Security Engineer Project Manager

Deloitte T.T.L.
Arlington, VA, United States
16 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$137,500.0 - $229,100.0
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Cloud Computing Security Secure Coding Software Vulnerability Management Software Security Devsecops Vulnerability Analysis

Job description

As a PROJECT - Lead Security Engineer II on the team, you will be responsible for:

  • Support implementation and validation of technical security controls across application, infrastructure, cloud, and DevSecOps environments
  • Review vulnerability scan results, dependency findings, code scan outputs, Security Technical Implementation Guide findings, and configuration compliance issues
  • Partner with engineering teams to prioritize and remediate security findings and support secure coding, dependency review, and system hardening activities
  • Contribute technical evidence for Risk Management Framework and Authority to Operate activities, including control implementation details, remediation updates, and release security documentation
  • Collaborate with operations and DevSecOps teams to improve security automation, monitoring, compliance practices, and release readiness checks, For individuals assigned and/or hired to work in Virginia, Deloitte is required by law to include a reasonable estimate of the compensation range for this role. This compensation range is specific to Virginia and takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $137,500 to $229,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html

Requirements

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others, * Bachelor’s degree
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
  • Active Secret security clearance required
  • Must be located to the DMV area and able to come onsite 5 days a week in Alexandria, VA
  • Ability to travel 25%, on average, based on the work you do and the clients and industries/sectors you serve
  • 10+ years of experience with the following: *

  • Experience in cybersecurity engineering, application security, cloud security, infrastructure security, or DevSecOps security.
  • Experience with vulnerability management, security hardening, STIG compliance, secure configuration, and technical control implementation.
  • Experience with security scanning tools and remediation workflows.

About the company

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success., Deloitte’s Government & Public Services (GPS) practice - our people, ideas, technology and outcomes - is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.

Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client’s technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.

The Project Delivery Talent Model is designed for professionals with specialized skills that align to a current client need. Team members focus on delivering services to clients, without additional expectations related to business development or promotion. Their employment is tied to their role on a project, and they are eligible for a benefits package that is competitive for project delivery-focused professionals.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · WWC 2024

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · WWC 2021

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all