Responsible for implementing and maintaining robust security measures within our Google Cloud Platform GCP environment
Service whitelisting and the enforcement of comprehensive security policies
GCP Service Whitelisting
Design implement and manage network security controls using GCP Firewall Rules VPC Service Controls and Private Service Connect to restrict access to authorized GCP services and resources
Develop and maintain policies and procedures for requesting and approving exceptions to whitelisting rules
Continuously monitor and audit network traffic to ensure compliance with whitelisting policies and identify potential security risks
Troubleshoot connectivity issues related to network security configurations
Security Policy Enablement
Implement and enforce organizational security policies within GCP using tools like Google Cloud Security Command Center Forseti Security and IAM policies
Define and implement security best practices for various GCP services including compute storage databases and networking
Develop and maintain security configuration standards and guidelines
Conduct regular security assessments and audits of our GCP environment to identify vulnerabilities and ensure policy adherence
Collaborate with development and operations teams to integrate security into the CICD pipeline
DevOps Practices
Contribute to the design implementation and maintenance of our CICD pipelines ensuring security is integrated at every stage DevSecOps
Automate security controls and compliance checks within the deployment process
Manage and maintain infrastructureascode IaC using tools like Terraform or Deployment Manager incorporating security best practices
Collaborate with development teams to provide guidance on secure coding practices and vulnerability remediation
Participate in incident response activities including securityrelated incidents
Monitor system performance and security metrics identifying and addressing potential issues proactively
Contribute to the documentation of security policies procedures and infrastructure configurations
Stay uptodate with the latest GCP security features best practices and industry trends
Qualifications
6 years of experience in cloud security andor DevOps roles with a significant focus on Google Cloud Platform GCP
Indepth understanding of GCP networking concepts including VPCs subnets firewalls routing and load balancing
Proven experience designing and implementing network security controls using GCP Firewall Rules VPC Service Controls and Private Service Connect
Strong knowledge of GCP security services and best practices including IAM Security Command Center Cloud Armor and KMS
Experience with security policy definition implementation and enforcement in a cloud environment
Familiarity with DevOps principles and practices including CICD automation and infrastructure as code
Proficiency in scripting languages such as Python Bash or Go
Experience with infrastructure such as code tools like Terraform or Google Cloud Deployment Manager