AWS Certified Security - Specialty, Microsoft Azure Security Engineer Associate (AZ-500), Google Professional Cloud Security Engineer, or Certified Cloud Security Professional * 1 or more of the ...
AWS Certified Security - Specialty, Microsoft Azure Security Engineer Associate (AZ-500), Google Professional Cloud Security Engineer, or Certified Cloud Security Professional * 1 or more of the ...
Security Administrator
Cedar Rapids, IA · On-site
$100 - $125/hr
... Azure, Microsoft Entra ID, Microsoft 365, and traditional infrastructure. This is not a ... Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC ...
Security Administrator
Cedar Rapids, IA · On-site
$100 - $125/hr
... Azure, Microsoft Entra ID, Microsoft 365, and traditional infrastructure. This is not a ... Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC ...
Security Administrator
Des Moines, IA · On-site
$100 - $125/hr
... Azure, Microsoft Entra ID, Microsoft 365, and traditional infrastructure. This is not a ... Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC ...
Security Administrator
Des Moines, IA · On-site
$100 - $125/hr
... Azure, Microsoft Entra ID, Microsoft 365, and traditional infrastructure. This is not a ... Advanced cybersecurity certifications in good standing (e.g., CEH, OSCP, AZ-500, SC-300, SC-200, SC ...
Azure Az 500 information
What is the difference between Azure Az 500 vs Azure Security Engineer?
| Aspect | Azure Az 500 | Azure Security Engineer |
|---|---|---|
| Certifications | Microsoft Certified: Azure Security Engineer Associate | Microsoft Certified: Azure Security Engineer Associate |
| Work Environment | Focuses on implementing security controls, managing identity, and securing cloud resources within Azure | Designs and implements security solutions, monitors security posture, and responds to security incidents in Azure |
| Employer & Industry Usage | Used by cloud administrators, security professionals, and IT teams managing Azure environments | Employed by security teams, cloud engineers, and IT professionals responsible for Azure security |
The Azure Az 500 and Azure Security Engineer roles share similar certifications and work environments, both focusing on securing Azure cloud environments. However, the Az 500 is more aligned with implementing security controls and managing security infrastructure, while the Security Engineer role emphasizes designing security solutions and incident response. Both roles are essential in cloud security teams and often overlap in daily tasks.
Is Azure AZ 500 in demand?
What jobs can I get with Azure AZ 500?
What are popular job titles related to Azure Az 500 jobs in Iowa?
For Azure Az 500 jobs in Iowa, the most frequently searched job titles are:
What job categories do people searching Azure Az 500 jobs in Iowa look for?
The top searched job categories for Azure Az 500 jobs in Iowa are:
What cities in Iowa are hiring for Azure Az 500 jobs?
Cities in Iowa with the most Azure Az 500 job openings:
Cyber Identity - PAM/Non Human Identity Senior Consultant
Davenport, IA • Hybrid
Full-time
Posted 8 days ago
Deloitte rating
8.2
Based on 93 frontline employees who took The Breakroom Quiz
48th of 154 rated financial services
Job description
Non-Human Identity Senior Consultant
Join Deloitte's Cyber team to help clients secure the machine, service, and application identities that power modern digital environments. In this role, you will assess, design, and implement Non-Human Identity controls across cloud and hybrid ecosystems, with a focus on governance, secrets management, and privileged access. You will work with clients to reduce identity risk, improve operational resilience, and strengthen security across automation pipelines and platforms. This is an opportunity to contribute to an evolving capability area while delivering solutions in a high-demand cybersecurity market.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Non-Human Identity SC on the Cyber team, you will help clients secure machine, service, application and agentic AI identities across cloud, hybrid, and agentic environments by:
- Assessing client environments to identify Non-Human Identity risks, including secrets sprawl, over-permissioned service accounts, orphaned credentials, and lifecycle governance gaps
- Designing and deploying governance, privileged access, and secrets management capabilities for non-human identities across cloud, hybrid, and containerized platforms
- Implementing controls such as credential vaulting, automated rotation, just-in-time access, workload identity federation, and application credential integrations, and emerging agentic AI identity patterns (SPIFFE/SVID, agent-to-agent authentication).
- Advising clients on Non-Human Identity architecture, operating procedures, and implementation plans, including high-level design, low-level design, and runbooks
- Leading project workstreams, supporting proposals and statements of work, and contributing to practice development through reusable assets and market-facing content
The team
Our team helps organizations secure the identities of machines, services, and applications that support digital infrastructure. As cloud adoption, automation, and platform engineering expand, non-human identities have become a growing attack surface. We work with clients to improve visibility, establish governance, and implement controls that support secure and resilient operations.
