Cyber
Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design, and technology as we partner with clients to transform finance.
Position Summary
L35 - Consultant, Cloud Infrastructure
We are seeking hands-on cloud security professionals with deep expertise in the Wiz Cloud Native Application Protection Platform (CNAPP), spanning CSPM, CIEM, DSPM, KSPM, and AI-SPM, along with Wiz Code and Wiz Defend, combined with strong cloud security experience on Google Cloud Platform (GCP) and/or Amazon Web Services (AWS). In this role, you will design, deploy, operationalize, and continuously improve Wiz-based cloud security programs for large enterprise clients as part of their broader cloud and digital transformation journeys.
Work you'll do
As a Consultant, Cloud Infrastructure on the Cloud Security practice team, you will be responsible for:
-
Deploying and configuring Wiz across Google Cloud Platform and Amazon Web Services environments, including cloud accounts, organizational structures, sensors, and Kubernetes connectors.
-
Implementing and improving cloud security use cases across cloud security posture management, cloud infrastructure entitlement management, data security posture management, Kubernetes security posture management, and AI security posture management.
-
Integrating Wiz Code and Wiz Defend into client cloud security and DevSecOps processes, including infrastructure as code scanning, secrets detection, runtime detection, and workflow integration.
-
Building automation, reporting, dashboards, and remediation workflows using Wiz, cloud-native services, and scripting tools to support scalable cloud security operations.
-
Supporting client delivery by translating technical findings into actionable remediation steps, contributing to security posture improvements, and collaborating with cross-functional teams across cloud, engineering, and cyber functions.
The team
Enterprise Security teams embed security in all aspects of digital transformation by securing a client's technical backbone while also enabling secure digital transformation. Services include security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products. Examples of work include Secure by Design, Cloud Security Orchestration & Automation, CNAPP Strategy & Implementation, Core Infrastructure Security, and Secure Software Enablement. Our Cyber team helps complex organizations more confidently pursue their growth, innovation, and performance agendas through proactive management of associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform legacy programs into proactive, resilient cyber programs. The Cloud Security practice supports organizations through the complete cycle of adopting and securing cloud at scale, with capabilities and solutions focused on posture management, cloud detection and response, DevSecOps, and cloud-native application protection.
Location: Hyderabad/Bengaluru/Pune/Chennai
Shift Timings: Regular India Hours
Qualifications
Required:
-
3-6 years of experience in cloud security, including hands-on experience with Wiz Cloud Native Application Protection Platform in enterprise environments.
-
Experience supporting at least three of the following Wiz capability areas: cloud security posture management, cloud infrastructure entitlement management, data security posture management, Kubernetes security posture management, or AI security posture management.
-
Experience with Google Cloud Platform and/or Amazon Web Services security services, including identity and access management, encryption and key management, logging, monitoring, and organizational guardrails.
-
Experience using Python for automation, reporting, or application programming interface integrations.
-
Experience using Terraform for infrastructure deployment and configuration management.
-
Experience integrating security tooling into continuous integration and continuous delivery pipelines such as GitHub Actions, GitLab CI, Jenkins, or Azure DevOps.
-
Experience with Kubernetes security concepts and container platforms such as Google Kubernetes Engine or Amazon Elastic Kubernetes Service.
Preferred:
-
Experience with Wiz Code and/or Wiz Defend.
-
Experience using Rego or Open Policy Agent for policy-as-code use cases.
-
Experience with GraphQL or Representational State Transfer application programming interfaces, JavaScript Object Notation or YAML processing, and scripting with Bash, Shell, or PowerShell.
-
Experience building integrations with ticketing, collaboration, security information and event management, or security orchestration, automation, and response platforms.
-
Google Cloud Professional Cloud Security Engineer, AWS Certified Security - Specialty, AWS Solutions Architect, Certified Kubernetes Administrator, or Certified Kubernetes Security Specialist certification.
-
Experience supporting multi-cloud environments or regulated industry clients.
This position is aligned with the Core Talent Model. To view the associated benefit package, please reference this document https://resources.deloitte.com/sites/dnet-tod-usi/Shared Documents/Benefits/USIBenefitsBrochureforPlanG.pdf.
Education:
- Bachelor’s Degree required. Ideally in Computer Science, Cyber Security, Information Security, Engineering, Information Technology.