Job Summary:
Deloitte is a leading professional services firm that focuses on technology and innovation. They are seeking a Cyber Data Protection Manager to lead and manage a team responsible for implementing and supporting cyber data protection solutions while ensuring the security of sensitive data for Deloitte and its clients.
Responsibilities:
• Leading, managing, and overseeing technical workstreams and work of 4-5 Cyber Professionals
• Serving as a subject matter expert and trusted advisor to internal IT stakeholders in implementing strategic and practical data protection and encryption solutions based on new and emerging data security risks.
• Advising internal stakeholders on best practices for data encryption, decryption, certificate and key lifecycle management, PKI strategies across cloud, on-premises and hybrid environments.
• Designing, implementing, and operating technology and process solutions to reduce data risk, including certificate lifecycle management, certificate infrastructure monitoring, and data protection solution deployment in support of 180K+ Practitioners.
• Providing Tier 2 technical expertise and support to Deloitte End Users for several of the cyber data protection services supported by the team that includes TLS/SSL Certificate Lifecycle Management, Encryption Key Management, Data Classification and Rights Management, Code Signing, Public Key Infrastructure, Cyber Security Engineering and Data Protection Consultation.
• Managing the roll out of new data protection solutions to employees, getting them adopted and providing on-going support for those services.
• Assisting with technology and software reviews based on data protection and endpoint risks.
• Providing technical engineering and troubleshooting support to network, application, and user issues.
• Staying current on emerging encryption technologies and industry trends, while proactively evaluating and recommending tools and solutions to strengthen data security.
Qualifications:
Required:
• Bachelor's degree or equivalent in Cybersecurity, Information Security, Engineering, Computer Science, Information Technology, or related field
• Minimum 8 years of combined experience in the Information Security/Cybersecurity domains.
• Experience translating business, operational, and security requirements into architecture blueprints and implementation plans
• Minimum 1 year of previous people leadership or project management experience.
• Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
• Ability to travel 0-10%, on average, based on the work you do and the clients and industries/sectors you serve.
Preferred:
• Strong leadership skills, including executive stakeholder management, workshop facilitation, roadmap alignment, and decision-making support
• Ability to lead technical workstreams, architects, engineers, and offshore/onshore teams
• Experience with PKI concepts: Expertise in PKI architecture and enterprise trust models
• Experience leading Certificate Lifecycle Management strategy, design, and implementation
• Advanced knowledge of cryptography, certificate lifecycle processes, key management, HSM integration, and crypto policy enforcement
• Hands-on understanding of certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud, web/app servers, and network/security infrastructure.
• Experience leading certificate discovery, inventory rationalization, remediation, renewal automation, and compliance monitoring programs
• Familiarity with crypto-agility strategies and post-quantum cryptography readiness
• Knowledge of adjacent domains such as IAM, PAM, secrets management, zero trust, and machine identity management
• Experience with DevSecOps integration, CI/CD pipeline enablement
• Working knowledge of Python, PowerShell, Bash, REST APIs, or infrastructure automation
• Awareness of regulatory, audit, and policy requirements impacting cryptographic controls
• Strong mentoring capability for junior practitioners and emerging technical leads
• Comfort with executive-level reporting, issue escalation, and IT stakeholder discussions
• Professional security certification is desirable, such as CISSP.
• Knowledge of data protection regulations and standards (e.g., ISO 27001, ISO 27018, NIST and FIPS encryption and key standards).
• Understanding of networking and core networking protocols (e.g., TCP/IP, UDP, DNS, SMTP, HTTP, TLS, and distributed networks).
• Understanding security controls in public cloud environments (i.e., Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform) and SaaS services hardening.
• Ability to write technical reports and communicate technical content to business users.
• Self-motivated with a strong willingness to learn and grow with changing cloud technologies.
• Experience working in a virtual team.
Company:
Deloitte drives progress. Our firms around the world help clients become leaders wherever they choose to compete. Founded in 2008, the company is headquartered in Arlington, USA, with a team of 10001+ employees. The company is currently Late Stage.