What are the responsibilities and job description for the Senior Consultant - Engineering Management position at Deloitte?
ASM - Vulnarability Management Program
Are you an experienced cybersecurity professional looking to take on complex challenges, expand your impact, and help clients reduce cyber risk? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface and overall cyber risk. In this role, you'll support high-impact client environments, collaborate with experienced cyber practitioners, and deliver solutions aligned to business and security priorities.
Recruiting for this role ends on 06/30/2026
Work you'll do
As a Senior Engineering Management Specialist on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for:
At Deloitte, our Cyber Specialists help organizations manage cyber risk and drive business value through stronger security, greater visibility, and embedded privacy. By combining program design, implementation, operations, and incident response capabilities with industry knowledge, we help clients protect critical assets, support secure digital transformation, and respond to an evolving threat landscape.
Qualifications
Required:
Are you an experienced cybersecurity professional looking to take on complex challenges, expand your impact, and help clients reduce cyber risk? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface and overall cyber risk. In this role, you'll support high-impact client environments, collaborate with experienced cyber practitioners, and deliver solutions aligned to business and security priorities.
Recruiting for this role ends on 06/30/2026
Work you'll do
As a Senior Engineering Management Specialist on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for:
- Supporting exposure-based remediation and patching programs aligned to CTEM priorities
- Managing day-to-day vulnerability and patch management activities across infrastructure, middleware, and applications
- Analyzing vulnerability data, exploitability, attack paths, asset criticality, and exposure trends to help prioritize remediation
- Coordinating with client stakeholders and technical teams to track remediation, exception handling, emergency patching, and reporting
- Preparing client deliverables, documenting processes, and contributing to quality execution across engagements
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
At Deloitte, our Cyber Specialists help organizations manage cyber risk and drive business value through stronger security, greater visibility, and embedded privacy. By combining program design, implementation, operations, and incident response capabilities with industry knowledge, we help clients protect critical assets, support secure digital transformation, and respond to an evolving threat landscape.
Qualifications
Required:
- 5 years of experience in information technology, information security, or both
- Experience supporting vulnerability management, patch management, or continuous threat exposure management (CTEM) remediation programs
- Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager (MECM), Red Hat Satellite, Windows Server Update Services (WSUS), Tenable, Rapid7, or Qualys
- Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation (JSON), Ansible, Terraform, or a combination of these
- Experience using Information Technology Service Management (ITSM) or configuration management database (CMDB) platforms such as ServiceNow
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a field aligned to the role
- Experience in a consulting environment or with a Big 4 firm
- Experience with ServiceNow workflows, automation, or orchestration
- Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), Center for Internet Security (CIS), International Organization for Standardization 27001 (ISO 27001), or Cloud Security Alliance Cloud Controls Matrix (CSA CCM)
- Experience preparing status reporting, dashboards, or remediation metrics for stakeholders