Egypt Job Openings
Deloitte
Innovation Hub I Cyber Security I Cloud Security Tech Lead, Cairo. Egypt
Cairo
August 18, 2024
What brings us all together at Deloitte? It’s how we approach the thousands of decisions we make every day. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for measurable impact. These five shared values lead every decision we make and action we take, guiding us to deliver impact how and where it matters most. :Collaborate for measurable impact.
Connect to your opportunity.
As a Cloud Security Tech Lead , you can expect to be involved in the following activities:
We are seeking a highly skilled and experienced Cloud Security Engineers with a specialization in one of the four public clouds, Oracle Cloud Infrastructure (OCI), Google Cloud Platform (GCP), Microsoft Azure and Amazon Web Services (AWS). The ideal candidate will be responsible for ensuring the security of clients’ cloud environments, by implementing and maintaining robust security measures and monitoring systems for potential threats. This role requires deep technical expertise in cloud security best practices, strong analytical skills, and the ability to collaborate effectively with cross-functional teams.
Responsibilities:
- Design, implement, and manage security controls, policies, and procedures for the cloud environment to safeguard against unauthorized access, data breaches, and other security risks.
- Conduct regular security assessments and audits of the security environment infrastructure, identifying vulnerabilities and areas for improvement, and recommending solutions to mitigate risks.
- Develop and enforce cloud security best practices and policies across the organization.
- Collaborate with development and operations teams to ensure secure deployment and operation of cloud applications.
- Implement native cloud security controls, such as IAM, VM, EDR, cloud security posture management to ensure appropriate access to cloud resources.
- Stay current with emerging cloud security threats, technologies, and best practices.
- Provide security training and guidance to team members and stakeholders on cloud security measures.
- Work with regulatory bodies to ensure compliance with industry standards and Middle East regulations related to cloud security.
- Manage and configure security tools and software, such as firewalls, intrusion detection systems, and encryption technologies, within cloud environments.
Connect to your skills and professional experience
In order to succeed in this role, you will need to match the following criteria:
- Bachelor’s degree in computer science, Information Security, or a related field.
- Minimum of Seven years of related experience.
Preferred Certifications:
- Cloud Certifications by AWS/GCP/OCI/Azure.
- Kubernetes Certifications
- Relevant certifications such as CISSP, CCSP, AWS Certified Security – Specialty, or equivalent are highly desirable.
Strong hands-on experience on three of the below five domains:
Cloud and Container Security:
- Experience with AWS, Azure, GCP or OCI and demonstrable affinity with Cloud technology.
- Experience with containerization: Kubernetes, Docker. Practical experience with serverless and secure development environments, infrastructure-as-code is a plus.
- Knowledge of information security principles and guidelines (including CIS, MITRE ATT&CK frameworks) is an advantage.
- Experience with security frameworks such as ISO, CSA and PCI.
- Experience with the implementation of cloud risk frameworks and optimization of controls (in CI/CD pipelines).
- Experience with Secure Cloud Architecture Design and Implementation; Design solutions for improving Cloud Security by enforcement of cloud security guardrails and standards.
- Experience with architecture and security reviews, threat modelling applications, and identifying areas of risk.
- Experience with encryption in-flight and at-rest practices, as well as certificate and secrets
- Knowledge of network architectures, topologies, and concepts (Firewalls, LB, WAF, CDN, VPC, ACL, TLS, SSH, and DNS).
- Experience with security solutions such as WAF, IPS, and anti-DDOS systems.
- Experience with network / perimeter security platforms and routing protocols, OSI layers etc.
- Experience implementing strategies to support secure and compliant architectures.
- Good knowledge of application architecture (Microservices, API gateway, service mesh, message queues etc.) and technical expertise in designing controls to secure each layer within the application architecture (web layer, integration layer, backend).
- Strong understanding of authentication and authorization patterns and their applicability within the development context (knowledge of Authentication / Authorization protocols and patterns, Authentication and Authorization within microservices).
- Experience with infrastructure automation, infrastructure as code, automated application deployment, monitoring/telemetry, logging, reporting/dashboarding, and continuous delivery technologies.
- Experience in cybersecurity principles, assessment and triage for security flaws and common vulnerabilities for web and mobile applications. Ability to understand and assess both threats and vulnerabilities, articulating these to both technical and business stakeholders.
- Experience with continuous security practices, including threat modelling, threat and vulnerability management, secure coding practices, and automated penetration testing.
- Understanding of the OWASP Top 10 application security risks and how to address them.
- Working knowledge of the Security Development Lifecycle (SDLC), OWASP Software Assurance Maturity Model (SAMM), or Building Security in Maturity Model (BSIMM).
- Understanding of web application security scanning software and related penetration testing tools such as SAST/DAST/IAST/SCA.
- Understanding of service-oriented architecture, building internet-scale, distributed, and critical services. Experience on integration & automation of various security technologies.
-
A willingness to work as part of a diverse team.
- A commitment to continuous improvement and lifelong learning.
- A passion for technology and a drive to deliver secure, high-quality solutions.
- An ability to remain calm under pressure whilst continuing to pay attention to detail.
- Strong analytical and problem-solving skills.
- Excellent communication and interpersonal abilities.
- Ability to work effectively in a fast-paced and dynamic environment. Proactive and self-motivated with a keen attention to detail.
Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to several audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints. This can mean that you and your "Immediate Family Members" are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm. The recruitment team will provide further detail as you progress through the recruitment process.
“What attracted me to Deloitte were the endless opportunities and the collective experience of other like-minded individuals. Deloitte’s clients include many of the world’s largest organizations; I wanted to be part of a team that made a difference that I could be proud of.” Dan, Consulting
Location: Cairo. Egypt
A career at Deloitte is an opportunity to develop in any direction you choose. Join us and you’ll experience a purpose you can believe in and an impact you can see. You’ll be free to bring your true self to work every day. And you’ll never stop growing, whatever your level.
New Job Alerts
Looking for similar job?
Deloitte
Innovation Hub I OMP Implementation Consultant, Cairo, Egypt
August 29, 2024
View Job DescriptionDeloitte
Innovation Hub I Kinaxis Solution Consultant in Supply Chain & Network Operations I Rapid Response, Cairo, Egypt
August 29, 2024
View Job DescriptionDeloitte
Innovation Hub I Anaplan Solution Architect Consultant, Cairo, Egypt
August 29, 2024
View Job DescriptionDeloitte
Innovation Hub I Advanced Planning Solution - OMP Solution Architect, Consultant, Cairo, Egypt
August 29, 2024
View Job DescriptionDeloitte
Innovation Hub I Data Solution Architect, Cairo, Egypt
August 27, 2024
View Job DescriptionDeloitte
Innovation Hub I Brand and Communication Associate, Cairo, Egypt
August 21, 2024
View Job DescriptionSee What’s New: Deloitte Job Opportunities
Deloitte
Senior - Internal Audit and Controls Assurance - Financial Services Industry
Luxembourg
November 19, 2024
View Job DescriptionDeloitte
Risk & Regulatory Reporting - Investment Fund Analyst
Luxembourg
November 18, 2024
View Job DescriptionDeloitte
Developer Back End (SQL Server & REST API) (m/f)
Luxembourg
November 15, 2024
View Job DescriptionDeloitte
Developer Front End (VueJS / JavaScript)(m/f)
Luxembourg
November 15, 2024
View Job Description