Job Title: T&T | Cyber: D&R | Associate Director | Security Architect | Gurugram

T&T | Cyber: D&R | Associate Director | Security Architect | Gurugram
• Job requisition ID : 108767
• Location: Gurugram
• Entity: Deloitte Touche Tohmatsu India LLP
The Team
Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks. Learn more about Cybersecurity
Your Work Profile
- Strong experience securing AWS and/or Azure cloud environments.
- Expertise in Cloud Security Posture Management (CSPM) and cloud governance frameworks
- Expertise in WIZ and ORCA with hand-on rules creation, integration/Onboarding and Management experience
- Deep understanding of cloud networking, IAM, encryption, key management, and zero-trust architectures.
- Experience securing cloud-native applications and microservices architectures.
- Understanding of Kubernetes and container security.
- Knowledge of:
- RBAC
- Network Policies
- Admission Controllers
- Container Runtime Security
- Secrets Management
- Experience with Infrastructure as Code (Terraform/OpenTofu/CloudFormation) and IaC security scanning.
- Experience implementing DevSecOps security controls across cloud delivery pipelines.
- Knowledge of cloud workload protection, container image scanning, and runtime threat detection.
- Familiarity with cloud logging, threat detection, and security monitoring capabilities.
- Understanding of compliance and regulatory frameworks applicable to cloud environments (e.g., NIST, CIS Benchmarks, ISO 27001, APRA CPS 234).
Leadership & Stakeholder Skills
- Proven experience leading Cloud Security vulnerability and configuration hardening remediation programmes.
- Ability to influence engineering, architecture, and technology teams to adopt security controls.
- Experience defining security strategy, standards, and secure engineering practices.
- Strong stakeholder management across technology, risk, audit, and business teams.
- Experience managing security metrics, KRIs, remediation programmes, and executive-level reporting.
- Ability to balance security requirements with delivery timelines and business objectives.
Nice to Have
- GenAI Security and AI governance experience.
- Banking/Financial Services industry experience.
- CISSP, AWS Architect, Azure Architect, CCSP, CISM
- Qualification- Bachelor's degree in engineering
