採用

Infrastructure & Virtualization Security (IV&S) Specialist w/ CI Poly
Arlington, VA; Richmond, VA
·
On-site
·
Full-time
·
1mo ago
Benefits & Perks
•Professional development budget
•Parental leave
•Team events and activities
•Generous paid time off and holidays
•Learning
•Parental Leave
Required Skills
Node.js
Python
JavaScript
Position Summary
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Work You'll Do:
Our team, within Cyber Division, performs IV&V functions for infrastructure and applications / cybersecurity WAN risk assessments. JCIP Technical Reviewers play a pivotal role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC). They conduct comprehensive technical assessments and perform detailed analysis of vulnerability scans to ensure compliance with Intelligence Community Directives (ICDs), IC Technical Implementation Guides (TIGs), Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST 800-53 rev 5 security controls. OTHER: Conduct comprehensive technical assessments and manual audits of virtualized infrastructure platforms and network-attached storage (NAS) environments in Intelligence Community (IC) settings.
- Evaluate compliance with IC Directives, Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST 800-53 Rev 5 and 800-171 security controls relevant to virtualization and storage systems.
- Perform independent manual STIG checklist reviews for leading virtualization platforms including VMware ESXi, Microsoft Hyper-V, and KVM, as well as NAS/SAN devices such as Net App and Dell EMC systems.
- Analyze risks and attack vectors associated with virtualized environments and storage architectures; assess controls including encryption, authentication, access management, and FIPS compliance.
- Provide technical recommendations and architectural guidance to improve virtual infrastructure security posture.
- Liaise with virtualization system administrators, storage teams, and leadership to communicate findings, risk assessments,and remediation strategies.
- Lead and mentor Level 1 IDRs in conducting IV&S inspections and risk analysis.
- Stay current with emerging virtualization and storage security threats, industry trends, and vendor hardening best practices.
- Participate in inspection planning, execution, reporting, and deliver clear, concise written and oral assessments.
- Travel as necessary to support onsite inspections. (8-12 weeks of travel avg, some international and passport required).
Knowledge:
- Strong understanding of virtualization platforms: VMware ESXi, Microsoft Hyper-V, and KVM architectures and security features.
- Familiarity with common NAS/SAN systems (Net App, Dell EMC) and their security considerations.
- Ability to interpret and apply STIGs, SRGs, and NIST 800-53/800-171 controls related to virtualized infrastructure and storage.
- Knowledge of encryption standards, including FIPS, and their application in storage security.
- Awareness of virtualization and storage-related attack vectors and mitigation strategies.
The Team
Deloitte's Government & Public Services (GPS) practice - our people, ideas, technology and outcomes - is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.
Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client's technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.
The Project Delivery Talent Model is designed for professionals with specialized skills that align to a current client need. Team members focus on delivering services to clients, without additional expectations related to business development or promotion. Their employment is tied to their role on a project, and they are eligible for a benefits package that is competitive for project delivery-focused professionals.
Qualifications
Required:
-
Bachelor's degree + 13 years of experience OR Master's Degree with 5+ years of experience
-
Active Top Secret/SCI clearance with a CI Poly
-
Ability to travel 25%, on average, based on the work you do and the clients and industries/sectors you serve
-
Local to St. Louis, Missouri, Rosslyn, VA or Norfolk, VA area and able to come onsite 5 days a week.
-
IAT LEVEL III (CASP, CISA, CISSP, GCED, or GCIH)
-
8+ years of experience with the following:
-
VMware ESX
-
Microsoft Hyper V
-
KVM Hypervisor
-
Dell/EMC ScaleIO
-
Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html
Deloitte is committed to providing reasonable accommodations for people with disabilities. If you require a reasonable accommodation to participate in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at USTalentCICInbox@deloitte.com.
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas, and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.
Our purpose
Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.
Professional development
From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
As used in this posting, "Deloitte" means Deloitte Transactions and Business Analytics LLP, a subsidiary of Deloitte LLP. Please see www.deloitte.com/us/about for a detailed description of the legal structure of Deloitte LLP and its subsidiaries.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Requisition code: 320315
Job ID 320315
Contact & Location
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs

AI Infrastructure Architect
Okta · Bellevue, Washington

Cyber Data Engineer - Director - Cloud & Infrastructure Engineering
Morgan Stanley · Bengaluru, Karnataka, India

Principal Systems Ontologist (Remote)
CrowdStrike · USA - Remote

Infrastructure Lifecycle Architect - ERP
Cloudflare · Hybrid

Software Engineer (Event Sourcing & Stream Processing)
Tenable · US - Remote - California - Bay Area, US - Remote - Virginia, US - Remote - Massachusetts , US - Headquarters - Maryland - Columbia
About Deloitte

Deloitte
Private PartnershipA business consulting company that offers audit, consulting, financial advisory, and tax services.
10,001+
Employees
London
Headquarters
Reviews
3.4
17 reviews
Work Life Balance
1.5
Compensation
2.0
Culture
1.8
Career
2.2
Management
1.5
25%
Recommend to a Friend
Pros
Professional development and certification support
Opportunities to work on critical projects
Recognition of high performers
Cons
Poor management and leadership decisions
Unfair promotion processes despite good performance
Layoffs and job insecurity
Salary Ranges
87,539 data points
Junior/L3
Junior/L3 · Analyst
3,676 reports
$92,194
total / year
Base
$86,837
Stock
-
Bonus
$5,357
$67,832
$126,306
Interview Experience
7 interviews
Difficulty
3.1
/ 5
Duration
14-28 weeks
Offer Rate
29%
Experience
Positive 14%
Neutral 29%
Negative 57%
Interview Process
1
Application Review
2
Recruiter Screen
3
Technical/Hiring Manager Interview
4
Behavioral Interview
5
Team/Panel Interview
6
Offer
Common Questions
Technical Knowledge
Behavioral/STAR
Case Study
Past Experience
Culture Fit
News & Buzz
BRP Announces Auditor Transition from Deloitte to PwC Effective After 2026 Year-End Filing - TipRanks
Source: TipRanks
News
·
5w ago
New Deloitte Survey: Corporate and Private Equity Leaders Anticipate Stronger M&A Activity in 2026, Along With Continued Volatility, Relative to 2025 - PR Newswire
Source: PR Newswire
News
·
5w ago
ROI from AI: How organizations are turning investment into real business value - Deloitte
Source: Deloitte
News
·
5w ago
The State of AI in the Enterprise - Deloitte
Source: Deloitte
News
·
5w ago