> Markdown version of [/jobs/ext/1427343-manager-asm-vulnerability-management-patching](https://www.wearedevelopers.com/jobs/ext/1427343-manager-asm-vulnerability-management-patching). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Manager - ASM Vulnerability Management - Patching - **Company:** Deloitte T.T.L. - **Location:** Philadelphia, PA, United States - **Experience:** Expert - **Salary:** $134,500.0 - $265,100.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Bash Shell, Cloud Computing, Cloud Computing Security, Configuration Management Databases, Cyber Security, Information Systems, Linux, Middleware, Internet Security, JSON, Python (Programming Language), System Center Configuration Manager, Windows PowerShell, Red Hat Enterprise Linux, Ansible, Software Vulnerability Management, Information Technology, Patch Management, Terraform, Cyber Warfare, Wsus, Qualys, Servicenow - **Published:** July 24, 2026 - **Apply:** https://dejobs.org/x/x/B3BEDCFF3F52495290DE14BE5E7D50EC/job/ ## About the Role Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you'll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities., * Ability to work independently and collaborate as part of a team * Effective written and verbal communication skills * Meticulous attention to detail and quality of work product * Ability to build and sustain professional relationships * Ability to lead projects or workstreams * Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment * Strong interpersonal skills and professional demeanor * Ability to meet deadlines * Ability to mentor and provide clear guidance to others, Required: * 10+ years of experience in information technology, information security, or both * Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs * Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys * Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these * Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction * Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve. * Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future. Preferred: * Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field * Experience in a consulting environment or with a Big 4 firm * Experience with ServiceNow workflows, automation, or orchestration * Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix * Experience supporting proposals, statements of work, or work orders ## Description As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for... * Managing exposure-based remediation and patching activities aligned to CTEM priorities * Leading vulnerability and patch management operations across infrastructure, middleware, and applications * Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data * Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk * Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Introducing JSON Structure](https://www.wearedevelopers.com/videos/100219-introducing-json-structure) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)