Cloud Security Architect - Manager

Deloitte is seeking a Cloud Security Architect - Manager to lead cloud security strategy, architecture, and practices for clients. This role involves assessing, designing, and implementing cloud security solutions across major cloud platforms (AWS, GCP, Azure), focusing on governance, identity, application security, and data protection. Responsibilities include client interface, business development support, and technical health checks, ensuring security frameworks and configurations align with industry benchmarks and client needs.

What you'd actually do

  1. Lead the overall delivery of Cloud Cyber Risk projects in a project manager and or architect role, overseeing the activities of onsite and offshore engineers and architects across 8 key cyber domains: Governance, Identity, Application Security, PaaS security, Infrastructure security, Security Monitoring, Resilience and Data protection
  2. Assist in business development activities such as defining scope of services, building resource estimates and related pricing, packaging proposals and supporting the delivery of the proposal to the client for AWS, GCP, Azure and/or Oracle Cloud services
  3. Function as the primary client day to day interface building rapport and trust with the client
  4. Function as an expert in CNAPP, CWPP and CSPM technologies and security risk frameworks relevant to cloud as well as the industry leading benchmarks
  5. Review and oversee the generation of all project deliverables such as assessment reports, system designs/ architectures and risk/security recommendations

Skills

Required

  • Cloud security expertise (AWS, GCP, Azure)
  • Experience with CNAPP, CWPP, CSPM technologies
  • Knowledge of security risk frameworks and industry benchmarks
  • Project management and delivery leadership
  • Client relationship management
  • Proposal development and pricing
  • Technical assessment and design
  • Security policy development
  • Troubleshooting complex systems

Nice to have

  • DevSecOps and CI/CD pipeline experience
  • Experience with third-party security tools (WAF, PAM, etc.)
  • Familiarity with Wiz, Snyk
  • Internal training and coaching experience
  • Eminence activities (whitepapers)

What the JD emphasized

  • cloud security planning
  • cloud security strategy
  • cloud security architecture
  • cloud security engagements
  • cloud security analysis
  • cloud security policies
  • cloud security and compliance reports
  • cloud security services
  • cloud security
  • cloud cyber risk