Cloud Security Engineer (Secret Clearance)
Azure
Cloud
Cloud Architecture
Cloud Native
Cloud Operations
Cloud Platform
Cloud Platforms
Cloud Security Posture Management
Cloud Technology
Data Security
DevOps
DevSecOps
Engineering
GCP
Identity and Access Management
Incident Response
Information Security
Information Technology (IT)
InfoSec
Infrastructure As Code
IT Operations
Kubernetes
Multi Cloud
PowerShell
Risk Governance
Security
Security Automation
Security Clearance
Security Compliance
Job Description
Deloitte offers a Cloud Security Engineer role based onsite in Arlington, VA, with a competitive salary range of USD 107,925 to 188,000 per year and eligibility for a discretionary annual incentive program. This position supports cloud security across AWS, GCP, and Azure for Deloitte's GPS team and requires an active Secret Clearance.
Responsibilities
- Evaluate AWS, GCP, and Azure environments to identify security risks, control gaps, and misconfigurations.
- Design, implement, and improve cloud security controls covering identity and access management, network security, encryption, logging, and monitoring.
- Support cloud security architecture reviews for new and existing solutions, delivering recommendations aligned to security and compliance requirements.
- Investigate cloud security events, analyze root causes, and coordinate remediation activities with engineering and operations teams.
- Develop and maintain technical documentation, standards, baselines, and reports related to cloud security controls and cloud risk management.
Requirements
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technical field
- Active Secret Clearance
- Local to the DMV area with the ability to work onsite up to five days per week
- Ability to travel approximately 20 percent, depending on client work
- At least 2 years of experience in one or more of the following areas:
- Supporting cloud security, cloud engineering, or cloud infrastructure
- Implementing or assessing security controls in AWS, GCP, and Azure
- Working with cloud identity and access management, network security, encryption, logging, monitoring, and configuration management
- Using cloud-native security tools, security posture management tools, or infrastructure as code tools
- Must be legally authorized to work in the United States without the need for employer sponsorship now or in the future
Technologies
- AWS
- GCP
- Azure
- Python
- PowerShell
- Bash
- Terraform
- Kubernetes
Benefits
- Discretionary annual incentive program