Threat Modeler at Deloitte - ScoutJobs - The AI-curated global job board
Skip to content
Deloitte
Posted 13 hours ago

Threat Modeler

DeloitteThreat Modeler

Requirements

6+ years IT experience, 4+ years Cyber-Security experience, Threat Modeling (STRIDE, PASTA, Att&ck), Associate level cloud certification (AWS, GCP, or Azure), Associate or professional cyber-security certification, Proficiency in Python and FastAPI, Infrastructure as Code (Terraform, CloudFormation), Experience with CI/CD and SDLC, Knowledge of Docker, K8s, or Serverless

Skills

AWSFastAPIDockerPythonThreat ModelingTerraform

About the role

Responsibilities

  • Perform threat modeling using documented processes such as STRIDE or PASTA.
  • Develop, test, and deploy secure Python-based applications and automation tools.
  • Identify threats and specify mitigating controls while maintaining high work standards.
  • Manage the lifecycle of identified threats and controls within a DevOps environment.
  • Design and review technical architectures to ensure security compliance.
  • Provide feedback and improvements to existing threat modeling processes.
  • Present technical findings and work to senior stakeholders and cross-functional teams.

Requirements

  • Minimum of 6 years of IT experience with at least 4 years specifically in Cyber-Security.
  • Proven expertise in Threat Modeling (STRIDE, PASTA, Attack trees, or MITRE ATT&CK).
  • Strong proficiency in Python (asynchronous programming) and FastAPI.
  • Experience with Infrastructure as Code (Terraform or CloudFormation).
  • Hands-on experience with CI/CD pipelines, SDLC, and GitOps.
  • Knowledge of containerization and orchestration (Docker, K8s, or Serverless).
  • Ability to identify vulnerabilities using CWE or OWASP frameworks.
  • Experience working in regulated environments and agile/DevOps team structures.

Preferred Qualifications

  • Associate or professional level cloud certification (AWS, GCP, or Azure).
  • Associate or professional cyber-security certification (e.g., CISA, GSEC, SSCP, or CySA+).
  • Experience with Snowflake, MongoDB, Databricks, or GitHub.
  • Experience performing or supporting penetration testing.
  • Bachelor's degree in a computer-related field or equivalent professional experience.

About the Company

Deloitte is a leading global provider of audit and assurance, consulting, financial advisory, risk advisory, tax, and legal services.

ScoutJobs Agent

Get matches like this delivered daily

Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.

Get started — it's free

Threat Modeler

Deloitte · London

Sign up to apply