Senior Cloud Detection Engineer

Deloitte — United States · Posted ~3 hours ago

Senior No Visa

Skills

Cloud security engineering Cloud defense Threat detection Multi-cloud security Security telemetry Security data engineering Cloud infrastructure SIEM CNAPP AI-assisted security Cloud security Multi-cloud Cloud-native security AI

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A senior cloud security engineering opportunity focused on designing, building, and managing the telemetry, data, and infrastructure needed to detect and respond to threats across a multi-cloud environment. You will work with cloud-native security platforms, CNAPP technologies, SIEM, and emerging AI-assisted approaches to security detection and analysis.

Highlights

Senior cloud security engineering role focused on designing detection infrastructure and telemetry for a global multi-cloud environment. The position combines cloud engineering, security analytics, threat detection, and opportunities to apply AI to security engineering and analysis.

Description

Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization. Work you'll do Are you energized by building at the intersection of cloud and security engineering? Our current cloud security tooling is a genuinely wide, still-evolving mix - cloud-native platforms, CNAPP tooling, and classic SIEM - with real room to bring more coherence to it, and a real appetite to bring AI into how we build, detect, and analyze. If designing the telemetry, data, and infrastructure that a global organization depends on to detect and respond to threats across a multi-cloud environment sounds like a good problem to work on, read on to learn about an opportunity on the Cloud Defensive Operations team within Deloitte's Global Cloud Security (GCS) organization. As a Cloud Defense Security Engineer, you'll design, build, and directly manage the cloud security telemetry, monitoring, and alerting infrastructure that underpins how Deloitte's global cloud platform - used by Member Firms worldwide - is defended. GCS builds the platform-level capabilities that our Cyber Defense team relies on to see, understand, and respond to what's happening across the cloud - so your work has direct, foundational impact on Cyber, without the SOC or on-call rotation that usually comes with it. This role is anchored in strong, hands-on technical execution across AWS, Azure, and/or GCP. The ability to collaborate across teams and contribute to strategy matters too, but it's something we'll help you build over time rather than expect on day one. This role reports to the Cloud Defensive Operations Manager. Where you'll make an impact: Cloud detection and response platform. Contribute to an internal platform GCS builds to support Cyber Defense's cloud investigation, triage, and response. Unified threat visibility. Help bring cloud-native alerts, internal configuration guardrails, and our cloud-native application protection (CNAPP) service into a more unified view, in a landscape that's genuinely still evolving. AI-infused security engineering. Explore how AI can change how we build, detect, and analyze - from AI-assisted engineering to AI-driven correlation across data sources. The team Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived. Qualifications Required: Bachelor's degree or equivalent experience, plus 5+ years in software engineering, cloud engineering, or data engineeringHands-on, multi-cloud experience (AWS, Azure, and/or GCP), including directly managing cloud security infrastructure such as logging and alertingProgramming and Infrastructure as Code experience (e.g., Python, Terraform, or similar)Some experience with data modeling or correlating data across systems, and communicating with stakeholders outside your immediate team - depth isn't required, but this shouldn't be uncharted territoryMust be legally authorized to work in the United States without employer sponsorship, now or in the future Desired Skills / Certifications: Cloud-native telemetry & automation: Broader automation, scripting, or IaC experience (Terraform, Bicep, Pulumi); familiarity with unified data platforms, data modeling, data science, or reporting/BI tools such as Power BIDetection & SIEM platforms: Hands-on experience with major SIEM or log-analytics platforms - Splunk, Microsoft Sentinel, or Google SecOps/Chronicle - and query authoring in KQL, SPL, or similar correlation languagesCNAPP & posture tooling: Experience with major cloud-native security platforms or CNAPP tooling such as Wiz, Prisma Cloud, Microsoft Defender for Cloud, or Orca Security.Container & workload security: Exposure to Kubernetes/Docker security, and awareness of frameworks like MITRE ATT&CK for Cloud.Applied AI: Hands-on use of AI tools for building, analyzing, or correlating security dataRelevant certifications: AWS Certified Security - Specialty, Microsoft Certified: Azure Security Engineer Associate (AZ-500), Google Cloud Professional Cloud Security Engineer, CCSP, GIAC GCSA/GCDA, or Certified Kubernetes Security Specialist (CKS)Adjacent exposure: Experience with Security Operations, Incident Response, or Cyber Defense as a partner team. Limited immigration sponsorship may be available.