Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success. Work You'll Do: Our team, within Cyber Division, performs IV&V functions for infrastructure and applications / cybersecurity WAN risk assessments. JCIP Technical Reviewers play a pivotal role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC). Conduct thorough technical assessments of UNIX-based systems (e.g., Solaris, AIX, Linux variants) for compliance with Intelligence Community Directives (ICDs), Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST 800-53 Rev 5 and 800-171 controls. OTHER: Perform manual audits of UNIX configurations, user access controls, file system permissions, patch management, and security logging. Analyze vulnerabilities related to UNIX systems and recommend mitigation strategies aligned with JCIP and IC security policies. Interpret and apply complex STIG requirements specific to UNIX environments. Collaborate with system administrators, security teams, and leadership to present findings and provide actionable security recommendations. Lead and mentor Level 1 UNIX inspectors, providing guidance on technical evaluations and inspection reporting. Stay updated on emerging UNIX threats, patches, and best practices for system hardening. Participate in inspection planning, execution, and reporting. Travel as required to support onsite inspections. (8-12 weeks of travel avg, some international and passport required). Knowledge: Deep understanding of UNIX operating systems including Solaris, AIX, and major Linux distributions (Red Hat, CentOS, Ubuntu). Expertise in system hardening, patch management, user and group management, file permissions, and security auditing. Proficient in interpreting UNIX-specific STIGs and aligning findings with NIST 800-53/800-171 controls. Familiarity with shell scripting for automation of audit and remediation tasks. The Team Deloitte's Government & Public Services (GPS) practice - our people, ideas, technology and outcomes - is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise. Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client's technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products. The Project Delivery Talent Model is designed for professionals with specialized skills that align to a current client need. Team members focus on delivering services to clients, without additional expectations related to business development or promotion. Their employment is tied to their role on a project, and they are eligible for a benefits package that is competitive for project delivery-focused professionals.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
5,001-10,000 employees