Cyber
Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. As a leader in the field, we empower our clients to transform their security posture and navigate the ever-evolving threat landscape. Join our team to drive impactful change, deliver strategic insights, and help organizations
Position Summary
Level: Lead Solution Advisor
Work you’ll do:
- Support Azure platform and infrastructure security across governance, identity and access management, network, compute, storage, PaaS, data protection, resilience, and security monitoring domains.
- Translate business risk into technical requirements and produce reference architectures, security blueprints, and pattern libraries that downstream engineering teams can consume as code.
- Review client’s Azure environment against leading practices such as NIST CSF, CSA CCM and provide recommendations along with security reference architecture to improve client’s overall Azure cloud security posture.
- Collaborate with client stakeholders to review Azure infrastructure, integrations with SaaS/application platforms, and provide recommendations to enhance security posture.
- Contribute to landing zone design and implementation - subscription models, network segmentation (hub-spoke, VWAN, Private Link), policy guardrails, encryption baselines, logging, and CI/CD integration.
- Work with architecture and business team to provide recommendations around secure architecture including industry best practices such as NIST CSF, CSA CCM and compliance requirements such as HIPAA, PCI, GDPR.
- Implement security capabilities in Azure, including:
- Secure network architecture.
- Logging and monitoring solutions.
- Data protection and encryption controls.
- Backup, recovery, and resilience configurations aligned with RTO/RPO requirements.
- Assist in defining baseline security requirements and implement them via Azure Policy, Blueprints, and Infrastructure-as-Code modules (Terraform/ ARM/ BICEP).
- Build and integrate secure CI/CD pipelines (ADO or GitHub) with security tooling (SCA, SAST, DAST, container image hardening).
- Deploy and configure CNAPP tooling (e.g., Defender for Cloud, Wiz, Prisma) and integrate alerts with Sentinel and automation playbooks.
- Support design and implementation of data protection strategies for ETL and AI pipelines, including encryption, classification, and AI security guardrails.
- Execute Azure Cloud security engagements across assessment, design, and implementation phases under the guidance of Managers / individually.
- Contribute to internal knowledge building through documentation, whitepapers, and PoVs.
- Participate in capability development by mentoring junior team members and client proposals.
The Team
Enterprise Security teams embed security in all aspects of digital transformation by securing a client’s “technical backbone” while also enabling secure digital transformation. Services include security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products. Examples of work include Secure by Design, Cloud Security Orchestration & Automation, Core Infrastructure Security, and Secure Software Enablement. Deloitte Cyber team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure.Vigilant.Resilient.TM cyber programs. Cloud Infrastructure supports organizations through the complete cycle of migrating business processes to the cloud, with capabilities and solutions focused on development, transformation, and resilience of cloud security.
Qualifications
Must Have Skills/Project Experience/Certifications
- 5+ years of experience in technical consulting, client problem solving, architecting and designing solutions in a consulting role with project leadership and/or architect experience in Azure; with a security focus strongly preferred.
- Proven experience with secure application modernization and migration of applications / workloads from on-premises or Cloud to Cloud.
- 5+ years hands-on production experience building Azure landing zones at enterprise scale.
- Expertise in designing, implementing, and securing Azure Platform services such as compute, storage, network, and data services.
- Intermediate scripting skills in Terraform/ ARM/ BICEP, YAML, shell/ Powershell, JSON, or other relevant languages, with a focus on developing secure and scalable Azure solutions.
- Demonstrated ability to translate NIST CSF, CSA CCM, ISO 27017, PCI DSS, HIPAA requirements into concrete Azure control mappings and track implementation in a living compliance matrix.
- Familiarity with Microsoft Copilot, GitHub Copilot, Azure AI Services, including practical experience with Azure Machine Learning and Azure OpenAI.
- Familiarity with and practical application of industry-standard security frameworks and best practices, including NIST CSF, CSA CCM, tailored for Azure cloud environments.
- Experience leading mixed-shore teams (on-site + offshore) through full project life-cycle.
Good to Have Skills/Certifications
- Microsoft Certifications such as: (AZ-104, AZ-500, AZ-305, AZ-700, SC-100)
- Cyber Certifications such as: CCSP, CCSK, CISSP.
Education
· B.E/ B.Tech Degree preferred. Ideally in Computer Science, Cyber Security, Information Security, Engineering, Information Technology.
Location
· Bengaluru/Hyderabad/Pune/Chennai/Kolkata.