1

Critical Infrastructure Security Jobs in Raleigh, NC

This role is focused on ensuring the stability, security, and performance of critical infrastructure systems. * Location: Raleigh, NC 27601 ( Local Candidates Only ) * Work Arrangement: Hybrid * Role ...

Software Infrastructure Engineer

Durham, NC · On-site

$167K - $198K/yr

... quality and security standards. Your qualifications We seek a dedicated and innovative ... Bound by a shared mission, we harness advanced technology to address the critical challenge of ...

next page

Showing results 1-20

Critical Infrastructure Security information

See Raleigh, NC salary details

$71.9K

$138.2K

$165.3K

How much do critical infrastructure security jobs pay per year?

As of Aug 4, 2026, the average yearly pay for critical infrastructure security in Raleigh, NC is $138,165.00, according to ZipRecruiter salary data. Most workers in this role earn between $139,000.00 and $139,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in the critical infrastructure security position, and why are they important?

To thrive in Critical Infrastructure Security, you need a robust understanding of risk assessment, cybersecurity principles, and physical security protocols, often supported by degrees in cybersecurity, information technology, or engineering. Familiarity with security frameworks (like NIST or ISO), intrusion detection systems, and certifications such as CISSP or CISM is highly valued. Strong analytical thinking, effective communication, and the ability to remain calm under pressure are important soft skills in this role. These capabilities are essential for identifying threats, mitigating risks, and ensuring the continuous operation and safety of vital assets and systems.

What is a critical infrastructure security?

A Critical Infrastructure Security job focuses on protecting essential systems and assets, such as energy grids, transportation networks, and communication systems, from cyber and physical threats. Professionals in this role assess vulnerabilities, implement security measures, and respond to incidents to ensure operational resilience. They work with government agencies, private companies, and security teams to prevent disruptions that could impact public safety or economic stability. This role often requires expertise in risk management, cybersecurity, and regulatory compliance.

What are some typical challenges faced by professionals in critical infrastructure security roles?

Professionals working in Critical Infrastructure Security often encounter challenges such as rapidly evolving cyber threats, balancing the integration of new technologies with legacy systems, and maintaining compliance with strict regulatory standards. They must also collaborate closely with various departments, public agencies, and sometimes external partners to coordinate emergency response and incident management. The role may involve monitoring for threats around the clock and responding quickly to mitigate disruptions, which can be both demanding and rewarding. Staying updated on the latest security trends and participating in ongoing training are important aspects of overcoming these challenges and succeeding in the field.

What are popular job titles related to Critical Infrastructure Security jobs in Raleigh, NC? For Critical Infrastructure Security jobs in Raleigh, NC, the most frequently searched job titles are:
What job categories do people searching Critical Infrastructure Security jobs in Raleigh, NC look for? The top searched job categories for Critical Infrastructure Security jobs in Raleigh, NC are:
What cities near Raleigh, NC are hiring for Critical Infrastructure Security jobs? Cities near Raleigh, NC with the most Critical Infrastructure Security job openings:
Infographic showing various Critical Infrastructure Security job openings in Raleigh, NC as of July 2026, with employment types broken down into 1% As Needed, 82% Full Time, 11% Part Time, and 6% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $138,165 per year, or $66.4 per hour.

Google Infrastructure and Security Lead Architect

Deloitte

Raleigh, NC

Other

Posted 6 days ago


Deloitte rating

8.1

Company rating: 8.1 out of 10

Based on 91 frontline employees who took The Breakroom Quiz

57th of 150 rated financial services


Job description

Google Infrastructure and Security Lead Architect

Join our AI & Engineering team in transforming technology platforms, driving innovation, and helping make a significant impact on our clients' success. You'll work alongside talented professionals reimagining and re-engineering operations and processes that are critical to businesses. Your contributions can help clients improve financial performance, accelerate new digital ventures, and fuel growth through innovation.
AI & Engineering leverages cutting-edge engineering capabilities to build, deploy, and operate integrated/verticalized sector solutions in software, data, AI, network, and hybrid cloud infrastructure. These solutions are powered by engineering for business advantage, transforming mission-critical operations. We enable clients to stay ahead with the latest advancements by transforming engineering teams and modernizing technology & data platforms. Our delivery models are tailored to meet each client's unique requirements.
Engineering as a Service provides complete design, implementation, and technology operations, leveraging our core engineering expertise. We transform engineering teams, modernize technology, and deliver complex programs with a product engineering approach. Our flexible delivery models-traditional teams, pools, or pods-are tailored to each client's needs, offering engineering-led advisory, implementation, and operational capabilities to accelerate innovation.

Recruiting for this role ends on 10-31-2026
Work you'll do:

As a Google Cloud (GCP) Infrastructure & Security Lead Architect, you will serve as a strategic technical leader and trusted advisor for our enterprise clients, guiding them through complex cloud transformation journeys. In this role, you will bridge the gap between high-level business objectives and deep technical execution, focusing on building scalable, highly available, and deeply secure cloud environments.

