Cloud Security Architect

Google LLC
Sterling, VA, United States
3 months ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$187,200.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services JIRA Microsoft Azure Bash Shell Command-Line Interface Cloud Computing Security Cloud Engineering Cyber Security Elasticsearch Github Identity and Access Management Internet Protocol
+23 more
Virtual Private Networks (VPN) Python (Programming Language) Network Security Routing Node.Js Windows PowerShell Cloud Services Ansible Systems Integration Cloud-native Network Functions (CNF) Pulumi Scripting Google Cloud Cloud Platform System Amazon Virtual Private Cloud (VPC) Cloudformation Infrastructure Automation Frameworks Information Technology Terraform Splunk Serverless Computing Docker Golang

Job description

  • Act as a Cloud Security Subject Matter Expert (SME) for client s Infosec department.
  • Identify opportunities to reduce cloud security risk for client, solution, and lead implementations.
  • Create design artifacts to enable members of the Cloud Security team to implement solutions (built in-house or purchased from vendor).
  • Partner with product teams to design secure network and serverless architectures.
  • Provide strong IAM Policy guidance to enable product teams to implement least privilege access.
  • Review cloud architecture and advise development teams on strong security design principles and identification of issues prior to deployment of systems or features.
  • Interface with Public Cloud providers to improve the security feature set of their products.
  • Interface with cloud security vendors to evaluate features and determine proof-of-value.
  • Maintain an awareness of cloud-costs and the cost implications of the security controls implemented.
  • Mentor junior members of the team.
  • Create and maintain documentation as it relates to cloud security designs/configurations, processes, standards, and recommendations.
  • Collaborate with senior management and department leaders to assess near- and long-term cloud security needs.
  • Staying current with the latest cloud threat mitigation tools and techniques

Requirements

  1. Experience Designing and Implementing systems that support multiple users.

  2. 5+ years of experience; Design, Implementation, and Maintenance of systems used by users.

The ability to evaluate technical documentation and diagrams for cloud environments and identify security issues in those designs.

  1. 5+ years of experience; Security Architectural Reviews and ability to create design artifacts including infrastructure diagrams.

Ability to review technical configuration and identify mitigating controls for security related misconfigurations

  1. 5+ years; Experience Managing Exception Requests

Candidates must have Google Cloud Platform Security experience.

Nice to Have Skills / Preferred Requirements

  1. AWS Certifications AWS Solutions Architect, AWS Security Specialty
  2. Google Cloud Platform Certifications Associate Cloud Engineer, Professional Security Engineer
  3. Security Engineer Certifications CISSP, CompTIA Security+
  4. Previous Experience with Wiz, Splunk, Brinqa, integrations with Slack and Jira

Soft Skills:

  1. Excellent verbal and written communication skills with a strong attention to detail.
  2. Remains productive while rapidly switching context.
  3. Thirst for knowledge and constantly driven to stay current with evolving threat landscapes.

Technology Requirements:

  1. Strong understanding of cloud-based infrastructure components with specific understanding of the security risks presented in a decentralized and hybrid environment.
  2. Broad understanding of information security and compliance risk, and how those apply to Public Cloud.
  3. Comfortable automating processes start to finish and can work closely with cloud solutions engineering and product teams to help integrate security into their existing processes.
  4. Proficient in at least one scripting language (python, Nodejs, Golang).
  5. Core understanding of IP Networking, routing, VPNs.
  6. Hands-on experience with some the following:

  7. Docker and Kubernetes
  8. Developing & Securing Serverless applications
  9. Security administration in AWS/Google Cloud Platform/Azure
  10. GitHub Security
  11. Infrastructure as code tools (Pulumi, Ansible, CloudFormation, Terraform)
  12. Command Line experience (Bash, Powershell, AWS-CLI)
  13. Cloud Network (VPC) engineering
  14. Cloud native security related tools (AWS Guard Duty, AWS WAF, Google Cloud Platform Security Center)
  15. Elastic Stack

Education / Certifications

  1. Bachelor s degree in computer science, Information Security, or related field.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · WWC 2023

1:55 min

Contrasting Terraform with Pulumi and cloud-specific tools

Devlin Duldulao · LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

2:06 min

High-paying roles driven by Google Cloud certifications

Asrar Asrar · WWC 2024

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

Videos

See all

Related articles

See all