Deloitte

Consultant - ASM Vulnerability Management - Patching

Deloitte$82K — $162K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years in IT, info security, vulnerability management, or patch management
  • Experience in vulnerability remediation and continuous threat exposure management
  • Knowledge of vulnerability management across varied systems (Linux, Windows, etc.)
  • Familiarity with management tools like BigFix and Tenable
  • Scripting in languages such as PowerShell and Python
  • Experience with ITSM platforms like ServiceNow
  • Ability to travel 50% on average

Responsibilities

  • Support vulnerability remediation and patching aligned to priorities
  • Execute vulnerability and patch management across technology layers
  • Analyze risk exposure data to prioritize remediation
  • Assist with exception management and reporting efforts
  • Prepare client-facing analyses and updates on remediation progress

Benefits

  • Professional development opportunities including mentorship
  • Formal development programs to enhance skills
  • On-the-job learning experiences
  • Leadership opportunities for career growth
Full Job Description
Help organizations reduce cyber risk and improve resilience as part of Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team. In this role, you'll support clients in identifying, prioritizing, and remediating security exposures across complex technology environments. You'll work with cross-functional stakeholders to strengthen vulnerability management and patching processes, improve visibility into risk, and support cyber transformation initiatives.

Recruiting for this role ends on 06/30/2026.

Work you'll do

As a Security Engineer II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...
  • Supporting vulnerability remediation and patching activities aligned to CTEM priorities
  • Executing vulnerability and patch management tasks across infrastructure, middleware, and applications
  • Analyzing exposure data, asset criticality, exploitability, and attack paths to help prioritize remediation activities
  • Assisting with exception management, reporting, and process improvement efforts that reduce cyber risk
  • Preparing client-facing analyses, dashboards, and status updates to track remediation progress and exposure reduction
A successful candidate would possess these skills:
  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others
The team

Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.

Qualifications

Required:
  • 3+ years of experience in information technology, information security, vulnerability management, patch management, or a combination of these
  • Experience supporting vulnerability remediation, patch management, or continuous threat exposure management activities
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications
  • Experience using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
  • Experience using PowerShell, Bash, Python, Ansible, Terraform, or JavaScript Object Notation for automation, scripting, or configuration activities
  • Experience using ServiceNow or another Information Technology Service Management platform to coordinate remediation activities and track status
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment
  • Experience preparing remediation metrics, dashboards, or status reporting
  • Experience with security or risk frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
  • Experience supporting automation or orchestration of remediation workflows
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $82,600 to $162,800.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CDRCyber27

Recruiting tips

From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.

Professional development

From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.

As used in this posting, "Deloitte" means Deloitte & Touche LLP, a subsidiary of Deloitte LLP. Please see www.deloitte.com/us/about for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. Certain services may not be available to attest clients under the rules and regulations of public accounting.

Requisition code: 352792

Job ID 352792

About Deloitte

Deloitte is a multinational professional services network that provides audit, tax, consulting, enterprise risk and financial advisory services. The company was founded in London in 1845 and has since grown to become one of the largest professional services firms in the world. Deloitte has over 330,000 employees in more than 150 countries and territories. The company's mission is to help clients achieve their goals and make an impact that matters in their businesses and communities.
Learn more about Deloitte
Size
330,000 employees
Industry
Founded
1999

Similar Jobs

More Jobs at Deloitte

More Information Technology Jobs

Find similar Consultant - ASM Vulnerability Management - Patching jobs: