Lead Cloud Security Analyst
Indexed description
Recruiting for this role ends on 8/31/2026.
Work you'll do
As a Lead Cloud Security Analyst, you are an advanced individual contributor pivotal to bridging Deloitte's cybersecurity expertise and cloud engineering execution. This highly visible role is focused on influential, hands-on contributions-championing embedded collaboration, addressing complex risks, and guiding strategic alignment between cyber and infrastructure domains. You'll serve as a thought leader, technical consultant, and trusted advisor across teams, delivering best-in-class solutions and supporting dynamic business needs.
Key Responsibilities
Technical Leadership & Advanced Execution
Lead Embedded Collaboration:
- Drive the flexible embedding of security and infrastructure resources-proactively advising, aligning, and executing as project needs evolve. Serve as the go-to analyst across high-impact domains, facilitating rapid adaptation as priorities shift.
- Collaborate closely with architecture, engineering, and network teams on cloud architecture, micro-segmentation, agent scanning, and burn-down strategies. Provide deep technical expertise to shape scalable, secure solutions from initial design through delivery.
- Conduct comprehensive risk reviews for cloud and infrastructure solutions, identifying gaps, potential rework triggers, and opportunities for proactive remediation. Serve as a first-line subject matter expert in incident response, vulnerability management, and security control implementation.
- Drive rigorous ongoing feedback loops with embedded teams to ensure day-to-day cyber alignment, minimize project drift, and reduce rework. Capture and share lessons learned, helping to formalize best practices and improve organizational knowledge.
Tailor Embedding Models:
- Assess and recommend embedding intensity across teams (e.g., full-time support for firewall/critical ops, periodic or architecture-phase-only engagement for other domains). Provide consultative input on workforce planning, workload balancing, and talent optimization.
- Model collaborative behaviors and help mentor less experienced analysts, reinforcing Deloitte's culture of learning, agility, and business partnership.
- Proactively communicate risks, priorities, and achievements to senior stakeholders. Translate technical challenges into actionable business guidance, advocating for security and resilience.
- Ability to work independently and collaborate as part of a team
- Effective written and verbal communication skills
- Meticulous attention to detail and quality of work product
- Ability to build and sustain professional relationships
- Ability to lead projects or workstreams
- Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
- Strong interpersonal skills and professional demeanor
- Ability to meet deadlines
- Ability to provide clear guidance to others
The ~3,000 professionals in DT - US deliver services including:
- Cyber Security
- Technology Support
- Technology & Infrastructure
- Applications
- Relationship Management
- Strategy & Communications
- Project Management
- Financials
Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.
Areas of focus include:
- Risk & Compliance
- Identity & Access Management
- Data Protection
- Cyber Design
- Incident Response
- Security Architecture
- Business Partnership
- Bachelor's Degree or equivalent in Computer Science, Cybersecurity, IT, or related field.
- Minimum 8 years of hands-on experience in cloud engineering, cybersecurity, and/or infrastructure-ideally in large-scale, cross-functional environments.
- Ability to travel 10%, on average to support embedded team collaboration across domains periodically as required.
- Advanced experience with Azure, AWS, and/or Google Cloud Platform, including architecture and automation.
- Hands-on expertise with DevOps and CI/CD tools such as Azure DevOps, Jenkins, Jira, Bamboo, TFS, and TeamCity.
- Proven experience with micro-segmentation solutions, including policy design, deployment, and tuning.
- Practical working knowledge of Docker containers and microservices architecture.
- Proficiency with configuration management tools (Ansible, Chef, Puppet) and packaging programs (MSI, rpm, etc.).
- Familiarity with both SQL and NoSQL databases and cloud/hybrid application architectures.
- Strong understanding of networking, firewalls, load balancers, and network traffic analysis tools (e.g., Wireshark).
- Experience with virtualization technologies such as VMware and Hyper-V.
- Deep knowledge of security controls, best practices for resilient operations, and frameworks like zero trust, NIST, and CIS.
- Recognized technical authority in at least one major cloud platform (Azure, AWS, GCP) and strong proficiency with DevOps, automation, and security frameworks (Zero Trust, NIST, CIS).
- Demonstrated expertise in designing, implementing, and securing cloud infrastructure and security architectures.
- Strong proficiency with DevOps, automation, and security frameworks (Zero Trust, NIST, CIS).
- Exceptional technical, analytical, documentation, and communication skills for stakeholder and cross-team influence.
- Understanding of Infrastructure as Code, Automation, and Orchestration.
- Demonstrated ability to mentor peers, lead process improvements, and contribute to organizational best practices.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
EA_ExpHire
RITM9656376
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search