Cloud Security Engineer (Secret Clearance)
Job Description
Deloitte is seeking a Cloud Security Engineer with an active Secret Clearance for an onsite role in Washington, DC.
Responsibilities
- Assess cloud environments across AWS, GCP, and Azure to identify security risks, control gaps, and configuration issues.
- Design, implement, and improve cloud security controls, including identity and access management, network security, encryption, logging, and monitoring.
- Support cloud security architecture reviews for new and existing solutions and provide recommendations aligned to security and compliance requirements.
- Investigate cloud security events and findings, analyze root causes, and support remediation activities with engineering and operations teams.
- Develop and maintain technical documentation, standards, baselines, and reports related to cloud security controls and cloud risk management.
Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a similar technical field
- Active Secret Clearance
- Local to the DMV area and able to work onsite up to 5 days per week
- Travel up to 20% on average, depending on client work
- 2+ years of experience in cloud security, cloud engineering, or cloud infrastructure
- Experience implementing or assessing security controls in AWS, GCP, and Microsoft Azure
- Experience with cloud identity and access management, network security, encryption, logging, monitoring, and configuration management
- Experience using cloud-native security tools, security posture management tools, or infrastructure as code tools
- Legally authorized to work in the United States without employer sponsorship now or in the future
Technologies
- AWS
- GCP
- Azure
- Terraform
- Python
- PowerShell
- Bash
- Kubernetes
Benefits
- Discretionary annual incentive program
Preferred
- Experience supporting cloud security architecture reviews, cloud migrations, or cloud transformation programs
- Experience with security frameworks and benchmarks such as NIST, CIS, or ISO
- Experience with scripting or automation using Python, PowerShell, Bash, or Terraform
- Experience with container security, Kubernetes, or DevSecOps practices
- Industry certifications such as AWS Certified Security - Specialty, Microsoft Azure Security Engineer Associate, Google Professional Cloud Security Engineer, or CISSP