Cyber Data Protection/pki Manager

Manager for Cyber Data Protection and PKI at Deloitte, focusing on advising clients on data protection, encryption, and PKI systems. Responsibilities include designing, implementing, and operating solutions, managing certificate lifecycles, and staying updated on emerging encryption technologies.

What you'd actually do

  1. Serve as a subject matter expert and trusted advisor to our clients, assisting them to evaluate strategic and practical data protection and encryption requirements based on new and emerging data risks, advising on best practices for data encryption, decryption, and secure key management
  2. Assist clients in designing, implementing and operating technology and process solutions to reduce data risks, developing and leading the implementation of encryption strategies to protect sensitive data across various environments, including cloud, on-premises, and hybrid infrastructures, to manage the deployment and lifecycle of PKI systems, ensuring robust and scalable certificate management processes, monitor and maintain the health of certificate infrastructures to prevent downtime and security breaches, and assist with developing requirements, evaluating vendor solutions, architecting, implementing and operating data protection solutions
  3. Aid in the delivery of client engagements, ensuring success by:
  4. Stay up to date on emerging encryption technologies (e.g., post-quantum cryptography, confidential computing, secure enclaves, envelope encryption) and industry trends around cyber risk, data protection and cryptography practices.
  5. Proactively evaluate and recommend new tools and solutions to enhance data security

Skills

Required

  • Bachelor’s degree in Cybersecurity, Information Security, Engineering, Computer Science, Information Technology or related field
  • 7+ years of professional experience within data protection and information security
  • 7+ years with PKI concepts: Deep expertise in PKI architecture and enterprise trust models
  • 5+ years leading CLM strategy, design, and implementation using platforms such as AppViewX, Venafi, Keyfactor, DigiCert, or similar
  • Advanced knowledge of cryptography, certificate lifecycle processes, key management, HSM integration, and crypto policy enforcement
  • Ability to define target-state architecture, integration patterns, and operating models for large-scale environments
  • Hands-on understanding of certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud, web/app servers, and network/security infrastructure
  • Experience leading discovery, inventory rationalization, remediation, renewal automation, and compliance monitoring programs
  • Strong client leadership skills, including executive stakeholder management, workshop facilitation, roadmap alignment, and decision-making support
  • Ability to lead technical workstreams, architects, engineers, and offshore/onshore teams
  • Experience translating business, operational, and security requirements into architecture blueprints and implementation plans
  • Strong understanding of delivery governance, risk management, dependencies, and quali

What the JD emphasized

  • 7+ years of professional experience within data protection and information security
  • 7+ years with PKI concepts: Deep expertise in PKI architecture and enterprise trust models
  • 5+ years leading CLM strategy, design, and implementation using platforms such as AppViewX, Venafi, Keyfactor, DigiCert, or similar
  • Advanced knowledge of cryptography, certificate lifecycle processes, key management, HSM integration, and crypto policy enforcement
  • Hands-on understanding of certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud, web/app servers, and network/security infrastructure