Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Work You'll Do - Application Security: Evaluate, enhance, and document secure software development practices. Lead AppSec assessments, support remediation efforts, and help set security requirements for platforms and custom applications.
- Compliance & RMF (NIST): Provide deep support for federal compliance initiatives, specializing in NIST 800-53 and RMF processes. Develop control implementation plans, assist with artifacts, advise on audit readiness and manage POAMs
- DevSecOps (Cloud Security): Guide secure DevOps practices, integrating security into CI/CD pipelines and cloud architectures. Partner with teams to implement security automation and validate environments (AWS,).
- Vulnerability Assessment & VAT Management: Conduct and coordinate vulnerability scans using Tenable, Inspector, or similar tools. Drive VAT resolution by engaging stakeholders, tracking remediation, and closing findings.
- Technical Project Delivery: Take charge of critical projects-organizing tasks, managing deadlines, and ensuring results. Handle ad-hoc assignments and maintain excellent documentation.
- Consulting: Communicate solutions and risks to technical and non-technical stakeholders. Lead and support ISSO activities, compliance reviews, and team enablement.
The Team Deloitte's Government and Public Services (GPS) practice - our people, ideas, technology, and outcomes-are designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.
Qualifications Required: - Bachelor's degree required.
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
- 5+ years in cloud security, security engineering, DevSecOps, or security automation.
- Strong understanding of cloud security fundamentals: IAM, network segmentation, encryption/KMS, secrets management, logging/monitoring, secure storage patterns.
- Security + certification.
- 3+ years' experience within the following:
- At least one major cloud platform (AWS or Azure strongly preferred).
- Demonstrated automation capability:
- Proficiency in Python, PowerShell, or similar.
- Experience integrating APIs, automating workflows, and producing auditable outputs.
- Experience implementing security controls and/or compliance work in regulated environments (federal, healthcare, finance, etc.).
- Familiarity with Git-based workflows and CI/CD systems.
Information for applicants with a need for accommodation:
Recruiting tips From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.
Our purpose Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.
Professional development From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
As used in this posting, "Deloitte" means Deloitte Transactions and Business Analytics LLP, a subsidiary of Deloitte LLP. Please see for a detailed description of the legal structure of Deloitte LLP and its subsidiaries.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Requisition code: 321724
Job ID 321724