JOBSEARCHER

Consultant - ASM Vulnerability Management

Help organizations reduce cyber risk and improve resilience as part of Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team. In this role, you'll support clients in identifying, prioritizing, and remediating security exposures across complex technology environments. You'll work with cross-functional stakeholders to strengthen vulnerability management and patching processes, improve visibility into risk, and support cyber transformation initiatives.Recruiting for this role ends on 06/30/2026.Work you'll doAs a Security Engineer II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...Supporting vulnerability remediation and patching activities aligned to CTEM prioritiesExecuting vulnerability and patch management tasks across infrastructure, middleware, and applicationsAnalyzing exposure data, asset criticality, exploitability, and attack paths to help prioritize remediation activitiesAssisting with exception management, reporting, and process improvement efforts that reduce cyber riskPreparing client-facing analyses, dashboards, and status updates to track remediation progress and exposure reductionA successful candidate would possess these skills:Ability to work independently and collaborate as part of a teamEffective written and verbal communication skillsMeticulous attention to detail and quality of work productAbility to build and sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage and prioritize multiple tasks in a fast-paced and dynamic environmentStrong interpersonal skills and professional demeanorAbility to meet deadlinesAbility to provide clear guidance to othersThe teamDeloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.QualificationsRequired:3+ years of experience in information technology, information security, vulnerability management, patch management, or a combination of theseExperience supporting vulnerability remediation, patch management, or continuous threat exposure management activitiesExperience remediating vulnerabilities across Linux, Windows, middleware, and applicationsExperience using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or QualysExperience using PowerShell, Bash, Python, Ansible, Terraform, or JavaScript Object Notation for automation, scripting, or configuration activitiesExperience using ServiceNow or another Information Technology Service Management platform to coordinate remediation activities and track statusAbility to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.Preferred:Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related fieldExperience in a consulting environmentExperience preparing remediation metrics, dashboards, or status reportingExperience with security or risk frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls MatrixExperience supporting automation or orchestration of remediation workflowsThe wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is XXXYou may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.