Cloud Security Analyst (GCP)
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+29 more
Job description
We are looking for a part time Cloud Security Analyst specializing in Google Cloud Platform (GCP). In this role, you will be at the forefront of safeguarding our cloud infrastructure, ensuring the integrity, confidentiality, and availability of critical data and systems. Your expertise will drive the implementation of robust security measures, conduct comprehensive risk assessments, and support our ongoing compliance with industry standards such as ISO 27001, NIST frameworks, and FIPS regulations. This position offers an exciting opportunity to leverage your knowledge of cloud security engineering, network protocols, and cybersecurity tools to protect our organization from evolving threats., * Design and enforce security controls within Google Cloud Platform (GCP), including IAM, data encryption, network security, and logging.
- Conduct regular cloud security assessments and ensure configurations align with CIS benchmarks and healthcare compliance requirements.
- Partner with engineering teams to embed security into the software development lifecycle (DevSecOps).
- Develop and maintain an incident response plan; lead response efforts for security events and breaches.
- Monitor the threat landscape for risks relevant to healthcare technology and proactively address vulnerabilities.
- Experience with SOC 2 Type I or Type II audits.
- Hands-on experience securing workloads in Google Cloud Platform (GCP).
- understanding of security frameworks including NIST CSF, ISO 27001, and CIS Controls.
- Excellent written and verbal communication skills - able to translate technical risk into business terms for executive audiences.
Requirements
- Extensive knowledge of computer networking concepts including LAN/WAN architectures, TCP/IP protocols, DHCP/DNS services, and network support tools.
- Proven experience with cloud computing platforms such as Google Cloud Platform (GCP), AWS, or Azure; familiarity with PaaS and IaaS models.
- Strong understanding of cybersecurity tools including SIEM systems (Splunk), endpoint detection & response (EDR), intrusion detection systems (IDS), vulnerability management platforms, and threat intelligence sources.
- Proficiency in scripting languages such as Python or Bash for automation of security tasks; experience with DevOps practices like CI/CD pipelines using Terraform or Ansible.
- Knowledge of open-source tools like Nmap for network scanning; expertise in system administration across various OS including Linux (Ubuntu, openSUSE) and Windows environments.
- Familiarity with security standards such as ISO 27000 series, NIST frameworks, FIPS compliance requirements, and risk management frameworks like RMF or COBIT.
- Ability to perform comprehensive security assessments including vulnerability assessments, penetration testing using tools like Burp Suite or Fiddler, and system hardening techniques.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this roleβ¦