Description

  • Responsible for implementing and maintaining robust security measures within our Google Cloud Platform GCP environment
  • Service whitelisting and the enforcement of comprehensive security policies
  • GCP Service Whitelisting
  • Design implement and manage network security controls using GCP Firewall Rules VPC Service Controls and Private Service Connect to restrict access to authorized GCP services and resources
  • Develop and maintain policies and procedures for requesting and approving exceptions to whitelisting rules
  • Continuously monitor and audit network traffic to ensure compliance with whitelisting policies and identify potential security risks
  • Troubleshoot connectivity issues related to network security configurations
  • Security Policy Enablement
  • Implement and enforce organizational security policies within GCP using tools like Google Cloud Security Command Center Forseti Security and IAM policies
  • Define and implement security best practices for various GCP services including compute storage databases and networking
  • Develop and maintain security configuration standards and guidelines
  • Conduct regular security assessments and audits of our GCP environment to identify vulnerabilities and ensure policy adherence
  • Collaborate with development and operations teams to integrate security into the CICD pipeline
  • DevOps Practices
  • Contribute to the design implementation and maintenance of our CICD pipelines ensuring security is integrated at every stage DevSecOps
  • Automate security controls and compliance checks within the deployment process
  • Manage and maintain infrastructureascode IaC using tools like Terraform or Deployment Manager incorporating security best practices
  • Collaborate with development teams to provide guidance on secure coding practices and vulnerability remediation
  • Participate in incident response activities including securityrelated incidents
  • Monitor system performance and security metrics identifying and addressing potential issues proactively
  • Contribute to the documentation of security policies procedures and infrastructure configurations
  • Stay uptodate with the latest GCP security features best practices and industry trends

Qualifications

  • 6 years of experience in cloud security andor DevOps roles with a significant focus on Google Cloud Platform GCP
  • Indepth understanding of GCP networking concepts including VPCs subnets firewalls routing and load balancing
  • Proven experience designing and implementing network security controls using GCP Firewall Rules VPC Service Controls and Private Service Connect
  • Strong knowledge of GCP security services and best practices including IAM Security Command Center Cloud Armor and KMS
  • Experience with security policy definition implementation and enforcement in a cloud environment
  • Familiarity with DevOps principles and practices including CICD automation and infrastructure as code
  • Proficiency in scripting languages such as Python Bash or Go
  • Experience with infrastructure such as code tools like Terraform or Google Cloud Deployment Manager
  • Strong analytical and problems-solving skills
  • Excellent communication and collaboration skills

Preferred Qualifications

  • Relevant GCP certifications eg Security Engineer Cloud Architect
  • Experience with containerization technologies eg Docker Kubernetes and their security implications

Education

Any Gradute