You will be responsible for the end-to-end design and implementation of foundational cloud architectures, from establishing secure multi-tenant landing zones and robust networking topologies to guiding application migration strategies. A critical component of this role is embedding security by design-leveraging Google Cloud's advanced security portfolio to protect workloads, secure data, and maintain continuous compliance against evolving cyber threats. You will collaborate closely with development, operations, and security teams to foster a culture of automation and DevSecOps excellence.

Responsibilities include:

  • Architect and deploy highly scalable, multi-tenant GCP landing zones utilizing structured resource hierarchies (Organizations, Folders, Projects) tailored to client governance and billing requirements.
  • Design centralized identity and access strategies leveraging Google Cloud Identity, Single Sign-On (SSO), and role-based access control (RBAC). Implement Context-Aware Access and the Principle of Least Privilege (PoLP) to secure human and machine identities.
  • Standardize and automate the deployment of cloud infrastructure using Terraform. Develop modular, reusable infrastructure code to ensure consistent, repeatable, and auditable environment provisioning.
  • Design and implement robust network topologies, including Shared VPCs, Hub-and-Spoke models, and isolated subnets to control traffic flow and minimize the blast radius of potential incidents.
  • Architect highly available and secure connections between on-premises data centers and Google Cloud using Dedicated/Partner Interconnect or High Availability (HA) Cloud VPN.
  • Secure inbound and outbound traffic flows by implementing Cloud Armor for WAF and DDoS protection, hierarchical firewall policies, and VPC Service Controls to prevent data exfiltration.
  • Evaluate existing on-premises or multi-cloud legacy workloads to define optimal migration blueprints, utilizing industry-standard patterns.
  • Architect and deploy highly scalable, multi-tenant GCP platform utilizing structured resource hierarchies (Organizations, Folders, Projects) tailored to client governance and billing requirements.
  • Guide development teams in modernizing applications by adopting GCP managed services, serverless computing (Cloud Run, Cloud Functions), and container orchestration platforms (Google Kubernetes Engine - GKE).
  • Collaborate with data architects to ensure real-time streaming and batch ingestion pipelines (e.g., Pub/Sub, Dataflow, BigQuery) are architected with strict security boundaries and encryption standards.
  • Integrate and tune Google Cloud Security Command Center (SCC Premium) to provide unified visibility into misconfigurations, vulnerabilities, and active threats.
  • Architect strategies for data security at rest and in transit using Cloud KMS (including Customer-Managed Encryption Keys), GCP Secret Manager, and Cloud Data Loss Prevention (DLP).
  • Develop and implement organization policies and Google Cloud Policy Library rules to establish automated security guardrails that prevent non-compliant resource deployments.

 Required Qualifications

  • Bachelor's degree in computer science, Information Technology, Cybersecurity, or a closely related technical field (or equivalent practical experience).
  • 7-10+ years of hands-on experience in cloud architecture, infrastructure engineering, or cloud security, with a significant portion of that time dedicated to Google Cloud Platform environments.
  • Strong practical experience writing and maintaining Infrastructure as Code (IaC) using Terraform, alongside familiarity with CI/CD tools (e.g., GitHub Actions, GitLab CI, Cloud Build).
  •  Proven track record of participating in/or leading enterprise-scale cloud migrations and modernizing legacy infrastructure.
  • Ability to travel up to 50% based on the work you do and the clients and industries/sectors you serve.
  • Limited immigration sponsorship may be available.

Preferred Qualifications:

  • 12+ years of comprehensive experience in cloud migration and security architecture, particularly in consulting, professional services, or client-facing advisory roles.
  • Active status as a Google Cloud Professional Cloud Architect or Google Cloud Professional Cloud Security Engineer.
  • Recognized cybersecurity certifications such as CISSP, CCSP, or CISM.
  • Deep expertise in securing containerized workloads, Kubernetes (GKE) clusters, and microservice meshes (e.g., Anthos/Google Cloud Service Mesh).
  • Strong ability to align technical designs with compliance frameworks such as NIST SP 800-53, CIS Benchmarks, SOC 2, HIPAA, or GDPR.

Wages + Salary

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $141,200 to $278,300.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Qualifications:

Google Infrastructure and Security Lead Architect

Join our AI & Engineering team in transforming technology platforms, driving innovation, and helping make a significant impact on our clients' success. You'll work alongside talented professionals reimagining and re-engineering operations and processes that are critical to businesses. Your contributions can help clients improve financial performance, accelerate new digital ventures, and fuel growth through innovation.
AI & Engineering leverages cutting-edge engineering capabilities to build, deploy, and operate integrated/verticalized sector solutions in software, data, AI, network, and hybrid cloud infrastructure. These solutions are powered by engineering for business advantage, transforming mission-critical operations. We enable clients to stay ahead with the latest advancements by transforming engineering teams and modernizing technology & data platforms. Our delivery models are tailored to meet each client's unique requirements.
Engineering as a Service provides complete design, implementation, and technology operations, leveraging our core engineering expertise. We transform engineering teams, modernize technology, and deliver complex programs with a product engineering approach. Our flexible delivery models-traditional teams, pools, or pods-are tailored to each client's needs, offering engineering-led advisory, implementation, and operational capabilities to accelerate innovation.

