Cyber Data Protection/PKI Manager

Deloitte T.T.L.
Los Angeles, CA, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Cloud Computing Cloud Computing Security Cyber Security Data Discovery Data Security Key Management Public Key Infrastructure Load Balancing Kubernetes Api Gateway

Job description

Experteer Overview In this role you will act as a trusted advisor on data protection and encryption strategies, spanning cloud, on-premises, and hybrid environments. You will help design and operate solutions that reduce data risk while guiding client engagements to on-time, on-budget outcomes. The role sits within the Cyber Strategy & Transformation group, focusing on governance, program delivery, and strategic transformation to strengthen client cyber postures. You will stay ahead of encryption trends and advocate for effective cryptographic controls as part of a broader security program. This is a high-impact opportunity to shape data protection at scale within diverse industries. Compensation / Benefits * Act as SME and trusted advisor on strategic data protection and encryption requirements * Advise on encryption, decryption, key management, and PKI strategies across cloud, on-premises, and hybrid environments * Design, implement, and operate data protection solutions including certificate lifecycle management and monitoring * Drive engagement execution, communicate updates to clients and leadership, and track timelines to ensure delivery * Stay current on emerging encryption technologies and evaluate/tools to strengthen data security Tasks * 7+ years in data protection and information security domains (e.g., Data Discovery, Classification, Rights Management, DLP, Cloud Security, Encryption, CLM, PKI) * 7+ years with PKI concepts and enterprise trust models * 5+ years leading certificate lifecycle management and related platforms (AppViewX, Venafi, Keyfactor, DigiCert or similar) * Advanced cryptography knowledge, certificate lifecycle, key management, and HSM integration * Ability to define target-state architecture and operating models for large-scale environments * Hands-on experience with certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud and infrastructure * Experience guiding discovery, inventory rationalization, remediation, renewal automation, and compliance monitoring * Strong client leadership, executive stakeholder management, and workshop facilitation skills * Ability to lead technical workstreams and cross-functional teams * Ability to translate business and security requirements into architecture and implementation plans * Knowledge of delivery governance, risk management, dependencies, and QA for enterprise security transformations * Willingness to travel 25-50% Key requirements * broad range of benefits * opportunities for professional development * leadership opportunities * mentorship * inclusive culture * flexible work options

Requirements

certificate lifecycle management and monitoring * Drive engagement execution, communicate updates to clients and leadership, and track timelines to ensure delivery * Stay current on emerging encryption technologies and evaluate/tools to strengthen data security Tasks * 7+ years in data protection and information security domains (e.g., Data Discovery, Classification, Rights Management, DLP, Cloud Security, Encryption, CLM, PKI) * 7+ years with PKI concepts and enterprise trust models * 5+ years leading certificate lifecycle management and related platforms (AppViewX, Venafi, Keyfactor, DigiCert or similar) * Advanced cryptography knowledge, certificate lifecycle, key management, and HSM integration * Ability to define target-state architecture and operating models for large-scale environments * Hands-on experience with certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud and infrastructure * Experience guiding discovery, inventory rationalization, remediation, renewal automation, and compliance monitoring * Strong client leadership, executive stakeholder management, and workshop facilitation skills * Ability to lead technical workstreams and cross-functional teams * Ability to translate business and security requirements into architecture and implementation plans * Knowledge of delivery governance, risk management, dependencies, and QA for enterprise security transformations * Willingness to travel 25-50% Key requirements * broad range of benefits * opportunities for professional development * leadership opportunities * mentorship * inclusive culture * flexible work options

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · WWC 2023

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · WWC 2022

1:32 min

Designing a centralized API gateway and identity provider

Axel Barbier · WWC 2023

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · WWC 2024

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · WWC 2022

Videos

See all

Related articles

See all