> Markdown version of [/jobs/ext/1489183-security-engineer-ii](https://www.wearedevelopers.com/jobs/ext/1489183-security-engineer-ii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer II - **Company:** Deloitte T.T.L. - **Location:** United States - **Experience:** Experienced - **Salary:** $82,600.0 - $162,800.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Cyber Security, Linux, Middleware, JSON, System Center Configuration Manager, Red Hat Enterprise Linux, Software Vulnerability Management, Scripting, Information Technology, Patch Management, Terraform, Cyber Warfare, Wsus, Qualys, Servicenow - **Published:** July 29, 2026 - **Apply:** https://apply.deloitte.com/en_US/careers/Login?jobId=352792 ## About the Role * Ability to work independently and collaborate as part of a team * Effective written and verbal communication skills * Meticulous attention to detail and quality of work product * Ability to build and sustain professional relationships * Ability to lead projects or workstreams * Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment * Strong interpersonal skills and professional demeanor * Ability to meet deadlines * Ability to provide clear guidance to others, Required: * 3+ years of experience in information technology, information security, vulnerability management, patch management, or a combination of these * Experience supporting vulnerability remediation, patch management, or continuous threat exposure management activities * Experience remediating vulnerabilities across Linux, Windows, middleware, and applications * Experience using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys * Experience using PowerShell, Bash, Python, Ansible, Terraform, or JavaScript Object Notation for automation, scripting, or configuration activities * Experience using ServiceNow or another Information Technology Service Management platform to coordinate remediation activities and track status * Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve. * Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future. Preferred: * Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field * Experience in a consulting environment * Experience preparing remediation metrics, dashboards, or status reporting * Experience with security or risk frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix * Experience supporting automation or orchestration of remediation workflows ## Description Help organizations reduce cyber risk and improve resilience as part of Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team. In this role, you'll support clients in identifying, prioritizing, and remediating security exposures across complex technology environments. You'll work with cross-functional stakeholders to strengthen vulnerability management and patching processes, improve visibility into risk, and support cyber transformation initiatives., As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for… * Supporting vulnerability remediation and patching activities aligned to CTEM priorities * Executing vulnerability and patch management tasks across infrastructure, middleware, and applications * Analyzing exposure data, asset criticality, exploitability, and attack paths to help prioritize remediation activities * Assisting with exception management, reporting, and process improvement efforts that reduce cyber risk * Preparing client-facing analyses, dashboards, and status updates to track remediation progress and exposure reduction ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Introducing JSON Structure](https://www.wearedevelopers.com/videos/100219-introducing-json-structure) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)