Position Summary: As a Senior Consultant at Deloitte Consulting, you will support end-to-end vulnerability management engagements, assisting in the identification, assessment, prioritization, and remediation tracking of security vulnerabilities across client environments. You will work alongside senior practitioners and cross-functional teams to deliver high-quality outcomes, leveraging both traditional VM tooling and emerging Anthropic / Agentic AI capabilities to accelerate threat detection and response.
Work you'll do: Lead vulnerability assessment engagements across on-premises, cloud, and hybrid environments, managing the lifecycle from policy design through remediation verification. Serve as a primary client contact, align strategies to business risk priorities and regulatory requirements, and produce risk-based dashboards. Design and implement Anthropic Claude-powered automation workflows for vulnerability ingestion, triage, prioritization, and remediation guidance. Integrate VM platforms with SIEM, CSPM, and ITSM systems to automate workflows. Define operating procedures, SLAs, and quality metrics; mentor junior members; and coordinate remediation tracking.
The Team: Cyber Operate teams manage clients' critical cyber assets via fully managed services or partnerships, delivering skilled talent, cutting-edge technologies, and robust processes. Services include Cyber-as-a-Service, Managed Application Security, and MXDR.
Location & Shift: Bengaluru / Hyderabad / Pune / Chennai. Shift Timings: 2:00 PM to 11:00 PM IST, with flexibility required based on client expectations, engagement demands, time zone coverage, on-call support, and after-hours operational needs.
Qualifications Required: 5-10 years in cybersecurity, including 4+ years in vulnerability management. Proficiency with platforms like RiskSense, ServiceNow VR, Tenable, Qualys, Rapid7, Microsoft Defender VM, or Prisma Cloud. Experience integrating Anthropic Claude APIs into security workflows (prompt engineering, function calling, tool use). Knowledge of risk scoring frameworks (CVSS v3/v4, EPSS, CISA KEV). Scripting API integrations, data pipelines, and automation. Familiarity with SIEM, CSPM, container/Kubernetes scanning, and SOAR.
Preferred Qualifications: Experience building RAG pipelines using Claude against vulnerability knowledge bases. AI/ML-based anomaly detection for predictive risk scoring. Certifications such as CISSP, CISM, Tenable CSP, Qualys Specialist, or AWS/Azure Security Specialty. Experience with attack surface management platforms like Mandiant ASM or CrowdStrike Falcon Surface.