Deloitte’s Government & Public Services (GPS) practice supports federal, state, and local government clients, along with public higher education institutions. Within this environment, you will help embed security into digital transformation by strengthening the technical backbone across major cloud platforms.
As a Cloud Security Engineer in Washington, DC, you will evaluate and improve security for AWS, GCP, and Microsoft Azure, working across architecture, engineering, monitoring, and risk reduction activities. The role also includes investigating security events, supporting remediation efforts, and keeping cloud security documentation aligned to standards.
Role Summary
Assess and enhance cloud security across AWS, GCP, and Microsoft Azure by supporting cloud security architecture, engineering, monitoring, and risk reduction. Identify gaps, implement controls, investigate security events, and help manage cloud security documentation and standards.
Responsibilities
- Assess cloud environments across AWS, GCP, and Azure to identify security risks, control gaps, and configuration issues.
- Design, implement, and improve cloud security controls, including identity and access management, network security, encryption, logging, and monitoring.
- Support cloud security architecture reviews for new and existing solutions and provide recommendations aligned to security and compliance requirements.
- Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams.
- Develop and maintain technical documentation, standards, baselines, and reports related to cloud security controls and cloud risk management.
Required Qualifications
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a similar technical field.
- Active Secret Clearance.
- Local to the DMV area with the ability to work onsite up to 5 days a week.
- Ability to travel 20% on average based on work, clients, and industries or sectors.
- 2+ years experience supporting cloud security, cloud engineering, or cloud infrastructure, including:
- Experience implementing or assessing security controls in AWS, GCP, and Azure.
- Experience with cloud identity and access management, network security, encryption, logging, monitoring, and configuration management.
- Experience using cloud-native security tools, security posture management tools, or infrastructure as code tools.
- Must be legally authorized to work in the United States without employer sponsorship, now or in the future.
Technologies
- Amazon Web Services (AWS)
- Google Cloud Platform (GCP)
- Microsoft Azure
- Identity and access management
- Network security
- Encryption
- Logging and monitoring
- Configuration management
- Cloud-native security tools
- Security posture management tools
- Infrastructure as code tools
Team Context
- Deloitte’s Government & Public Services (GPS) practice is designed for impact.
- The Enterprise Security offering embeds security in digital transformation, securing a client’s technical backbone while enabling secure digital transformation.
- Capabilities include security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Preferred Qualifications
- Experience supporting cloud security architecture reviews, cloud migrations, or cloud transformation programs.
- Experience with security frameworks and benchmarks such as NIST, CIS, or ISO.
- Experience with scripting or automation using Python, PowerShell, Bash, or Terraform.
- Experience with container security, Kubernetes, or DevSecOps practices.
- Industry certifications such as AWS Certified Security - Specialty, Microsoft Azure Security Engineer Associate, Google Professional Cloud Security Engineer, or CISSP.
Compensation
The wage range for this role is estimated at USD 107,925 to USD 188,000 per year.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program. An award, if any, depends on factors including individual and organizational performance.
Location: Washington, DC (onsite)