Fairlead - Security Specialist
Working Location:
What We Are Looking For
We are seeking a Cloud Security Engineerwith strong expertise inGoogle Cloud Platform (GCP), cybersecurity, vulnerability management, and compliance frameworks such as FedRAMP High and IL4. This role will support a large-scale modernization program by ensuring that secure cloud foundations are properly designed, implemented, validated, and transitioned into production environments while maintaining strict regulatory and security requirements.
Responsibilities
- Implement and support FedRAMP High and IL4 compliance controls throughout the Google Cloud Platform Landing Zone design and implementation phases
- Translate compliance and security requirements defined by Cloud Architects into technical security control configurations
- Configure and manage security services including Assured Workloads, VPC Service Controls, Customer-Managed Encryption Keys (CMEK), and Security Command Center (SCC)
- Guide Cloud Architects during Landing Zone cutover activities and security control enablement processes
- Provide technical documentation and compliance-related guidance to support successful handover activities
- Validate cloud infrastructure implementations against FedRAMP High and IL4 security and compliance requirements
- Review infrastructure delivered by Cloud Engineering and DevOps teams prior to production approval and sign-off
- Assess infrastructure within pre-cutover environments to ensure compliance before sensitive customer data is introduced
- Collaborate with architecture, engineering, DevOps, and compliance teams to maintain security and regulatory alignment
- Support vulnerability management activities and continuously improve cloud security practices
Requirements and Qualifications
- Experience implementing FedRAMP High and/or IL4 compliance controls
- Experience working with Google Cloud Platform (GCP) Landing Zones
- Strong knowledge of Assured Workloads
- Experience implementing and managing VPC Service Controls
- Experience with Customer-Managed Encryption Keys (CMEK)
- Knowledge and hands-on experience with Security Command Center (SCC)
- Experience validating cloud infrastructure against security and regulatory compliance frameworks
- Ability to translate compliance requirements into technical security configurations
- Strong understanding of cloud security principles and cybersecurity best practices
- Experience with vulnerability management and security assessments
- Experience working in highly regulated cloud environments
Nice to Have
- Experience supporting security control enablement during Landing Zone cutover and transition activities
- Experience working closely with Cloud Architects, Cloud Engineers, and DevOps teams
- Experience supporting environments handling Controlled Unclassified Information (CUI)
- Knowledge of cloud governance, security operations, and risk management practices
- Experience participating in large-scale cloud transformation or modernization programs
- Familiarity with multi-location delivery models and distributed teams