Continuous Threat Exposure Management (ctem) Senior Consultant

This role focuses on Continuous Threat Exposure Management (CTEM) within cybersecurity, involving vulnerability and patch management, automation, and client relationship building. While it requires foundational knowledge of AI/LLM concepts for security considerations, the core responsibilities are in cybersecurity operations and risk reduction, not AI/ML model development or deployment.

What you'd actually do

  1. Execute exposure-based patching and automation aligned to CTEM priorities
  2. Build trusted client relationships through high-quality delivery
  3. Deploy and maintain vulnerability and patch management tools
  4. Support end-to-end patching operations
  5. Coordinate patching activities across technologies, teams and lifecycle phases

Skills

Required

  • 5+ years of experience in information technology and/or information security
  • Experience working with service delivery teams across multiple geographic regions
  • Ability to analyze vulnerability and exposure data to determine patching priorities
  • Hands-on experience remediating vulnerabilities across operating systems, middleware, and applications
  • Ability to execute day-to-day patch deployment based on CTEM-driven prioritization
  • Experience supporting patch automation using Ansible playbooks and scripting
  • Ability to validate patch deployment through rescans, testing, and system health checks
  • Experience troubleshooting failed deployments and resolving patching issues
  • Ability to support emergency patching for critical vulnerabilities and zero-day events
  • Experience documenting patch procedures, runbooks, and exception processes
  • Ability to coordinate patch windows and remediation activities with asset owners and stakeholders
  • Experience contributing to exposure reduction metrics and reporting
  • Hands-on experience with patch management tools such as BigFix, SCCM/MECM, Red Hat Satellite, and WSUS
  • Familiarity with vulnerability management tools such as Tenable, Rapid7, and Qualys
  • Proficiency in PowerShell, Bash, Python, and JSON, including automation scripting
  • Experience with automation tools such as Ansible and Terraform
  • Foundational knowledge of AI and LLM concepts, including common use cases, risks, and security considerations
  • Understanding of CVSS, exploitability, and exposure context
  • Experience with both Linux and Windows patching
  • Working knowledge of ITSM and CMDB platforms such as ServiceNow
  • Strong client-facing, consulting, collaboration, and communication skills
  • Ability to work independently and exercise sound professional judgment
  • Strong problem-solving and troubleshooting skills
  • Experience supporting client proposals and work orders
  • Demonstrated ability to plan, design, deploy, operationalize, and lead scalable vulnerability and patch management initiatives

What the JD emphasized

  • 5+ years of experience in information technology and/or information security
  • Hands-on experience remediating vulnerabilities across operating systems, middleware, and applications
  • Ability to execute day-to-day patch deployment based on CTEM-driven prioritization
  • Experience supporting patch automation using Ansible playbooks and scripting
  • Ability to validate patch deployment through rescans, testing, and system health checks
  • Experience troubleshooting failed deployments and resolving patching issues
  • Experience documenting patch procedures, runbooks, and exception processes
  • Ability to coordinate patch windows and remediation activities with asset owners and stakeholders
  • Experience contributing to exposure reduction metrics and reporting
  • Hands-on experience with patch management tools such as BigFix, SCCM/MECM, Red Hat Satellite, and WSUS
  • Familiarity with vulnerability management tools such as Tenable, Rapid7, and Qualys
  • Proficiency in PowerShell, Bash, Python, and JSON, including automation scripting
  • Experience with automation tools such as Ansible and Terraform
  • Foundational knowledge of AI and LLM concepts, including common use cases, risks, and security considerations
  • Understanding of CVSS, exploitability, and exposure context
  • Experience with both Linux and Windows patching
  • Working knowledge of ITSM and CMDB platforms such as ServiceNow
  • Strong client-facing, consulting, collaboration, and communication skills
  • Ability to work independently and exercise sound professional judgment
  • Strong problem-solving and troubleshooting skills
  • Experience supporting client proposals and work orders
  • Demonstrated ability to plan, design, deploy, operationalize, and lead scalable vulnerability and patch management initiatives