Site Reliability Engineer (Google Cloud Platf

Quzara Llc
United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Shift work
Job source

Tech stack

Microsoft Access Audit Trail Bash Shell BigQuery Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Information Systems Computer Networks Computer Engineering Continuous Integration
+25 more
Network Address Translation DevOps Domain Name System (DNS) Identity and Access Management Intrusion Detection and Prevention Virtual Private Networks (VPN) Python (Programming Language) Uptime Network Architecture Network Segmentation Reliability Engineering Cloud Services Policy as Code Data Logging Network Switches Cloud-native Network Functions (CNF) Scripting Google Cloud Load Balancing Cloud Monitoring Build Server Amazon Virtual Private Cloud (VPC) Infrastructure Automation Frameworks Information Technology Terraform

Job description

  • Design, build, and operate secure GCP cloud foundations and landing zones for federal and regulated environments, including organization hierarchy, policy guardrails, Assured Workloads, and Cloud Foundation Toolkit-based deployment patterns.
  • Engineer and maintain secure GCP network architectures, including Shared VPC, hub-and-spoke topology, VPC Service Controls, Access Context Manager, Private Google Access, Private Service Connect, Cloud NGFW, Cloud Armor, load balancing, DNS, NAT, VPN, and Interconnect under least-exposure principles.
  • Implement and administer identity, access, privileged access, and encryption controls, including least-privilege IAM, custom roles, IAM Conditions, deny policies, service-account hygiene, Workload Identity Federation, Privileged Access Manager, Access Approval, Access Transparency, BeyondCorp Enterprise, IAP, Cloud KMS, Cloud HSM, CMEK, and Cloud EKM.
  • Develop and operate security monitoring, threat detection, and response capabilities using Chronicle/Google Security Operations, Security Command Center, curated detections, YARA-L, threat intelligence, SOAR playbooks, telemetry pipelines, and integration with MDR/SOC workflows.
  • Build and maintain logging, audit, observability, and reliability capabilities using Cloud Audit Logs, aggregated log sinks, retention policies, BigQuery/Chronicle exports, Cloud Monitoring, Cloud Logging, dashboards, uptime checks, SLIs/SLOs, alerting, on-call operations, incident response, and blameless postmortems.
  • Secure and operate cloud workloads and platforms, including Sensitive Data Protection/Cloud DLP for CUI discovery and de-identification, hardened GKE environments, Workload Identity, Shielded/Confidential nodes, network policy, GKE Policy Controller, Binary Authorization, and secure Artifact Registry image promotion.
  • Automate infrastructure, security, compliance, and reliability operations using Terraform, Infrastructure Manager, Cloud Foundation Toolkit, policy-as-code, secure CI/CD pipelines, Cloud Build, Cloud Deploy, and scripting in Python, Go, or Bash to reduce manual work and operational toil.
  • Translate federal security and compliance requirements into GCP configurations and audit-ready evidence, including NIST SP 800-53, NIST SP 800-171, FedRAMP, CMMC, control inheritance, customer responsibility matrices, RMF/FedRAMP authorization support, and assessor/AO documentation.
  • Partner directly with customers and internal stakeholders to communicate technical requirements, operational risks, compliance expectations, and implementation status to both technical and non-technical audiences.

Marginal Functions of the Job

  • Other duties as assigned

Normal Work Schedule

This is a full-time position. Standard business hours are Monday through Friday 8:30 AM to 5:30 PM. Additional time outside of these hours may be needed to complete the essential functions of the job.

Requirements

Do you have experience in Terraform?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Computer Engineering, or a related field.

  • 5+ years of hands-on cloud engineering, site reliability engineering (SRE), or cloud security experience, including 3+ years building and operating production Google Cloud Platform (GCP) environments.
  • Demonstrated experience designing and operating GCP landing zones / cloud foundations, network segmentation, and VPC Service Controls.
  • Hands-on experience with Chronicle (Google Security Operations) and Security Command Center.
  • Strong knowledge of GCP IAM, encryption / CMEK (Cloud KMS), and Assured Workloads for regulated environments.
  • Experience operating production systems with an SRE mindset - observability (Cloud Monitoring / Cloud Logging), SLOs, on-call, and incident response.
  • Working knowledge of at least one federal control framework (NIST SP 800-53, NIST SP 800-171, FedRAMP, or CMMC).
  • Proficiency building infrastructure as code with Terraform (Infrastructure Manager / Cloud Foundation Toolkit) and at least one scripting language (Python, Go, or Bash).
  • Proven ability to produce audit-ready documentation and translate technical configurations into compliance evidence.
  • Strong written and verbal communication skills with the ability to clearly convey complex information.
  • Demonstrated ability to manage multiple projects and deadlines with strong organizational skills.
  • Must be a U.S. Citizen and hold an active U.S. government Secret (or higher) security clearance.

Preferred Certifications

  • Google Professional Cloud Security Engineer
  • Google Professional Cloud DevOps Engineer or Professional Cloud Network Engineer
  • Google Professional Cloud Architect
  • CISSP, CCSP, or similar cybersecurity certification
  • FedRAMP, RMF, or CMMC-related training or certifications are a plus

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:22 min

Leveraging unique cultural backgrounds in engineering design

Ixchel Ruiz · LIVE

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

2:30 min

Leveraging BigQuery ML for scalable SQL-based segmentation experiments

Julian Joseph · LIVE

2:06 min

High-paying roles driven by Google Cloud certifications

Asrar Asrar · WWC 2024

4:35 min

Defining service-level indicators based on user behavior

Maxim Schepelin Maxim Schepelin · WWC Europe 2026

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

Videos

See all

Related articles

See all