Deloitte

Senior Manager - ASM Vulnerability Management

Deloitte$120K — $150K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of experience in information technology or information security
  • Experience leading vulnerability management and patch management programs
  • Proficient in remediating vulnerabilities across various systems such as Linux and Windows
  • Skilled in automating workflows using PowerShell, Python, or similar tools
  • Knowledgeable in using ITSM platforms like ServiceNow for reporting and coordination
  • Willingness to travel up to 50% for client engagements
  • Authorization to work in the U.S. without employer sponsorship required

Responsibilities

  • Lead teams to deliver exposure-based remediation programs
  • Oversee end-to-end vulnerability and patch management operations
  • Coordinate remediation efforts using threat intelligence and asset criticality
  • Guide clients in exception management and emergency response
  • Develop client deliverables and support proposal efforts

Benefits

  • Opportunity to work with leading organizations in cybersecurity
  • Collaborative work environment with experienced cyber practitioners
  • Potential for professional development and mentorship opportunities
  • Involvement in high-impact client engagements
  • Contribution to innovative cyber defense solutions
Full Job Description
CTEM Vulnerability Mgmt Senior Manager

Are you an experienced cybersecurity professional looking to take on complex challenges, expand your leadership impact, and help shape the future of cyber defense? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface and overall cyber risk. In this role, you'll support high-impact client environments, collaborate with experienced cyber practitioners, and deliver solutions aligned to business and security priorities.

Recruiting for this role ends on 06/30/2026

Work you'll do

As an Associate Vice President, Engineering Management on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for:
  • Leading teams delivering exposure-based remediation and patching programs aligned to CTEM priorities
  • Overseeing end-to-end vulnerability and patch management operations, including deployment, maintenance, and reporting across technologies and lifecycle phases
  • Prioritizing and coordinating remediation using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
  • Guiding clients through exception management, emergency response, and process improvements that reduce risk and enhance threat visibility
  • Developing client deliverables, supporting proposals and points of view, and mentoring junior practitioners while driving quality delivery
A successful candidate would possess these skills:
  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others
The team

At Deloitte, our Cyber Specialists help organizations manage cyber risk and drive business value through stronger security, greater visibility, and embedded privacy. By combining program design, implementation, operations, and incident response capabilities with industry knowledge, we help clients protect critical assets, support secure digital transformation, and respond to an evolving threat landscape.

Qualifications

Required:
  • 10+ years of experience in information technology, information security, or both
  • Experience leading vulnerability management, patch management, or continuous threat exposure management (CTEM) remediation programs from strategy through execution
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager (MECM), Red Hat Satellite, Windows Server Update Services (WSUS), Tenable, Rapid7, or Qualys
  • Experience automating remediation workflows using PowerShell, Bash, Python, JSON, Ansible, Terraform, or a combination of these
  • Experience using Information Technology Service Management (ITSM) or configuration management database (CMDB) platforms such as ServiceNow to coordinate remediation and report exposure reduction
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment or with a Big 4 firm
  • Experience with ServiceNow workflows, automation, or orchestration
  • Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), Center for Internet Security (CIS), International Organization for Standardization 27001 (ISO 27001), or Cloud Security Alliance Cloud Controls Matrix (CSA CCM)
  • Experience supporting proposals, statements of work, or work orders
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.

Recruiting tips

From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.

As used in this posting, "Deloitte" means Deloitte & Touche LLP, a subsidiary of Deloitte LLP. Please see www.deloitte.com/us/about for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. Certain services may not be available to attest clients under the rules and regulations of public accounting.

Requisition code: 350691

Job ID 350691

About Deloitte

Deloitte is a multinational professional services network that provides audit, tax, consulting, enterprise risk and financial advisory services. The company was founded in London in 1845 and has since grown to become one of the largest professional services firms in the world. Deloitte has over 330,000 employees in more than 150 countries and territories. The company's mission is to help clients achieve their goals and make an impact that matters in their businesses and communities.
Learn more about Deloitte
Size
330,000 employees
Industry
Founded
1999

Similar Jobs

More Jobs at Deloitte

More Information Technology Jobs

Find similar Senior Manager - ASM Vulnerability Management jobs: