Cloud Security Engineer
Azure
Cloud Native Security
Cloud Platforms
Cloud Security
Cloud Security Architecture
Cloud Security Monitoring
Cloud Security Posture Management
Engineer
GCP
Google Cloud
Identity and Access Management
Incident Response
Information Security
InfoSec
Network Security
Security Compliance
Security Engineer
Security Engineering
Security Operations
Security Standards
Job Description
Deloitte is hiring a Cloud Security Engineer to strengthen security across cloud platforms, including AWS, GCP, and Microsoft Azure. The role focuses on assessing risk, designing and improving security controls, investigating security events, and supporting cloud risk management through documentation and standards.
Location
Washington, DC (onsite)
Salary
USD 107,925 - 188,000 per year
Responsibilities
- Assess cloud environments across AWS, GCP, and Azure to identify security risks, control gaps, and configuration issues.
- Design, implement, and improve cloud security controls, including identity and access management, network security, encryption, logging, and monitoring.
- Support cloud security architecture reviews for new and existing solutions and provide recommendations aligned to security and compliance requirements.
- Investigate cloud security events and findings, analyze root causes, and support remediation with engineering and operations teams.
- Develop and maintain technical documentation, standards, baselines, and reports related to cloud security controls and cloud risk management.
Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a similar technical field.
- Active Secret Clearance.
- Local to the DMV area and able to work onsite up to 5 days a week.
- Ability to travel 20% on average, based on work scope and client needs.
- At least 2+ years experience supporting cloud security, cloud engineering, or cloud infrastructure, including:
- Implementing or assessing security controls in AWS, GCP, and Microsoft Azure.
- Experience with cloud identity and access management, network security, encryption, logging, monitoring, and configuration management.
- Experience using cloud-native security tools, security posture management tools, and infrastructure as code tools.
- Must be legally authorized to work in the United States without employer sponsorship, now or in the future.
Technologies
- Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure
- Identity and access management, network security, encryption, logging, monitoring, configuration management
- Cloud-native security tools, security posture management tools, infrastructure as code tools
Team Overview
- Deloitte’s Government & Public Services (GPS) practice is designed for impact.
- Supports federal, state, and local government clients as well as public higher education institutions.
- Enterprise Security embeds security across digital transformation by securing a client’s technical backbone while enabling secure digital transformation.
- Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Preferred
- Experience supporting cloud security architecture reviews, cloud migrations, or cloud transformation programs.
- Experience with security frameworks and benchmarks such as NIST, CIS, or ISO.
- Experience with scripting or automation using Python, PowerShell, Bash, or Terraform.
- Experience with container security, Kubernetes, or DevSecOps practices.
- Relevant industry certifications such as AWS Certified Security - Specialty, Microsoft Azure Security Engineer Associate, Google Professional Cloud Security Engineer, or CISSP.
Incentive Program
You may be eligible to participate in a discretionary annual incentive program, subject to program rules. Any award depends on factors including individual and organizational performance.