
| Location: | All Deloitte USI Locations |
| Openings: | 10 |
| Salary Range: |
Description:
Key Responsibilities (Vulnerability Response)
• Configure and administer ServiceNow Vulnerability Response: sources,
vulnerability items, state model, assignment, SLAs, notifications, and
remediation tasking.
• Integrate and maintain ingestion from vulnerability scanners/tools to
ServiceNow VR application (e.g., Qualys, Tenable, Rapid7) and validate data
mapping, schedules, and error handling.
• Drive normalization and data quality: CI/asset matching to
ServiceNow CMDB, deduplication rules, exception handling, lifecycle
management, and backlog hygiene.
• Build automations with Flow Designer/Integration Hub for routing,
enrichment, reminders/escalations, and remediation verification/closure.
• Partner with IT Ops/app owners to coordinate workflow alignments in
ServiceNow for patching/remediation, manage dependencies, and resolve
ownership gaps.
• Define and publish dashboards/KPIs (e.g., vuln aging, SLA compliance,
remediation throughput, critical exposure by service/BU) in ServiceNow.
• Support governance: audit-ready evidence, change/release management,
documentation/runbooks, and role-based access controls.
Optional Responsibilities (Security Incident Response)
• Support SIR intake/triage workflows and create linked tasks from
high-risk vulnerability situations (e.g., exploited CVEs) when needed.