> Markdown version of [/jobs/ext/1311520-cloud-security-architect](https://www.wearedevelopers.com/jobs/ext/1311520-cloud-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Architect - **Company:** Westinghouse Electric Company LLC - **Location:** Avery County, NC, United States - **Experience:** Starter - **Salary:** $116,800.0 - $146,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Network Segmentation, Cloud Services, Sherwood Applied Business Security Architecture, Security Information and Event Management, Software Vulnerability Management, Zachman Framework, Data Logging, Google Cloud, Cloud Platform System, Amazon Virtual Private Cloud (VPC), Togaf, Kubernetes, Information Technology, Terraform, Devsecops, Vulnerability Analysis - **Published:** July 17, 2026 - **Apply:** https://www.oriontalent.com/search-jobs/career/11627911/cloud-security-architect-north-carolina-nc-cranberry-township ## About the Role * Bachelor's degree in IT, related technical discipline, or equivalent experience. * Minimum of 5+ years of experience in information technology * 3+ years in cybersecurity, cloud security, or infrastructure security roles, and at least 1-2 years of hands-on experience designing or securing solutions in Google Cloud Platform (GCP) environments. * Experience with GCP services such as IAM, VPC, Cloud Security Command Center, Cloud Logging, KMS, and Cloud Armor. * Experience using architecture methodologies such as SABSA, Zachman and/or TOGAF. * Experience implementing centralized logging, SIEM integration, and security monitoring solutions. * Familiarity with vulnerability management, container/Kubernetes security (e.g., GKE), and endpoint protection (AV/EDR)Knowledge of infrastructure-as-code (Terraform) and DevSecOps practices. ## Description Are you interested in being part of an innovative team that supports Westinghouse's mission to provide clean energy solutions? At Westinghouse, we recognize that our employees are our most valuable asset and we seek to identify, attract and recruit the most qualified talent while recognizing and encouraging the value of diversity in the global workplace., As a Cloud Security Architect, you will define, designing, and assessing secure cloud architectures that align with organizational security strategy, risk management goals, and enterprise standards. You will translate business and technical requirements into secure cloud designs and architectures within Google Cloud Platform (GCP) environments, ensuring the integration of security controls across the full lifecycle of GCP-based solutions. You will report to the Director Cybersecurity Operations and be located at Cranberry Township, PA. This is a hybrid position., * Develop and implement secure cloud architectures across GCP services, ensuring understanding of enterprise security standards, regulatory requirements, and risk tolerance. * Define and document cloud security requirements and embed controls such as IAM, network segmentation, and encryption into architecture designs and cloud deployments. * Establish and enforce centralized logging and monitoring capabilities (e.g., GCP logging, SIEM integration) to meet enterprise detection, audit, and forensic requirements. * In collaboration with the Incident Response team, establish monitoring, alerting, and response capabilities integrated with enterprise incident response processes and guides for cloud environments. * Lead integration and validation of endpoint protection (AV/EDR), vulnerability scanning, CSPM, and other security tools within GCP workloads.Design and implement a secure, best-practice-driven container and Kubernetes framework, including full security lifecycle management. * Support secure onboarding and monitoring of third-party providers, including MSSP access, ensuring appropriate controls, visibility, and compliance. * Perform security assessments, threat modeling, and architecture reviews to identify gaps and recommend mitigations across cloud environments. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)