- Company Name
- Affine
- Job Title
- Cloud Security Architect - Google Cloud Platform (GCP)
- Job Description
-
Job title: Cloud Security Architect – Google Cloud Platform (GCP)
Role Summary: Design, implement, and govern secure cloud solutions on Google Cloud. Lead threat modeling, policy development, and integration of security controls across CI/CD pipelines, ensuring compliance with industry standards.
Expactations: Deliver robust, scalable cloud security architectures for complex, multi-tier applications. Mentor development and DevOps teams, drive automation of security practices, and maintain up-to-date knowledge of GCP services and emerging threats.
Key Responsibilities:
- Architect and secure GCP environments using Cloud Armor, Cloud Load Balancing, Cloud CDN, VPC Service Controls, Cloud Run, GKE, and IAM.
- Create and enforce security policies, WAF rules, and adaptive protection measures.
- Integrate security into CI/CD workflows and deployment models.
- Conduct threat modeling, risk assessments, and develop mitigation plans.
- Deploy DDoS protection, rate limiting, and geo‑access controls for critical workloads.
- Build infrastructure security standards, reference architectures, and IaC templates (Terraform/Easy Deployment Manager).
- Configure logging, monitoring, and alerting via Cloud Logging, Cloud Monitoring, and Security Command Center.
- Mentor teams on cloud security best practices and DevSecOps principles.
- Ensure compliance with SOC2, PCI, ISO 27001, and other regulatory frameworks.
Required Skills:
- 10+ years IT experience, 4+ years in cloud architecture/security.
- Deep proficiency with GCP services: Cloud Armor, VPC, Load Balancer, Cloud CDN, Cloud Run, GKE, IAM, Service Accounts, Resource Hierarchies.
- Network security, zero‑trust networking, cloud‑native security frameworks.
- IaC expertise (Terraform, Cloud Deployment Manager, or equivalent).
- Experience in security incident response and SIEM integration.
- Strong verbal and written communication; ability to present to senior technical and business stakeholders.
Required Education & Certifications:
- B.Sc./M.Sc. in Computer Science, Information Security, or related field (or equivalent experience).
- GCP Professional Cloud Architect or GCP Professional Cloud Security Engineer certification preferred.