Site Reliability Engineer (Google Cloud Platf
Quzara Llc
United States
about 2 months ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Shift work
Job source
Tech stack
Microsoft Access
Audit Trail
Bash Shell
BigQuery
Cloud Computing
Cloud Computing Security
Cloud Engineering
Cyber Security
Information Systems
Computer Networks
Computer Engineering
Continuous Integration
+25 more
Network Address Translation
DevOps
Domain Name System (DNS)
Identity and Access Management
Intrusion Detection and Prevention
Virtual Private Networks (VPN)
Python (Programming Language)
Uptime
Network Architecture
Network Segmentation
Reliability Engineering
Cloud Services
Policy as Code
Data Logging
Network Switches
Cloud-native Network Functions (CNF)
Scripting
Google Cloud
Load Balancing
Cloud Monitoring
Build Server
Amazon Virtual Private Cloud (VPC)
Infrastructure Automation Frameworks
Information Technology
Terraform
Job description
- Design, build, and operate secure GCP cloud foundations and landing zones for federal and regulated environments, including organization hierarchy, policy guardrails, Assured Workloads, and Cloud Foundation Toolkit-based deployment patterns.
- Engineer and maintain secure GCP network architectures, including Shared VPC, hub-and-spoke topology, VPC Service Controls, Access Context Manager, Private Google Access, Private Service Connect, Cloud NGFW, Cloud Armor, load balancing, DNS, NAT, VPN, and Interconnect under least-exposure principles.
- Implement and administer identity, access, privileged access, and encryption controls, including least-privilege IAM, custom roles, IAM Conditions, deny policies, service-account hygiene, Workload Identity Federation, Privileged Access Manager, Access Approval, Access Transparency, BeyondCorp Enterprise, IAP, Cloud KMS, Cloud HSM, CMEK, and Cloud EKM.
- Develop and operate security monitoring, threat detection, and response capabilities using Chronicle/Google Security Operations, Security Command Center, curated detections, YARA-L, threat intelligence, SOAR playbooks, telemetry pipelines, and integration with MDR/SOC workflows.
- Build and maintain logging, audit, observability, and reliability capabilities using Cloud Audit Logs, aggregated log sinks, retention policies, BigQuery/Chronicle exports, Cloud Monitoring, Cloud Logging, dashboards, uptime checks, SLIs/SLOs, alerting, on-call operations, incident response, and blameless postmortems.
- Secure and operate cloud workloads and platforms, including Sensitive Data Protection/Cloud DLP for CUI discovery and de-identification, hardened GKE environments, Workload Identity, Shielded/Confidential nodes, network policy, GKE Policy Controller, Binary Authorization, and secure Artifact Registry image promotion.
- Automate infrastructure, security, compliance, and reliability operations using Terraform, Infrastructure Manager, Cloud Foundation Toolkit, policy-as-code, secure CI/CD pipelines, Cloud Build, Cloud Deploy, and scripting in Python, Go, or Bash to reduce manual work and operational toil.
- Translate federal security and compliance requirements into GCP configurations and audit-ready evidence, including NIST SP 800-53, NIST SP 800-171, FedRAMP, CMMC, control inheritance, customer responsibility matrices, RMF/FedRAMP authorization support, and assessor/AO documentation.
- Partner directly with customers and internal stakeholders to communicate technical requirements, operational risks, compliance expectations, and implementation status to both technical and non-technical audiences.
Marginal Functions of the Job
- Other duties as assigned
Normal Work Schedule
This is a full-time position. Standard business hours are Monday through Friday 8:30 AM to 5:30 PM. Additional time outside of these hours may be needed to complete the essential functions of the job.
Requirements
Do you have experience in Terraform?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Computer Engineering, or a related field.
- 5+ years of hands-on cloud engineering, site reliability engineering (SRE), or cloud security experience, including 3+ years building and operating production Google Cloud Platform (GCP) environments.
- Demonstrated experience designing and operating GCP landing zones / cloud foundations, network segmentation, and VPC Service Controls.
- Hands-on experience with Chronicle (Google Security Operations) and Security Command Center.
- Strong knowledge of GCP IAM, encryption / CMEK (Cloud KMS), and Assured Workloads for regulated environments.
- Experience operating production systems with an SRE mindset - observability (Cloud Monitoring / Cloud Logging), SLOs, on-call, and incident response.
- Working knowledge of at least one federal control framework (NIST SP 800-53, NIST SP 800-171, FedRAMP, or CMMC).
- Proficiency building infrastructure as code with Terraform (Infrastructure Manager / Cloud Foundation Toolkit) and at least one scripting language (Python, Go, or Bash).
- Proven ability to produce audit-ready documentation and translate technical configurations into compliance evidence.
- Strong written and verbal communication skills with the ability to clearly convey complex information.
- Demonstrated ability to manage multiple projects and deadlines with strong organizational skills.
- Must be a U.S. Citizen and hold an active U.S. government Secret (or higher) security clearance.
Preferred Certifications
- Google Professional Cloud Security Engineer
- Google Professional Cloud DevOps Engineer or Professional Cloud Network Engineer
- Google Professional Cloud Architect
- CISSP, CCSP, or similar cybersecurity certification
- FedRAMP, RMF, or CMMC-related training or certifications are a plus
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
ER
Erin Rifkin
about 1 year ago
LM
Luis Minvielle
7 Cloud Computing Trends Coming in 2025 for Developers
over 2 years ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
LM
Luis Minvielle
Fully Remote Software Engineer Jobs
about 2 years ago
EM
Eli McGarvie
Find a Developer Job: 12 Best Job Sites For Developers
over 3 years ago