russell · LIVE

2:55 min

Prioritizing system vulnerabilities and enhancing automated security posture

Raz Cohen · LIVE

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

2:03 min

Distinguishing type definition constructs from data validation routines

Clemens Vasters Clemens Vasters · WWC 2025

2:12 min

Preparing engineering organizations for rapid vulnerability response and remediation

Milin Desai Milin Desai +3 · WWC Europe 2026

Videos

See all

Related articles

See all