Cloud Security Architect

Google LLC
4 days ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 187K

Job location

Tech stack

Amazon Web Services (AWS)
JIRA
Azure
Bash
Command-Line Interface
Cloud Computing Security
Cloud Engineering
Computer Security
Elasticsearch
Github
Identity and Access Management
Internet Protocol
Virtual Private Networks (VPN)
Python
Network Security
Routing
Node.js
Powershell
Cloud Services
Ansible
Systems Integration
Cloud-native Network Functions (CNF)
Pulumi
Scripting (Bash/Python/Go/Ruby)
Google Cloud Platform
Cloud Platform System
Amazon Web Services (AWS)
Cloudformation
Infrastructure Automation Frameworks
Information Technology
Terraform
Splunk
Serverless Computing
Docker
Go

Job description

  • Act as a Cloud Security Subject Matter Expert (SME) for client s Infosec department.
  • Identify opportunities to reduce cloud security risk for client, solution, and lead implementations.
  • Create design artifacts to enable members of the Cloud Security team to implement solutions (built in-house or purchased from vendor).
  • Partner with product teams to design secure network and serverless architectures.
  • Provide strong IAM Policy guidance to enable product teams to implement least privilege access.
  • Review cloud architecture and advise development teams on strong security design principles and identification of issues prior to deployment of systems or features.
  • Interface with Public Cloud providers to improve the security feature set of their products.
  • Interface with cloud security vendors to evaluate features and determine proof-of-value.
  • Maintain an awareness of cloud-costs and the cost implications of the security controls implemented.
  • Mentor junior members of the team.
  • Create and maintain documentation as it relates to cloud security designs/configurations, processes, standards, and recommendations.
  • Collaborate with senior management and department leaders to assess near- and long-term cloud security needs.
  • Staying current with the latest cloud threat mitigation tools and techniques

Requirements

  1. Experience Designing and Implementing systems that support multiple users.

  2. 5+ years of experience; Design, Implementation, and Maintenance of systems used by users.

The ability to evaluate technical documentation and diagrams for cloud environments and identify security issues in those designs.

  1. 5+ years of experience; Security Architectural Reviews and ability to create design artifacts including infrastructure diagrams.

Ability to review technical configuration and identify mitigating controls for security related misconfigurations

  1. 5+ years; Experience Managing Exception Requests

Candidates must have Google Cloud Platform Security experience.

Nice to Have Skills / Preferred Requirements

  1. AWS Certifications AWS Solutions Architect, AWS Security Specialty
  2. Google Cloud Platform Certifications Associate Cloud Engineer, Professional Security Engineer
  3. Security Engineer Certifications CISSP, CompTIA Security+
  4. Previous Experience with Wiz, Splunk, Brinqa, integrations with Slack and Jira

Soft Skills:

  1. Excellent verbal and written communication skills with a strong attention to detail.
  2. Remains productive while rapidly switching context.
  3. Thirst for knowledge and constantly driven to stay current with evolving threat landscapes.

Technology Requirements:

  1. Strong understanding of cloud-based infrastructure components with specific understanding of the security risks presented in a decentralized and hybrid environment.

  2. Broad understanding of information security and compliance risk, and how those apply to Public Cloud.

  3. Comfortable automating processes start to finish and can work closely with cloud solutions engineering and product teams to help integrate security into their existing processes.

  4. Proficient in at least one scripting language (python, Nodejs, Golang).

  5. Core understanding of IP Networking, routing, VPNs.

  6. Hands-on experience with some the following:

  7. Docker and Kubernetes

  8. Developing & Securing Serverless applications

  9. Security administration in AWS/Google Cloud Platform/Azure

  10. GitHub Security

  11. Infrastructure as code tools (Pulumi, Ansible, CloudFormation, Terraform)

  12. Command Line experience (Bash, Powershell, AWS-CLI)

  13. Cloud Network (VPC) engineering

  14. Cloud native security related tools (AWS Guard Duty, AWS WAF, Google Cloud Platform Security Center)

  15. Elastic Stack

Education / Certifications

  1. Bachelor s degree in computer science, Information Security, or related field.

Apply for this position