Recruiting for this role ends on 10-31-2026
Work you'll do:

As a Google Cloud (GCP) Infrastructure & Security Lead Architect, you will serve as a strategic technical leader and trusted advisor for our enterprise clients, guiding them through complex cloud transformation journeys. In this role, you will bridge the gap between high-level business objectives and deep technical execution, focusing on building scalable, highly available, and deeply secure cloud environments.

You will be responsible for the end-to-end design and implementation of foundational cloud architectures, from establishing secure multi-tenant landing zones and robust networking topologies to guiding application migration strategies. A critical component of this role is embedding security by design-leveraging Google Cloud's advanced security portfolio to protect workloads, secure data, and maintain continuous compliance against evolving cyber threats. You will collaborate closely with development, operations, and security teams to foster a culture of automation and DevSecOps excellence.

Responsibilities include:

  • Architect and deploy highly scalable, multi-tenant GCP landing zones utilizing structured resource hierarchies (Organizations, Folders, Projects) tailored to client governance and billing requirements.
  • Design centralized identity and access strategies leveraging Google Cloud Identity, Single Sign-On (SSO), and role-based access control (RBAC). Implement Context-Aware Access and the Principle of Least Privilege (PoLP) to secure human and machine identities.
  • Standardize and automate the deployment of cloud infrastructure using Terraform. Develop modular, reusable infrastructure code to ensure consistent, repeatable, and auditable environment provisioning.
  • Design and implement robust network topologies, including Shared VPCs, Hub-and-Spoke models, and isolated subnets to control traffic flow and minimize the blast radius of potential incidents.
  • Architect highly available and secure connections between on-premises data centers and Google Cloud using Dedicated/Partner Interconnect or High Availability (HA) Cloud VPN.
  • Secure inbound and outbound traffic flows by implementing Cloud Armor for WAF and DDoS protection, hierarchical firewall policies, and VPC Service Controls to prevent data exfiltration.
  • Evaluate existing on-premises or multi-cloud legacy workloads to define optimal migration blueprints, utilizing industry-standard patterns.
  • Architect and deploy highly scalable, multi-tenant GCP platform utilizing structured resource hierarchies (Organizations, Folders, Projects) tailored to client governance and billing requirements.
  • Guide development teams in modernizing applications by adopting GCP managed services, serverless computing (Cloud Run, Cloud Functions), and container orchestration platforms (Google Kubernetes Engine - GKE).
  • Collaborate with data architects to ensure real-time streaming and batch ingestion pipelines (e.g., Pub/Sub, Dataflow, BigQuery) are architected with strict security boundaries and encryption standards.
  • Integrate and tune Google Cloud Security Command Center (SCC Premium) to provide unified visibility into misconfigurations, vulnerabilities, and active threats.
  • Architect strategies for data security at rest and in transit using Cloud KMS (including Customer-Managed Encryption Keys), GCP Secret Manager, and Cloud Data Loss Prevention (DLP).
  • Develop and implement organization policies and Google Cloud Policy Library rules to establish automated security guardrails that prevent non-compliant resource deployments.

 Required Qualifications

  • Bachelor's degree in computer science, Information Technology, Cybersecurity, or a closely related technical field (or equivalent practical experience).
  • 7-10+ years of hands-on experience in cloud architecture, infrastructure engineering, or cloud security, with a significant portion of that time dedicated to Google Cloud Platform environments.
  • Strong practical experience writing and maintaining Infrastructure as Code (IaC) using Terraform, alongside familiarity with CI/CD tools (e.g., GitHub Actions, GitLab CI, Cloud Build).
  •  Proven track record of participating in/or leading enterprise-scale cloud migrations and modernizing legacy infrastructure.
  • Ability to travel up to 50% based on the work you do and the clients and industries/sectors you serve.
  • Limited immigration sponsorship may be available.

Preferred Qualifications:

  • 12+ years of comprehensive experience in cloud migration and security architecture, particularly in consulting, professional services, or client-facing advisory roles.
  • Active status as a Google Cloud Professional Cloud Architect or Google Cloud Professional Cloud Security Engineer.
  • Recognized cybersecurity certifications such as CISSP, CCSP, or CISM.
  • Deep expertise in securing containerized workloads, Kubernetes (GKE) clusters, and microservice meshes (e.g., Anthos/Google Cloud Service Mesh).
  • Strong ability to align technical designs with compliance frameworks such as NIST SP 800-53, CIS Benchmarks, SOC 2, HIPAA, or GDPR.

Wages + Salary

The wage range for this role takes into account the wide range of factors that a...


What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom