Deloitte

Manager - ASM Vulnerability Management FDE

Deloitte$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in IT, information security, or vulnerability management.
  • 7+ years managing client-facing patching and remediation projects.
  • 7+ years overseeing patching across varied platforms using tools like BigFix or Qualys.
  • 3+ years of experience with automation tools like PowerShell, Ansible, or Terraform.
  • 3+ years using ITSM platforms like ServiceNow for remediation governance.
  • Must be able to travel 50% and legally authorized to work in the US.

Responsibilities

  • Lead engineering workstreams for large-scale patching and vulnerability remediation.
  • Direct remediation prioritization based on vulnerability and threat intelligence analysis.
  • Oversee governance, exception management, and reporting throughout various applications.
  • Drive process improvements to enhance remediation speed and visibility.
  • Manage client relationships and ensure quality delivery across teams.

Benefits

  • Access to ongoing professional development opportunities.
  • Opportunity to work in a dynamic and collaborative environment.
  • Engagement with cutting-edge projects in cybersecurity.
  • Potential to influence and shape cyber risk management strategies.
Full Job Description
Help clients reduce cyber risk by leading forward deployed engineering work focused on patching, remediation, and continuous exposure reduction. As part of Deloitte's Cyber Defense & Resilience team, you'll work closely with client stakeholders to drive patch governance, remediation execution, and operational improvement across enterprise environments. In this role, you'll lead teams, manage delivery, and help clients translate vulnerability data into sustained risk-reduction outcomes.

Recruiting for this role ends on 06/30/2026.

Work you'll do

As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...
  • Leading forward deployed engineering workstreams that support large-scale patching and vulnerability remediation across client environments
  • Directing remediation prioritization using vulnerability findings, exploitability, asset criticality, attack path data, and threat intelligence
  • Overseeing patch execution governance, exception management, reporting, and validation across infrastructure, middleware, endpoints, and applications
  • Driving automation and process improvements that increase remediation speed, consistency, and visibility
  • Managing client relationships, delivery quality, team mentoring, and day-to-day coordination across technical and business stakeholders
A successful candidate would possess these skills:
  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others
The team

Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, forward deployed engineers and managers work side by side with client teams to strengthen patching operations, improve remediation governance, and reduce exposure across complex enterprise ecosystems.

Qualifications

Required:
  • 10+ years of experience in information technology, information security, vulnerability management, patch management, or a combination of these
  • 7+ years of experience leading client-facing patching, remediation, vulnerability management, or forward deployed engineering workstreams in enterprise environments
  • 7+ years of experience overseeing patching or remediation across Windows, Linux, middleware, endpoints, or applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
  • 3+ years of experience using PowerShell, Bash, Python, Ansible, Terraform, or JavaScript Object Notation to support automation, orchestration, or operational improvement
  • 3+ years of experience using ServiceNow or another Information Technology Service Management platform to manage remediation governance, reporting, exceptions, and status tracking
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, Mathematics, or Physics
  • Experience in a consulting environment
  • Experience leading teams that support patch execution, remediation operations, or exposure management programs
  • Experience presenting remediation strategy, delivery status, or exposure reduction metrics to leadership stakeholders
  • Experience with the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

About Deloitte

Deloitte is a multinational professional services network that provides audit, tax, consulting, enterprise risk and financial advisory services. The company was founded in London in 1845 and has since grown to become one of the largest professional services firms in the world. Deloitte has over 330,000 employees in more than 150 countries and territories. The company's mission is to help clients achieve their goals and make an impact that matters in their businesses and communities.
Learn more about Deloitte
Size
330,000 employees
Industry
Founded
1999

Similar Jobs

More Jobs at Deloitte

More Information Technology Jobs

Find similar Manager - ASM Vulnerability Management FDE jobs: