Cloud Security Architect - Senior Consultant
- Lead/provide technical guidance and solutioning for the delivery of Cloud Cyber Risk projects in a project manager and or architect role, overseeing the activities of onsite and offshore engineers and architects across 8 key cyber domains: Governance, Identity, Application Security, PaaS security, Infrastructure security, Security Monitoring, Resilience and Data protection
- Assist in business development activities such as defining scope of services, building resource estimates and related pricing, packaging proposals and supporting the delivery of the proposal to the client for AWS, GCP, Azure and/or Oracle Cloud services
- Function as key client point of contact interface building rapport and trust with the client
- Function as a technical specialist in CNAPP, CWPP and CSPM technologies and security risk frameworks relevant to cloud as well as the industry leading benchmarks
- Lead the generation of all project deliverables such as assessment reports, system designs/ architectures and risk/security recommendations
- Maintain strong domain knowledge of multi-hyperscaler cloud solutions and security concepts and technologies
- Assist clients with security frameworks, cloud configuration standards and resolving cloud vulnerabilities
- Lead the execution of cloud security engagements during different phases of the lifecycle - assess, design, and implementation.
- Lead engagements to perform technical health checks for cloud platforms/environments prior to broader deployments.
- Oversee technical support for AWS, GCP, Azure and/or Oracle cyber services and resolve service-related issues through research and troubleshooting and working with vendors.
- Conduct cloud security analysis, recommendations and configurations of prospective clients' platforms and environments based on Deloitte's Cloud Cyber Risk Framework.
- Perform technical health checks for these cloud platforms/environments prior to broader deployments including DevSecOps and CI/CD pipelines
- Experience with and leading use of leading cyber tooling for cloud such as Wiz and Snyk
- Support proof of concept and production deployments of these cloud technologies for AWS, GCP, Azure, Oracle, Wiz and/or Snyk
- Assist clients with transitions to using cloud services such as tenant setup and service configuration, focused on cloud cyber risk mitigation. Additional technologies include: MFA, SSO, Conditional Access, PIM, Security Operations tooling and scanning solutions.
- Assist clients with the deployment of third-party technologies to assist in securing the cloud platform such as firewall, WAF, PAM and cloud workload protection.
- Assist clients with configuration and delivery of cloud security and compliance reports.
- Provide technical support for AWS, Azure, GCP, Oracle, Wiz, Snyk and third-party security services and resolve service-related issues through research and troubleshooting and working with third-party vendors.
- Implementation of industry leading practices around Azure, AWS, GCP, Wiz, Snyk and cloud security services for clients.
- Designing and developing cloud-specific security policies, standards and procedures e.g., tenant, management group and subscription management and configuration, identify management and access control, firewall management, auditing and monitoring, security incident and event management , data protection (DLP, encryption), user and administrator account management, SSO, conditional access controls and password/key management.
- Troubleshooting system level problems in a multi-vendor, multi-protocol network environment.
- Documenting platform technical issues, analysis, client communication, and resolution as part of cyber risk mitigation steps.
- Executing on cloud security engagements during different phases of the lifecycle - assess, design, and implementation & post implementation reviews.
- Implementing industry leading practices around cyber risks and cloud security for clients.
- Provide internal cloud and devsecops security technical training to Advisory personnel as needed.
- Acting as a subject matter specialist on cloud cyber risk for the cloud platforms.
- Contribute to Point-of-Views (PoVs) on providing leading practices to our clients on the cyber challenges they face.
- Contribute to eminence activities, such as whitepapers pertaining to cloud security capabilities.
- BA/BS Degree ideally in Technical Field (ex. Computer Science, Cyber Security, Information Security, Engineering, Information Technology).
