> Markdown version of [/jobs/ext/3465431-cloud-security-analyst-gcp](https://www.wearedevelopers.com/jobs/ext/3465431-cloud-security-analyst-gcp). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Analyst (GCP) - **Company:** Arraya Solutions - **Location:** Philadelphia, PA, United States - **Salary:** $93,600.0 - $143,520.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Burp Suite, Ubuntu (Operating System), Cloud Computing, Cloud Computing Security, Control Objectives for Information and Related Technology (COBIT), Computer Networks, Dynamic Host Configuration Protocol, Linux, DevOps, Domain Name System (DNS), Fiddler (Software), Federal Information Processing Standards (FIPS), Infrastructure as a Service (IaaS), Identity and Access Management, Intrusion Detection Systems, Python (Programming Language), Network Security, Network Protocols, Nmap, Open Source Technology, Platform as a Service (PAAS), Ansible, Security Software, Security Information and Event Management, Software Engineering, TCP/IP, Software Vulnerability Management, EndPointSecurity, Data Logging, Scripting, Google Cloud, Cloud Platform System, Network Support, CIS Benchmarks, Terraform, Splunk, Devsecops, Vulnerability Analysis - **Published:** September 16, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=4ba6c1a6be141a98 ## About the Role * Extensive knowledge of computer networking concepts including LAN/WAN architectures, TCP/IP protocols, DHCP/DNS services, and network support tools. * Proven experience with cloud computing platforms such as Google Cloud Platform (GCP), AWS, or Azure; familiarity with PaaS and IaaS models. * Strong understanding of cybersecurity tools including SIEM systems (Splunk), endpoint detection & response (EDR), intrusion detection systems (IDS), vulnerability management platforms, and threat intelligence sources. * Proficiency in scripting languages such as Python or Bash for automation of security tasks; experience with DevOps practices like CI/CD pipelines using Terraform or Ansible. * Knowledge of open-source tools like Nmap for network scanning; expertise in system administration across various OS including Linux (Ubuntu, openSUSE) and Windows environments. * Familiarity with security standards such as ISO 27000 series, NIST frameworks, FIPS compliance requirements, and risk management frameworks like RMF or COBIT. * Ability to perform comprehensive security assessments including vulnerability assessments, penetration testing using tools like Burp Suite or Fiddler, and system hardening techniques. ## Description We are looking for a part time Cloud Security Analyst specializing in Google Cloud Platform (GCP). In this role, you will be at the forefront of safeguarding our cloud infrastructure, ensuring the integrity, confidentiality, and availability of critical data and systems. Your expertise will drive the implementation of robust security measures, conduct comprehensive risk assessments, and support our ongoing compliance with industry standards such as ISO 27001, NIST frameworks, and FIPS regulations. This position offers an exciting opportunity to leverage your knowledge of cloud security engineering, network protocols, and cybersecurity tools to protect our organization from evolving threats., * Design and enforce security controls within Google Cloud Platform (GCP), including IAM, data encryption, network security, and logging. * Conduct regular cloud security assessments and ensure configurations align with CIS benchmarks and healthcare compliance requirements. * Partner with engineering teams to embed security into the software development lifecycle (DevSecOps). * Develop and maintain an incident response plan; lead response efforts for security events and breaches. * Monitor the threat landscape for risks relevant to healthcare technology and proactively address vulnerabilities. * Experience with SOC 2 Type I or Type II audits. * Hands-on experience securing workloads in Google Cloud Platform (GCP). * understanding of security frameworks including NIST CSF, ISO 27001, and CIS Controls. * Excellent written and verbal communication skills - able to translate technical risk into business terms for executive audiences.