Cyber Data Protection/PKI Manager

Deloitte T.T.L.
Minneapolis, MN, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Cloud Computing Cloud Computing Security Cyber Security Data Discovery Data Security Identity and Access Management Key Management Public Key Infrastructure Load Balancing Kubernetes Api Gateway

Job description

Experteer Overview As part of Deloitte’s Cyber Strategy & Transformation team, you help clients strengthen data protection strategies and PKI across cloud, on-premises, and hybrid environments. You lead advisory work on encryption and key management, design and operate risk-reducing data protection solutions, and guide projects to timely, on-budget delivery. You stay ahead of encryption trends and propose tools to bolster security. This role combines hands-on architecture with client leadership in a fast-paced consulting setting. Compensation / Benefits * Serve as a subject-matter expert on data protection and encryption requirements for clients * Advise on encryption, decryption, secure key management, and PKI strategies across environments * Design, implement, and operate data protection solutions including certificate lifecycle management and monitoring * Drive day-to-day engagement execution, communicating updates and timelines to clients and leadership * Stay current on emerging encryption technologies and evaluate tools to strengthen data security Tasks * 7+ years in data protection and information security, including data discovery, classification, access governance, DLP, cloud/ SaaS security, encryption, and certificate lifecycle management * 7+ years with PKI concepts and enterprise trust models * 5+ years leading CLM strategy, design, and implementation using platforms such as AppViewX, Venafi, Keyfactor, DigiCert, or similar * Advanced knowledge of cryptography, certificate lifecycle, key management, HSM integration, and crypto policy enforcement * Ability to define target-state architectures, integration patterns, and operating models for large-scale environments * Hands-on understanding of certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud, web/app servers, and network/security infrastructure * Experience leading discovery, inventory rationalization, remediation, renewal automation, and compliance monitoring * Strong client leadership skills including executive stakeholder management, workshop facilitation, and roadmap alignment * Ability to lead technical workstreams, architects, engineers, and offshore/onshore teams * Experience translating business, operational, and security requirements into architecture and implementation plans * Understanding of delivery governance, risk management, dependencies, and QA for enterprise security transformations * Willingness to travel 25-50% Key requirements *

Requirements

_ encryption technologies and evaluate tools to strengthen data security Tasks * 7+ years in data protection and information security, including data discovery, classification, access governance, DLP, cloud/ SaaS security, encryption, and certificate lifecycle management * 7+ years with PKI concepts and enterprise trust models * 5+ years leading CLM strategy, design, and implementation using platforms such as AppViewX, Venafi, Keyfactor, DigiCert, or similar * Advanced knowledge of cryptography, certificate lifecycle, key management, HSM integration, and crypto policy enforcement * Ability to define target-state architectures, integration patterns, and operating models for large-scale environments * Hands-on understanding of certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud, web/app servers, and network/security infrastructure * Experience leading discovery, inventory rationalization, remediation, renewal automation, and compliance monitoring * Strong client leadership skills including executive stakeholder management, workshop facilitation, and roadmap alignment * Ability to lead technical workstreams, architects, engineers, and offshore/onshore teams * Experience translating business, operational, and security requirements into architecture and implementation plans * Understanding of delivery governance, risk management, dependencies, and QA for enterprise security transformations * Willingness to travel 25-50% Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

1:32 min

Designing a centralized API gateway and identity provider

Axel Barbier · World Congress 2023

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

Videos

See all

Related articles

See all