- 4+ years of experience in technical consulting, client problem solving, architecting and designing solutions in a consulting role with project leadership and/or architect experience in AWS, GCP, Azure, Oracle, Wiz and/or Snyk ; with a security focus strongly preferred
- 2+ years of hands-on technical experience designing and implementing security solutions for leading Cloud service providers across SPI models and environments (Public, Private, Hybrid)
- 2+ years working experience designing cloud security architectures and strategies for enterprises
- 2+ years working with Cloud security industry standards such as Cloud Security Alliance (CSA), ISO/IEC 27017 and NIST CSF
- 2+ years working experience with Cloud security technologies/vendors (e.g., IAM, SIEM, IDS) and/or providers (e.g., Okta, CipherCloud, AlertLogic), a big plus
- 1+ years working with Cloud orchestration and automation (Continuous Integration and Continuous Delivery (CI/CD)) in single and multi-tenant environments
- 2+ years working with CNAPP, CSPM or CWPP technologies or planning for large-scale deployments of these technologies
- Limited sponsorship opportunities may be available
- Ability to travel up to 80%, on average, based on the work you do and the clients and industries/sectors you serve
- Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle. Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.
- Previous Consulting or Big 4 experience preferred.
- Industry or Vendor Security Certifications such as CISSP or other cloud architect domains
- Experience with Virtualization including security for at least one or more of the following: Compute, Network, Storage, End-point, Application
- Experience designing IAM technologies and services
- Experience or strong working knowledge of managing enterprise security infrastructure and perimeter security appliances - e.g., firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM and log management technology
- Experience with Azure data, analytics, or AI/ML services (Azure SQL, HDInsight, Databricks, Data Factory, Data Lake Storage, Azure Analysis Services, Synapse Analytics, Azure Machine Learning, etc.)
- Understanding of industry security standards, guidelines and regulatory/compliance requirements related to information security and cloud computing such as ISO 27001, ISO 27018, NIST CSF, NIST 800-53, PCI DSS, SOC2, HIPAA, PCI, SOX, GLBA, etc.
Recommended Jobs
Technical Program Manager, PMO AI & Product Software (Contract)
The Program Management Office (PMO) at Zoox is at the center of the company's efforts, responsible for driving cross-functional program planning and execution at the highest level. We partner with le…
Barback
ESSENTIAL JOB FUNCTIONS: # Set up bar station with all items needed for shift including but not limited to: water, ice, silver, napkins, salt and pepper shakers, wiping towels, coffee, iced tea, ju…
Extended Care Program Monitor
Extended Care Program Monitor Our School The International School of San Francisco is a PK-12 independent school in San Francisco. Founded in 1962, the school is a multicultural, multilingual …
Packaging Assembler I
Job Responsibilities: Organize and verify packaging components. Perform instrument packaging in a safe & timely fashion per procedures or technical documents. Complete and maintain quality and …
Retail Associate, SEAS - Nike Santa Clarita (0-40 hours/week)
Become a Part of the NIKE, Inc. Team NIKE, Inc. does more than outfit the world’s best athletes. It is a place to explore potential, obliterate boundaries …
Flagger
About the Organization RoadSafe Traffic Systems is the largest national provider of traffic safety products and services in the United States. RoadSafe serves customers in all 48 contiguous states t…
Software Technical Program Manager
Waymo is an autonomous driving technology company with the mission to be the world's most trusted driver. Since its start as the Google Self-Driving Car Project in 2009, Waymo has focused on building…
Locum Family or Internal Medicine Physician - San Francisco, CA
Palm Health Resources, a premier healthcare staffing firm, is currently seeking a dedicated Internal or Family Practice Physician for An ongoing locum position in San Rafael, CA. This opportunity inv…
Financial Services - International Corporate Tax Advisory - Tax Senior
Location: Boston, Chicago, Charlotte, Dallas, Hoboken, Houston, Iselin, New York, San Francisco, San Jose, Seattle At EY, we’re all in to shape your future with confidence. We’ll help you s…
Leasing Agent
Leasing Agent (Independent Contractor) &##128205; Simi Valley, CA & Surrounding Cities &##127970; Real Property Management East San Gabriel Valley About Us Real Property Management Ventur…