Summary
Position Summary
Cyber
Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design, and technology as we partner with clients to transform finance.
Position Summary
Level: Lead Solution Advisor
Work you’ll do:
As a Senior Consultant in the Security architecture review domain, you are responsible for performing the following activities:
- Conduct comprehensive security architecture reviews for new and existing systems, applications, and infrastructure and assist by providing security overlays for any solution diagrams
- Evaluate solution designs and technical architectures to identify potential security risks and recommend mitigation strategies.
- Collaborate with IT, development, and business teams to integrate security requirements into project designs.
- Develop and maintain security architecture documentation, standards, and guidelines.
- Review and assess third-party/vendor solutions for security risks and compliance.
- Provide expert guidance on secure design patterns and critical security controls such as encryption, authentication, and access control.
- Be an active member of the projects and assist with any security related questions or issues
The Team:
Enterprise Security teams embed security in all aspects of digital transformation by securing a client’s “technical backbone” while also enabling secure digital transformation. Services include security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products. Examples of work include Secure by Design, Cloud Security Orchestration & Automation, Core Infrastructure Security, and Secure Software Enablement.
Qualifications
Preferred:
- Bachelors degree or higher in Computer Science, or equivalent experience.
- 5 to 7 years of experience reviewing application security architectures and threat modeling.
- Experience with TOGAF or SABSA frameworks, preferably holding certifications and understanding of how security can be integrated.
Must Have Skills/Project Experience/Certifications:
- Knowledge of infrastructure and network security
- Exposure to microservices architecture concepts
- Strong understanding of security frameworks (e.g., NIST 800-53, PCI DSS,, ISO 27001, CIS Controls) and regulatory requirements (e.g., GDPR, HIPAA, PCI DSS)
- Experience with cloud security (AWS, Azure, GCP) and on-premises environments.
- Familiarity with secure software development lifecycle (SDLC) practices.
- Proficiency in risk assessment methodologies.
- Excellent communication and documentation skills.
- Exposure to threat modeling exercise and zero trust architecture principles
- Knowledge of cloud security best practices.
- Exposure to secure by design methodology.
Good to Have Skills/Project Experience/Certifications:
- Experience with integrating and operating SAST tools to identify code-level vulnerabilities in the development lifecycle.
- Familiarity with DAST tools and methodologies for identifying runtime vulnerabilities in web applications and APIs.
- Proficiency in using SCA tools to detect and manage risks from third-party and open-source components,
- Hands-on experience in embedding security controls and automated testing (SAST, DAST, SCA) into CI/CD pipelines
- Experience with integrating threat modeling tool into CICD pipeline
- Hands on experience on Microsoft Visio, Lucidchart, Microsoft Threat modeling tool etc or any other DFD, architecture drafting tool
Education:
Bachelors degree or higher in Computer Science, or equivalent experience.
Location:
Bangalore, Hyderabad, Pune, Chennai, Kolkata
Shift Timings:
Our purpose
Deloitte’s purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities.
Our people and culture
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients most complex challenges. This makes Deloitte one of the most rewarding places to work.
Professional development
At Deloitte, professionals have the opportunity to work with some of the best and discover what works best for them. Here, we prioritize professional growth, offering diverse learning and networking opportunities to help accelerate careers and enhance leadership skills. Our state-of-the-art DU: The Leadership Center in India, located in Hyderabad, represents a tangible symbol of our commitment to the holistic growth and development of our people. Explore DU: The Leadership Center in India .
Benefits To Help You Thrive
At Deloitte, we know that great people make a great organization. Our comprehensive rewards program helps us deliver a distinctly Deloitte experience that helps that empowers our professionals to thrive mentally, physically, and financially—and live their purpose. To support our professionals and their loved ones, we offer a broad range of benefits. Eligibility requirements may be based on role, tenure, type of employment and/ or other criteria. Learn more about what working at Deloitte can mean for you.
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Requisition code: 303240