About Deloitte
Deloitte is a leading global provider of audit & assurance, consulting, financial advisory, risk advisory, tax, and related services. Their Cyber team is dedicated to developing and transforming cyber programs in line with client strategic objectives, regulatory requirements, and risk appetite, ensuring enterprises are resilient against evolving threats.
About the Position
Introduction
Our Deloitte Cyber team is seeking a Cyber Data Protection/PKI Manager to help clients navigate the complex and ever-evolving threat landscape. This role involves delivering powerful solutions and managed services that simplify complexity, enabling clients to operate with resilience, grow with confidence, and proactively manage secure success.
Responsibilities
- Serve as a subject matter expert and trusted advisor, evaluating strategic and practical data protection and encryption requirements based on new and emerging data risks.
- Advise on best practices for data encryption, decryption, and secure key management.
- Assist clients in designing, implementing, and operating technology and process solutions to reduce data risks.
- Develop and lead the implementation of encryption strategies across various environments (cloud, on-premises, hybrid).
- Manage the deployment and lifecycle of PKI systems, ensuring robust and scalable certificate management processes.
- Monitor and maintain the health of certificate infrastructures to prevent downtime and security breaches.
- Assist with developing requirements, evaluating vendor solutions, architecting, implementing, and operating data protection solutions.
- Drive day-to-day engagement execution, communicating updates to clients and firm leadership.
- Provide leadership and support to delivery teams, ensuring high-quality work products.
- Track and report on project timelines to ensure on-time and on-budget delivery.
- Stay updated on emerging encryption technologies (e.g., post-quantum cryptography, confidential computing, secure enclaves, envelope encryption) and industry trends in cyber risk, data protection, and cryptography practices.
- Proactively evaluate and recommend new tools and solutions to enhance data security.
Requirements
- Bachelor’s degree in Cybersecurity, Information Security, Engineering, Computer Science, Information Technology, or a related field.
- 7+ years of professional experience in data protection and information security, including Data Discovery, Data Classification, Rights Management, Data Access Governance, Data Loss Prevention, Cloud Access Security Broker, Encryption, Certificate Lifecycle Management, Cloud Security, and/or SaaS Security.
- 7+ years with PKI concepts, demonstrating deep expertise in PKI architecture and enterprise trust models.
- 5+ years leading CLM strategy, design, and implementation using platforms such as AppViewX, Venafi, Keyfactor, DigiCert, or similar.
- Advanced knowledge of cryptography, certificate lifecycle processes, HSM integration, and crypto policy enforcement.
- Ability to define target-state architecture, integration patterns, and operating models for large-scale environments.
- Hands-on understanding of certificate automation across load balancers, WAFs, API gateways, Kubernetes, cloud, web/app servers, and network/security infrastructure.
- Experience leading discovery, inventory rationalization, remediation, renewal automation, and compliance monitoring programs.
- Strong client leadership skills, including executive stakeholder management, workshop facilitation, roadmap alignment, and decision-making support.
- Ability to lead technical workstreams, architects, engineers, and offshore/onshore teams.
- Experience translating business, operational, and security requirements into architecture blueprints and implementation plans.
- Strong understanding of delivery governance, risk management, dependencies, and quality assurance for enterprise security transformations.
- Limited sponsorship may be available.
Nice to Have
- Familiarity with crypto-agility strategies and post-quantum cryptography readiness.
- Knowledge of adjacent domains such as IAM, PAM, secrets management, zero trust, and machine identity management.
- Experience with DevSecOps integration, CI/CD pipeline enablement, and API-driven automation.
- Working knowledge of Python, PowerShell, Bash, REST APIs, or infrastructure automation patterns.
- Understanding of cloud-native certificate and key services in AWS, Azure, and GCP.
- Awareness of regulatory, audit, and policy requirements impacting cryptographic controls.
- Experience with operating model design, service transition, and support model definition.
- Ability to support business development, solutioning, estimation, staffing, and proposal writing.
- Strong mentoring capability for junior practitioners and emerging technical leads.
- Comfort with executive-level reporting, issue escalation, and steering committee discussions.
Benefits
- Competitive salary range: $144,000 - $265,000/year.
- Opportunity to work with a leading global professional services firm.
- Engage in cutting-edge cybersecurity projects.
About Company
Deloitte is a global professional services firm offering audit & assurance, consulting, financial advisory, risk advisory, tax, and related services. Our Cyber team focuses on developing and transforming cyber programs in line with client strategic objectives, regulatory requirements, and risk appetite, ensuring enterprises remain ahead of the evolving threat landscape.
How to Apply
Recruiting for this role ends on May 31, 2026. Please apply through the provided link: https://www2.deloitte.com/us/en/careers/careers.html?ref=CryptoJobsList&utm_source=CryptoJobsList
Apply Now
Your data is only shared with Deloitte
Location
United States
Type
Full-Time
Keywords
Similar Roles
Explore comparable positions
Cyber Data Protection/PKI Manager
Deloitte