Vulnerability Management Lead Job Vacancy in Asia
Vulnerability Management Lead
What Does a Vulnerability Management Lead Do?
Take charge of cyber resilience with this opportunity at Deloitte in Mumbai. As a Vulnerability Management Lead, you will be a key player in Deloitte\'s Fusion Managed Services team, helping global clients identify and manage IT vulnerabilities, rogue assets, and weak configurations in real time. This position is ideal for cybersecurity professionals who thrive in fast-paced, high-impact environments and want to shape proactive defense strategies for major enterprises.
Job Location: Mumbai, India
Industry: Information Technology and Services
Function: Cybersecurity and Risk Management
Salary: Negotiable
Gender: Any
Candidate Nationality: Any
Candidate Current Location: India
Application Deadline: April 20, 2025
What Are the Key Responsibilities?
- Oversee and guide the delivery of vulnerability management projects in client environments
- Execute and configure vulnerability scans across internal and external networks
- Analyze, enrich, and prioritize remediation activities for identified vulnerabilities
- Respond to ad-hoc reporting and client requests on cybersecurity incidents and remediation progress
- Manage cyber situational awareness reporting and assist in crafting comprehensive threat dashboards
- Identify and track rogue IT assets, shadow IT, and security misconfigurations
- Match assets with vulnerabilities using data from CVE/CVSS databases and security bulletins
- Collaborate closely with clients and internal teams to ensure service-level compliance and remediation handoffs
- Adhere to Deloitte’s operational security policies and global compliance standards
What Are the Requirements for a Cybersecurity Lead Role in Mumbai?
Education:
- Bachelor’s degree or higher in Information Security, Computer Science, IT, Mathematics, or a related field
Experience:
- 5 to 7 years of experience in cybersecurity, including vulnerability management, application security, red teaming, or threat analysis
- Experience working in incident response, reverse engineering, or technical cyber investigations
Skills:
- Expertise in configuring and executing vulnerability assessments
- In-depth knowledge of networking devices (routers, switches) and protocols (TCP/IP, DNS, HTTP)
- Familiarity with vulnerability classification systems like CVE/CVSS
- Strong skills in security architecture and system security solutions
- Experience using tools like Qualys, Tenable, SCCM, ServiceNow, Jira, and Confluence
- Excellent written and verbal English communication skills
- Strong analytical, documentation, and prioritization skills
- Ability to lead security remediation activities based on real-time threat intelligence
Certifications (Required):
- CISSP, GIAC (Intrusion Analyst or GMON), CEH or equivalent certifications
Work Conditions:
- Must be open to rotational night shifts
- May require permanent night shifts depending on client/project demands
What Benefits Come with This Position?
- Exposure to cutting-edge security practices and international cyber threat landscapes
- Leadership role in a global team with potential for U.S. and international collaboration
- Access to ongoing technical and leadership development through Deloitte University
- Inclusive, innovative, and diverse work culture
- Competitive benefits including health, wellness, and professional growth support
About the Company
Deloitte is one of the world’s leading professional services firms, known for its commitment to innovation, inclusivity, and impact. Its Cyber Risk Advisory team supports Fortune 500 clients and governments in building secure, vigilant, and resilient digital operations. As part of this global network, you’ll have access to state-of-the-art tools, diverse talents, and career-defining projects that drive business transformation and cybersecurity leadership.