Cloud Security Engineer
Job Description
Deloitte is seeking a Cloud Security Engineer to evaluate and strengthen security posture across Amazon Web Services (AWS), Google Cloud Platform (GCP), and Microsoft Azure. This onsite role in Baltimore supports cloud security architecture reviews, engineering efforts, monitoring activities, and risk reduction through control implementation, gap identification, and remediation support.
Key Responsibilities
- Assess cloud environments across AWS, GCP, and Azure to identify security risks, control gaps, and configuration issues.
- Design, implement, and improve cloud security controls covering identity and access management, network security, encryption, logging, and monitoring.
- Support cloud security architecture reviews for both new and existing solutions and provide recommendations aligned to security and compliance requirements.
- Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams.
- Develop and maintain technical documentation, standards, baselines, and reports related to cloud security controls and cloud risk management.
Required Qualifications
- Ability to work independently and collaborate as part of a team.
- Effective written and verbal communication skills.
- Meticulous attention to detail and quality of work product.
- Ability to build and sustain professional relationships.
- Ability to lead projects or workstreams.
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment.
- Strong interpersonal skills and professional demeanor.
- Ability to meet deadlines.
- Ability to provide clear guidance to others.
- Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Engineering, or similar technical field.
- Active Secret Clearance.
- Local to the DMV area and able to work onsite up to 5 days a week.
- Ability to travel 20%, on average, based on work performed and client needs.
- Supporting cloud security, cloud engineering, or cloud infrastructure.
- Experience implementing or assessing security controls in AWS, GCP, and Azure.
- Experience with cloud identity and access management, network security, encryption, logging, monitoring, and configuration management.
- Experience using cloud-native security tools, security posture management tools, or infrastructure as code tools.
- Legally authorized to work in the United States without employer sponsorship, now or in the future.
- Minimum experience: 2 years.
Relevant Technologies
- Amazon Web Services (AWS)
- Google Cloud Platform (GCP)
- Microsoft Azure
- Identity and access management, network security, encryption, logging, monitoring, configuration management
- Cloud-native security tools, security posture management tools, infrastructure as code tools
Preferred Qualifications
- Experience supporting cloud security architecture reviews, cloud migrations, or cloud transformation programs.
- Experience with security frameworks and benchmarks such as NIST, CIS, or ISO.
- Experience with scripting or automation using Python, PowerShell, Bash, or Terraform.
- Experience with container security, Kubernetes, or DevSecOps practices.
- Industry certifications such as AWS Certified Security – Specialty, Microsoft Azure Security Engineer Associate, Google Professional Cloud Security Engineer, or CISSP.
Benefits
- You may also be eligible to participate in a discretionary annual incentive program, subject to program rules, where an award, if any, depends on factors including individual and organizational performance.
Team and Practice Overview
Deloitte’s Government & Public Services (GPS) practice is designed for impact and serves federal, state, and local government clients as well as public higher education institutions. The role aligns with Deloitte’s Enterprise Security offering, which embeds security across digital transformation by securing a client’s technical backbone while enabling secure digital transformation. This includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
Compensation and Location
- Location: Baltimore, MD (onsite)
- Salary: USD 107,925 - 188,000 per year