Cyber Data Protection/PKI Specialist Senior Consultant

Deloitte T.T.L.
Colorado Springs, CO, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Secure Shell (SSH) Client Server Models Cloud Computing Cloud Computing Security Cyber Security Data Discovery Data Security Key Management Multi-Purpose Internet Mail Extensions (MIME) Public Key Infrastructure Transport Layer Security Load Balancing
+2 more
Kubernetes Api Gateway

Job description

Experteer Overview In this role you will act as a subject matter expert in data protection and PKI, guiding clients on encryption strategies and secure key management across cloud, on-prem, and hybrid environments. You will design and operate protection solutions, drive encryption-related projects, and stay ahead of emerging cryptography trends. You will lead delivery efforts, coordinate with cross-functional teams, and help clients improve their cyber posture. This opportunity lets you shape data security programs for diverse organizations while leveraging cutting-edge technologies. Compensation / Benefits * Serve as SME and trusted advisor on data protection, encryption requirements, and secure key management * Design, implement and operate encryption and PKI solutions across cloud, on-prem, and hybrid environments * Lead and oversee client engagements, ensuring timely, high-quality deliverables * Drive project execution, communicate with clients and leadership, and manage timelines and budgets * Stay current on emerging encryption technologies (post-quantum cryptography, confidential computing) and industry trends * Evaluate new tools/solutions to enhance data security and support client roadmaps * Coordinate with delivery teams and cross-functional stakeholders to align on requirements and outcomes * Support strategy, architecture, and implementation workstreams for data protection programs Tasks * Bachelor’s degree in a relevant field * 5+ years in data protection and information security (including Data Discovery, Classification, Rights Management, DLP, Cloud Security) * 5+ years with PKI concepts (certificates, CAs, RA, CSR, OCSP, CRL, HSM, key management) * 2+ years implementing encryption technologies and CLM, TLS, and cloud encryption concepts (BYOK, client/server-side) * 2+ years developing data protection strategies, roadmaps, and frameworks * 2+ years hands-on experience with one or more data protection technologies and CLM platforms (AppViewX, Venafi, Keyfactor, DigiCert) * 2+ years knowledge of cryptographic standards and protocols (TLS/SSL, SSH, S/MIME, code signing, NIST practices) * 2+ years certificate discovery, inventory, automation, renewal, and compliance monitoring * 2+ years working on integration with F5, load balancers, WAFs, Kubernetes, API gateways, cloud platforms * 2+ years client-facing skills (requirements gathering, stakeholder management, workshops) * 2+ years leading small teams/workstreams and producing deliverables * Willingness to travel 25-50% * Professional certifications such as CISSP or CISM (preferred) Key requirements *

Requirements

and budgets * Stay current on emerging encryption technologies (post-quantum cryptography, confidential computing) and industry trends * Evaluate new tools/solutions to enhance data security and support client roadmaps * Coordinate with delivery teams and cross-functional stakeholders to align on requirements and outcomes * Support strategy, architecture, and implementation workstreams for data protection programs Tasks * Bachelor’s degree in a relevant field * 5+ years in data protection and information security (including Data Discovery, Classification, Rights Management, DLP, Cloud Security) * 5+ years with PKI concepts (certificates, CAs, RA, CSR, OCSP, CRL, HSM, key management) * 2+ years implementing encryption technologies and CLM, TLS, and cloud encryption concepts (BYOK, client/server-side) * 2+ years developing data protection strategies, roadmaps, and frameworks * 2+ years hands-on experience with one or more data protection technologies and CLM platforms (AppViewX, Venafi, aaa aaaaaI_ DigiCert) * 2+ years knowledge of cryptographic standards and protocols (TLS/SSL, SSH, S/MIME, code signing, NIST practices) * 2+ years certificate discovery, inventory, automation, renewal, and compliance monitoring * 2+ years working on integration with F5, load balancers, WAFs, Kubernetes, API gateways, cloud platforms * 2+ years client-facing skills (requirements gathering, stakeholder management, workshops) * 2+ years leading small teams/workstreams and producing deliverables * Willingness to travel 25-50% * Professional certifications such as CISSP or CISM (preferred) Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

1:32 min

Designing a centralized API gateway and identity provider

Axel Barbier · World Congress 2023

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

Videos

See all

Related articles

See all