Qualifications
Required:
- Bachelor's degree in Computer Science, Cybersecurity, Information Security, Engineering, Information Technology, Finance, Business, or a similar field
- 4+ years of experience developing, implementing, or architecting information systems
- 4+ years of experience implementing Privileged Access Management or secrets management solutions in cloud environments, hybrid environments, or both
- 4+ years of experience with at least 1 enterprise Privileged Access Management platform or secrets management platform, such as CyberArk, BeyondTrust, Delinea, HashiCorp Vault, Amazon Web Services Secrets Manager, or Azure Key Vault
- 4+ years of experience in at least 3 of the following: automated credential rotation, application credential vaulting, service account governance, service account provisioning and deprovisioning, entitlement reviews, least-privilege access design, integration with Lightweight Directory Access Protocol or Active Directory, integration with Kubernetes, Terraform, Jenkins, or GitHub Actions, scripting in PowerShell, Python, or Bash, or automation using Representational State Transfer application programming interfaces
- Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- 1+ year of consulting experience
- Experience with at least 1 Non-Human Identity or machine identity platform, such as Astrix Security, Entro Security, Clutch Security, Venafi, or Teleport
- Experience with at least 1 of the following: SPIFFE, SPIRE, workload identity federation, Istio, or Consul
- Experience securing identities in at least 1 continuous integration, continuous delivery, or infrastructure as code environment, such as GitHub Actions, Jenkins, Terraform, or Kubernetes
- 1 or more of the following certifications: AWS Certified Security - Specialty, Microsoft Azure Security Engineer Associate (AZ-500), Google Professional Cloud Security Engineer, or Certified Cloud Security Professional
- 1 or more of the following certifications: CyberArk Certified Delivery Engineer or Certified Information Systems Security Professional
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberDTP27
Non-Human Identity Senior Consultant
Join Deloitte's Cyber team to help clients secure the machine, service, and application identities that power modern digital environments. In this role, you will assess, design, and implement Non-Human Identity controls across cloud and hybrid ecosystems, with a focus on governance, secrets management, and privileged access. You will work with clients to reduce identity risk, improve operational resilience, and strengthen security across automation pipelines and platforms. This is an opportunity to contribute to an evolving capability area while delivering solutions in a high-demand cybersecurity market.
Recruiting for this role ends on 12/31/2026.
Work you'll do
As a Non-Human Identity SC on the Cyber team, you will help clients secure machine, service, application and agentic AI identities across cloud, hybrid, and agentic environments by:
- Assessing client environments to identify Non-Human Identity risks, including secrets sprawl, over-permissioned service accounts, orphaned credentials, and lifecycle governance gaps
- Designing and deploying governance, privileged access, and secrets management capabilities for non-human identities across cloud, hybrid, and containerized platforms
- Implementing controls such as credential vaulting, automated rotation, just-in-time access, workload identity federation, and application credential integrations, and emerging agentic AI identity patterns (SPIFFE/SVID, agent-to-agent authentication).
- Advising clients on Non-Human Identity architecture, operating procedures, and implementation plans, including high-level design, low-level design, and runbooks
- Leading project workstreams, supporting proposals and statements of work, and contributing to practice development through reusable assets and market-facing content
The team
Our team helps organizations secure the identities of machines, services, and applications that support digital infrastructure. As cloud adoption, automation, and platform engineering expand, non-human identities have become a growing attack surface. We work with clients to improve visibility, establish governance, and implement controls that support secure and resilient operations.
Qualifications
Required:
- Bachelor's degree in Computer Science, Cybersecurity, Information Security, Engineering, Information Technology, Finance, Business, or a similar field
- 4+ years of experience developing, implementing, or architecting information systems
- 4+ years of experience implementing Privileged Access Management or secrets management solutions in cloud environments, hybrid environments, or both
- 4+ years of experience with at least 1 enterprise Privileged Access Management platform or secrets management platform, such as CyberArk, BeyondTrust, Delinea, HashiCorp Vault, Amazon Web Services Secrets Manager, or Azure Key Vault
- 4+ years of experience in at least 3 of the following: automated credential rotation, application credential vaulting, service account governance, service account provisioning and deprovisioning, entitlement reviews, least-privilege access design, integration with Lightweight Directory Access Protocol or Active Directory, integration with Kubernetes, Terraform, Jenkins, or GitHub Actions, scripting in PowerShell, Python, or Bash, or automation using Representational State Transfer application programming interfaces
- Ability to travel 25-50%, on average, based on the work you do and the clients and industries/sectors you serve.
- Limited immigration sponsorship may be available.
Preferred:
- 1+ year of consulting experience
- Experience with at least 1 Non-Human Identity or machine identity platform, such as Astrix Security, Entro Security, Clutch Security, Venafi, or Teleport
- Experience with at least 1 of the following: SPIFFE, SPIRE, workload identity federation, Istio, or Consul
- Experience securing identities in at least 1 continuous integration, continuous delivery, or infrastructure as code environment, such as GitHub Actions, Jenkins, Terraform, or Kubernetes
- 1 or more of the following certifications: AWS Certified Security - Specialty, Microsoft Azure Security Engineer Associate (AZ-500), Google Professional Cloud Security Engineer, or Certified Cloud Security Professional
- 1 or more of the following certifications: CyberArk Certified Delivery Engineer or Certified Information Systems Security Professional
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $105,400 to $207,800.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
#CyberDTP27
About Deloitte
Sourced by ZipRecruiter
Industry
Finance and insurance and business management consulting
Company size
10,000+ Employees
Headquarters location
Orlando, FL, US