> Markdown version of [/jobs/ext/589864-gcp-devops-engineer](https://www.wearedevelopers.com/jobs/ext/589864-gcp-devops-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # GCP DevOps Engineer - **Company:** Global Technology Solutions Ltd - **Location:** United States (Remote available) - **Experience:** Experienced - **Contract:** Temporary to permanent - **Skills:** Kubernetes Security, Active Directory, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Audit Trail, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Cloud Engineering, Static Program Analysis, Cyber Security, Continuous Integration, Data Security, DevOps, Domain Name System (DNS), Federated Identity Management, Identity and Access Management, Intrusion Detection and Prevention, Subnetting, Virtual Private Networks (VPN), Python (Programming Language), Key Management, Network Security, Network Connections, Open Source Technology, Reliability Engineering, Site Reliability Engineering Practices, Cloud Services, Zero Trust Network Access, Security Information and Event Management, Software Engineering, Systems Integration, Wide Area Networks, Policy as Code, Network Switches, Google Cloud, Cloud Monitoring, Genesys, DevOps Tools - Open-source, Multi-Cloud, Infrastructure as Code (IaC), Amazon Virtual Private Cloud (VPC), Gitlab, Kubernetes, Deployment Automation, Hashicorp, Bitbucket, CIS Benchmarks, Firewall Services Module, Terraform, Splunk, Software Version Control, Serverless Computing, Docker - **Published:** June 20, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=d25188e3882df38f ## About the Role Do you have experience in Security technology solutions implementations?, * 3+ years of experience in DevOps, cloud engineering, or platform/infrastructure engineering roles. * 3+ years of hands-on experience with Google Cloud Platform (GCP), with a focus on foundations, networking, and security. * Demonstrated experience designing and deploying enterprise GCP Landing Zones (Google Cloud Foundation Toolkit, CFT, or equivalent). * Strong background in cloud security architecture, identity & access management (IAM), and network security design. * Proven experience integrating security into CI/CD workflows and automating policy enforcement. * Experience working within regulated environments or with compliance frameworks (SOC 2, NIST, CIS, ISO 27001, or FedRAMP). Preferred Experience * Experience with multi-cloud or hybrid connectivity (GCP Interconnect, VPN, SD-WAN). * Background in SRE practices - SLOs, incident response, and chaos engineering. * Contributions to open-source security or DevOps tooling. * Familiarity with Google Assured Workloads or sovereign cloud requirements. * Prior experience in financial services, healthcare, or government-regulated industry. Technical Capabilities Cloud Foundations & Landing Zones GCP Organization hierarchy design (Org Folders * Projects) including Assured Workloads folders * Shared VPC, VPC Service Controls, and Private Service Connect * Resource hierarchy and inheritance model for policies and billing * Cloud Foundation Toolkit (CFT) and/or Fabric FAST landing zone blueprints * Google Cloud's Architecture Framework and Well-Architected principles Security & Compliance * IAM design: service accounts, Workload Identity Federation, custom roles, and least-privilege enforcement, Chronicle, Security Command Center, Cloud Monitoring, Splunk Container Orchestration GKE, Anthos, Docker Secrets Management Secret Manager, HashiCorp Vault Identity & Access Cloud IAM, Workload Identity Federation, Active Directory Version Control GitLab, Bitbucket Languages/Scripting Python, Bash Certifications (Preferred) * Google Cloud Professional Cloud Security Engineer (highly preferred) * Google Cloud Professional Cloud Architect * Certified Kubernetes Security Specialist (CKS) * AWS Certified Security Specialty or Azure Security Engineer (beneficial for multi-cloud context) * CISSP, CCSP, or equivalent security certification ## Description Global Technology Solutions, Inc., is a U.S.-based leader in CCaaS, AI/ML, and Cloud Solutions. As a Gold Partner with Genesys and Advanced Partner with AWS, Google Cloud, and Azure, we deliver implementation, consulting, managed services, and product development that drives higher ROI for our clients. Our fully remote, agile teams are empowered to innovate-and we're looking for a GCP DevOps Engineer to shape our next wave of intelligent and secure offerings. About the Role Role Overview: Google Cloud Platform specialist to guide the provisioning, security, and enterprise enablement of cloud landing zones, ensuring alignment with strict organizational policies to support scalable project deployments. You will work closely with clients, our application development and design teams to ensure our clients' and internal GCP environments meet the highest standards of reliability, compliance, and operational excellence. The ideal candidate is highly consultative, proactive, and thrives in a hands-on environment where rapid learning is the norm. Key Responsibilities * GCP Architecture: Design and configure secure, enterprise-ready GCP landing zones to support PoC's, Pilots, and full-scale deployments without requiring future migrations. * Domain Expertise: Provide specialized knowledge in IAM and Cloud Networking. * Advisory & Collaboration: Lead workshops with cross-functional client teams to review current setups, ensure adherence to best practices, and provide official strategic recommendations. * Security & Compliance: Ensure all platform enablement strictly follow established enterprise security policies and procedures * Develop and enforce cloud security baselines, guardrails, and governance policies across GCP organizations, folders, and projects. * Implement and manage Infrastructure as Code (IaC) for cloud foundations, including VPC architecture, shared services, and connectivity patterns. * Integrate security tooling and controls into CI/CD pipelines (shift-left security), including static analysis, secrets detection, container scanning, and policy enforcement. * Lead the design and implementation of Zero Trust network architecture, identity federation, and least privilege access models. * Define and manage Security Command Center (SCC), Chronicle SIEM, and other GCP-native security tooling for continuous monitoring and threat detection. * Conduct threat modeling, risk assessments, and security reviews for new infrastructure patterns and cloud-native services. * Collaborate with compliance teams to maintain alignment with frameworks such as CIS Benchmarks, NIST 800-53, SOC 2, FedRAMP, or equivalent. * Automate security and compliance controls using policy-as-code tools (OPA/Rego, Terraform Sentinel, Forseti/Config Validator). * Respond to and remediate security incidents, vulnerabilities, and misconfigurations across the cloud estate. * Mentor teams on cloud security best practices and drive a culture of shared security ownership. * Lead development and maintenance of standardization templates to be used for discovery by sales and implementation teams in ensuring client security requirements are well documented., * Data security: CMEK, Cloud HSM, Secret Manager, DLP API * Security Command Center (SCC) Premium - findings, threat detection, compliance dashboards * Chronicle SIEM and Security Operations (SecOps) integrations * Binary Authorization and supply chain security (SLSA, Sigstore) * Audit logging strategy: Cloud Audit Logs, log sinks, and retention policies Infrastructure as Code & Automation * Terraform (advanced): modules, workspaces, remote state, Sentinel policies * GitOps workflows: ArgoCD, Flux, or equivalent * Policy-as-Code: OPA/Rego, Checkov, tfsec, KICS Containers & Kubernetes * Google Kubernetes Engine (GKE): hardening, Autopilot, node pool design * Container security: Artifact Registry scanning, Distroless images, Pod Security Standards Networking * VPC design: subnets, firewall rules, hierarchical firewall policies * Cloud NAT, Cloud DNS, Private Google Access * Hybrid connectivity: Cloud Interconnect, HA VPN, Network Connectivity Center * Network Intelligence Center and packet mirroring ## Related Videos - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) ## Related Articles - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers)