Cloud Security Engineer

Coltech

Deutschland

Vor Ort

EUR 80.000 - 110.000

Vollzeit

vor 16 Stunden
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Mach aus dieser Rolle ein Vorstellungsgespräch — ein Lebenslauf und ein Anschreiben, die darauf ausgerichtet sind, was dieser Arbeitgeber sucht.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Coltech is expanding its cloud security posture across regulated financial services. You will design, implement and maintain secure cloud environments on Google Cloud Platform, ensuring compliance with European and German requirements.

Work with IAM, compliance and risk teams to keep workloads secure, auditable and resilient, applying best practices in zero-trust, secure IaC and posture management.

Qualifikationen

  • 4–8 years in cloud security engineering.
  • Hands‑on experience with GCP security services such as SCC, VPC SC, KMS, Cloud Armor, Secret Manager.
  • Proficiency with Terraform and secure IaC patterns.

Aufgaben

  • Design and implement secure cloud environments on Google Cloud Platform.
  • Enforce least-privilege access, identity federation and workload identity.
  • Configure Security Command Center and integrate with SIEM for remediation.
  • Develop secure IaC modules and policy-as-code (OPA/Sentinel).
  • Secure Kubernetes/GKE clusters, workloads, and runtime protection.
  • Implement VPC Service Controls and private service access.
  • Integrate cloud telemetry into SIEM and threat-detection tooling.
  • Perform threat modelling, security reviews and risk assessments.

Kenntnisse

Cloud security engineering
GCP security services
IAM & least privilege
SCC & SIEM integration
Kubernetes/GKE security
Zero Trust concepts

Tools

Terraform
CI/CD pipelines
KMS/Cloud Armor

Jobbeschreibung

Our client is strengthening its cloud‑security posture as part of a wider digital‑transformation programme across regulated financial services. As a Cloud Security Engineer, you will design, implement and maintain secure cloud environments, primarily on Google Cloud Platform, ensuring compliance with internal security standards, European regulations and German supervisory requirements.

You will work closely with platform engineering, IAM, compliance, and risk teams to ensure cloud workloads remain secure, resilient and auditable.

Key Responsibilities
  • Cloud Security Architecture — contribute to secure design patterns, guardrails and reference architectures for GCP workloads.
  • IAM Engineering — implement least‑privilege access, identity federation, service accounts, workload identity and role governance.
  • Security Command Center — configure SCC, manage findings, integrate with SIEM and drive remediation.
  • Terraform Security — build secure IaC modules, enforce policy-as-code (OPA/Sentinel), and ensure consistent deployment of security controls.
  • Kubernetes/GKE Security — secure clusters, workloads, network policies, admission controllers and runtime protection.
  • Implement VPC Service Controls, private service access, secure networking patterns and segmentation.
  • Integrate cloud telemetry into the institution’s SIEM and threat‑detection tooling.
  • Support CSPM/CNAPP tooling and continuous posture management.
  • Conduct threat modelling, security reviews and risk assessments for new cloud workloads.
  • Work with compliance teams to ensure alignment with GDPR/DSGVO, BSI C5, NIS2, and internal financial‑sector security frameworks.
  • Drive automation of security controls, remediation workflows and compliance reporting.
Required Skills & Experience
  • 4–8 years in cloud security engineering.
  • Strong hands‑on experience with GCP security services, IAM, SCC, VPC SC, KMS, Cloud Armor, Secret Manager.
  • Proficiency with Terraform, CI/CD pipelines and secure IaC patterns.
  • Solid understanding of Kubernetes/GKE security, container hardening and runtime protection.
  • Experience integrating cloud logs and findings into SIEM platforms (Splunk, Chronicle, QRadar, etc.).
  • Familiarity with Zero Trust principles and implementation in cloud environments.
  • Strong understanding of European and German regulatory requirements for cloud workloads (GDPR/DSGVO, BSI C5, NIS2, KRITIS).
  • Ability to work with cross‑functional teams (risk, compliance, platform, architecture).
  • Fluency in English; German language skills are beneficial but not mandatory.
Nice to Have
  • Experience with multi‑cloud security (AWS/Azure) in regulated environments.
  • Knowledge of financial‑sector frameworks (BAIT, MaRisk, EBA guidelines).
  • Exposure to Sovereign Cloud concepts or regulated cloud landing zones.
  • Certifications: GCP Professional Cloud Security Engineer, CISSP, CCSP, CISM, Terraform Associate.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Cloud Security Specialist
Cloud Security Specialist

MAM Gruppe • München

Hybrid
EUR 60.000 - 80.000
Flexible hours
Attractive salary
30 vacation days
+2
Cloud Infrastructure Engineer
Cloud Infrastructure Engineer

Dinarys • Berlin

Vor Ort
EUR 25.000 - 30.000
Cloud Architect
Cloud Architect

SoftServe • Deutschland

Vor Ort
EUR 120.000 - 160.000
Technical Cloud Architect (GCP)
Technical Cloud Architect (GCP)

SoftServe • Deutschland

Vor Ort
EUR 90.000 - 140.000
Equal opportunity employer
Security Architect
Security Architect

Meyandy LLC • Hamburg

Vor Ort
EUR 90.000 - 130.000
Customer Engineer, Security, Google Cloud Sales (English)
Customer Engineer, Security, Google Cloud Sales (English)

Google • München

Hybrid
EUR 112.000 - 114.000
Equity
Customer Engineer, Security, Google Cloud Sales (English)
Customer Engineer, Security, Google Cloud Sales (English)

Google • Deutschland

Hybrid
EUR 112.000 - 114.000
Cloud Engineer - Berlin
Cloud Engineer - Berlin

Yeah! Global • Berlin

Vor Ort
EUR 60.000 - 80.000
Senior Cloud Security Engineer Multi-Cloud (GCP and Azure) f/m/d
Senior Cloud Security Engineer Multi-Cloud (GCP and Azure) f/m/d

PSI Software - Scandinavia • Berlin

Vor Ort
EUR 90.000 - 120.000
Fruts & drinks
Mobility – Public transport subsidy or
Company bike option
+4
Cloud Security & Networking Engineer
Cloud Security & Networking Engineer

Jobtailor • Garching bei München

Vor Ort
EUR 90.000 - 120.000