> Markdown version of [/jobs/ext/1322022-cloud-security-architect](https://www.wearedevelopers.com/jobs/ext/1322022-cloud-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Architect - **Company:** Westinghouse Electric Company LLC. - **Location:** Cranberry Township, PA, United States - **Experience:** Starter - **Salary:** $116,800.0 - $146,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Network Segmentation, Cloud Services, Sherwood Applied Business Security Architecture, Security Information and Event Management, Software Vulnerability Management, Zachman Framework, Data Logging, Google Cloud, Cloud Platform System, Amazon Virtual Private Cloud (VPC), Togaf, Kubernetes, Information Technology, Terraform, Devsecops, Vulnerability Analysis - **Published:** July 17, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/17614328?backUrl=%2Fcareer%2F17614328%2FCloud-Security-Architect-Pennsylvania-Cranberry-Township ## About the Role Bachelor's degree in IT, related technical discipline, or equivalent experience. * Minimum of 5+ years of experience in information technology * 3+ years in cybersecurity, cloud security, or infrastructure security roles, and at least 1-2 years of hands-on experience designing or securing solutions in Google Cloud Platform (GCP) environments. * Experience with GCP services such as IAM, VPC, Cloud Security Command Center, Cloud Logging, KMS, and Cloud Armor. * Experience using architecture methodologies such as SABSA, Zachman and/or TOGAF. * Experience implementing centralized logging, SIEM integration, and security monitoring solutions. * Familiarity with vulnerability management, container/Kubernetes security (e.g., GKE), and endpoint protection (AV/EDR)Knowledge of infrastructure-as-code (Terraform) and DevSecOps practices. ## Description Are you interested in being part of an innovative team that supports Westinghouse's mission to provide clean energy solutions? At Westinghouse, we recognize that our employees are our most valuable asset and we seek to identify, attract and recruit the most qualified talent while recognizing and encouraging the value of diversity in the global workplace. About the role: As a Cloud Security Architect, you will define, designing, and assessing secure cloud architectures that align with organizational security strategy, risk management goals, and enterprise standards. You will translate business and technical requirements into secure cloud designs and architectures within Google Cloud Platform (GCP) environments, ensuring the integration of security controls across the full lifecycle of GCP-based solutions. You will report to the Director Cybersecurity Operations and be located at Cranberry Township, PA. This is a hybrid position. Key Responsibilities: * Develop and implement secure cloud architectures across GCP services, ensuring understanding of enterprise security standards, regulatory requirements, and risk tolerance. * Define and document cloud security requirements and embed controls such as IAM, network segmentation, and encryption into architecture designs and cloud deployments. * Establish and enforce centralized logging and monitoring capabilities (e.g., GCP logging, SIEM integration) to meet enterprise detection, audit, and forensic requirements. * In collaboration with the Incident Response team, establish monitoring, alerting, and response capabilities integrated with enterprise incident response processes and guides for cloud environments. * Lead integration and validation of endpoint protection (AV/EDR), vulnerability scanning, CSPM, and other security tools within GCP workloads.Design and implement a secure, bestpractice-driven container and Kubernetes framework, including full security lifecycle management. * Support secure onboarding and monitoring of third-party providers, including MSSP access, ensuring appropriate controls, visibility, and compliance. * Perform security assessments, threat modeling, and architecture reviews to identify gaps and recommend mitigations across cloud environments. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)