CTEM Vulnerability Mgmt Senior Manager
Are you an experienced cybersecurity professional looking to take on complex challenges, expand your leadership impact, and help shape the future of cyber defense? At Deloitte & Touche LLP, you’ll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte’s Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface and overall cyber risk. In this role, you’ll support high-impact client environments, collaborate with experienced cyber practitioners, and deliver solutions aligned to business and security priorities.
Recruiting for this role ends on 06/30/2026
Work you'll do
As an Associate Vice President, Engineering Management on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for:
- Leading teams delivering exposure-based remediation and patching programs aligned to CTEM priorities
- Overseeing end-to-end vulnerability and patch management operations, including deployment, maintenance, and reporting across technologies and lifecycle phases
- Prioritizing and coordinating remediation using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
- Guiding clients through exception management, emergency response, and process improvements that reduce risk and enhance threat visibility
- Developing client deliverables, supporting proposals and points of view, and mentoring junior practitioners while driving quality delivery
A successful candidate would possess these skills:
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to mentor and provide clear guidance to others
The team
At Deloitte, our Cyber Specialists help organizations manage cyber risk and drive business value through stronger security, greater visibility, and embedded privacy. By combining program design, implementation, operations, and incident response capabilities with industry knowledge, we help clients protect critical assets, support secure digital transformation, and respond to an evolving threat landscape.
Qualifications
Required:
- 10+ years of experience in information technology, information security, or both
- Experience leading vulnerability management, patch management, or continuous threat exposure management (CTEM) remediation programs from strategy through execution
- Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager (MECM), Red Hat Satellite, Windows Server Update Services (WSUS), Tenable, Rapid7, or Qualys
- Experience automating remediation workflows using PowerShell, Bash, Python, JSON, Ansible, Terraform, or a combination of these
- Experience using Information Technology Service Management (ITSM) or configuration management database (CMDB) platforms such as ServiceNow to coordinate remediation and report exposure reduction
- Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
Preferred:
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
- Experience in a consulting environment or with a Big 4 firm
- Experience with ServiceNow workflows, automation, or orchestration
- Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF), Center for Internet Security (CIS), International Organization for Standardization 27001 (ISO 27001), or Cloud Security Alliance Cloud Controls Matrix (CSA CCM)
- Experience supporting proposals, statements of work, or work orders
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas, and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.
From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.