hirly

PwC

Senior Associate -Cyber Security Forward Deployed(Bilingual FR/EN)

4 Locations

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at PwC first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Seniority
Senior
Country
CA
Work mode
On-site / unstated
First seen by hirly
24 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Line of Service

Advisory

Industry/Sector

Not Applicable

Specialism

Managed Services

Management Level

Senior Associate

Job Description & Summary

As a Senior Associate – Cyber Security Forward Deployed you are a multi-faceted technologist. You lean heavily into using AI, are comfortable working in a client’s environment, writing code, integrating disparate security tools, and build production-ready defense systems.

You will be both part of and/or leading the planning and execution of a variety of opportunities including AI to Defend and/or cloud and application security initiatives for our clients. You will architect deeply technical solutions, lead cross-functional engineering pods, and convert client ambiguity into shipped capabilities. You will simultaneously drive practice growth —while remaining hands-on and technical.

You will be a key technical contributor in PwC’s Cybersecurity Consulting practice. You’ll work closely with managers and other team members to design and implement security solutions (e.g. Cloud/App Security, AI to Defend) for our clients, helping secure their cloud environments and software development processes. In this consulting role, you will tackle complex security challenges – performing analyses, setting up security controls, conducting assessments – and collaborate with cross-functional teams (cloud engineers, developers, risk advisors) to embed security throughout clients’ digital transformation projects. You’ll also engage with client stakeholders, own technical workstreams end-to-end and ensure security recommendations align with business goals and are clearly communicated. This position offers an opportunity to build your expertise in cloud infrastructure security, secure application development, DevSecOps and emerging capabilities/skills in AI, while growing your consulting skills in a dynamic, client-facing environment. You operate as the senior engineer on a delivery pod, mentor Associates, own technical workstreams end-to-end, and translate client ambiguity into shipped, production-ready solutions.

The Opportunity:

As a Senior Associate – Cyber Security Forward Deployed Engineer , unlock your potential and embrace the chance to drive meaningful outcomes that’ll elevate your career. Your role will include, but isn’t limited to:

Design, develop, test, and deploy security solutions across cloud (AWS/Azure/GCP) and applications (SDLC integrations, AppSec pipelines)

Implement and integrate a variety of security products ( e.g. Cloud & Application Security) ; configure secure baselines; perform cloud and Kubernetes security architecture reviews and remediation.

Build production-quality code and infrastructure including but not limited to secure CI/CD pipelines, IaC modules, cloud landing zones.

Work with cloud architects and developers to implement security solutions including cloud platforms and applications . Configure security controls (identity & access management, data encryption, network security) and ensure cloud configurations follow leading security practices and compliance requirements.

Conduct security assessments and threat modeling for client cloud environments and applications, identifying vulnerabilities, misconfigurations, and compliance gaps.

Deliver cloud and application security strategy engagements and advise organization s on how to transform their current cloud & application security practice.

Integrate security into the software development lifecycle , collaborating with DevOps teams to incorporate automated security tools and secure coding practices ( DevSecOps ) into CI/CD pipelines. Design secure architecture and coding guidelines , ensuring that new applications and services are built with security by design.

Support the delivery of client projects by preparing clear, high-quality deliverables (reports, presentations, technical documentation) that communicate security findings and recommendations effectively. Engage with client stakeholders , explaining technical issues in clear terms and advising on improving cloud and app security postures from planning through deployment.

Collaborate within multidisciplinary teams – including other cybersecurity specialists, data architects, and business consultants – to deliver comprehensive security solutions. Contribute to knowledge sharing and mentor associates by demonstrating best practices in cloud and application security (review code; write runbooks, ADRs, and technical documentation ) . Stay updated on emerging cloud and application security trends (e.g., new cloud security services, emerging threats, compliance changes) to continuously improve our offerings.

Contribute to pre-sales: POCs, demos, prototypes, RFP technical content, solution architecture artifacts.

  • What You'll Bring:
  • Your skills, knowledge, and experiences are what set you apart. Here's what we look for:

Bachelor’s degree in Computer Science , Software Engineering, Cybersecurity or a related discipline (STEM) . 3–6+ years of relevant experience in hands-on software development, security engineering, DevSecOps , or cloud security.

Solid hands-on with at least one major cloud (AWS, Azure, GCP) — IAM, networking, KMS, native security services (GuardDuty , Defender, SCC), and IaC (Terraform).

One of the following depth areas: Cloud: Kubernetes (EKS/AKS/GKE), Helm, container security (Falco, Trivy ), CSPM/CNAPP tooling (Wiz, Prisma, Defender for Cloud, Lacework), zero-trust networking. AppSec: Secure SDLC, SAST/DAST/SCA, API security, threat modeling, secure code review, secrets management, supply-chain security.

Familiarity with security platforms: Microsoft Defender, Google SecOps/Chronicle, CrowdStrike, Splunk, Sentinel, or equivalents.

Solid understanding of core cloud security concepts (network segmentation, identity & access management, encryption, monitoring) and secure application development practices (e.g., familiarity with OWASP Top 10 vulnerabilities and remediation).

Experience in security architecture reviews or implementation of security controls for cloud services and applications.

Proficiency in one or more scripting or programming languages (e.g., Python, Java, or similar) is expected.

Effective communication and problem-solving skills , able to break down complex security concepts and translate technical findings into business implications .

Experience working in project-based or consulting environments , with a record of delivering results collaboratively in team-oriented projects to meet client needs under guidance of project leaders.

Knowledge of security standards and frameworks (e.g., NIST CSF, ISO 27001 compliance, CSA Cloud Controls , etc.) is advantageous for performing security assessments and guiding clients on compliance best practices.

PwC Canada is committed to cultivating an inclusive, hybrid work environment. Exact expectations for your team can be discussed in your interview.

Preferred Qualifications - Forward Deployed Engineer (FDE) Skillset :

Professional certifications such as Certified Cloud Security Professional (CCSP), AWS/Azure Solutions Architect or specialty, CISSP, CKS , or relevant cloud/application/cybersecurity certifications are considered strong assets.

Experience in AI Security including LLM application development (prompt engineering, RAG), LangChain / LangGraph , MCP server development, AI/ML frameworks ( PyTorch , HuggingFace ), MLOps (Docker, Kubernetes, CI/CD for models), AI red-teaming, LLM observability.

Experience embedding directly with customers to deploy and operationalize a security or AI product in their environment — building custom integrations, telemetry sources, and bespoke workflows.

Comfort with the FDE working model: hands-on debugging in unfamiliar customer systems (Linux, Kubernetes, networki ng, distributed systems) and converting customer friction into product improvements.

Anticipatory problem-solving in ambiguous, o

Original posting on PwC's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job