Enable job alerts via email!

Lead Security Architect

Sugama Technologies LTD

London

On-site

GBP 50,000 - 90,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking a talented DevSecOps Engineer with a strong focus on Google Cloud Platform (GCP). In this role, you will ensure the security and integrity of the software development process, leveraging your expertise in GCP, Rego policies, and Terraform to build a secure development pipeline. You will collaborate with cross-functional teams to implement security measures, conduct thorough assessments, and drive a culture of security awareness. This position offers a unique opportunity to work in a dynamic environment where your contributions will significantly impact the security of cloud-based applications. If you're passionate about cloud security and eager to make a difference, this role is for you.

Qualifications

  • Proven experience as a DevSecOps Engineer with a focus on GCP.
  • Strong knowledge of Rego policies and policy-as-code practices.

Responsibilities

  • Develop and maintain Rego policies for GCP security.
  • Collaborate with teams to integrate security into CI/CD pipelines.

Skills

DevSecOps Engineering
GCP Expertise
Rego Policies
Security Assessments
Threat Modelling
Communication Skills

Education

Bachelor's degree in Computer Science
Bachelor's degree in Information Security

Tools

Terraform
GCP Security Tools
Wiz
Jenkins
GitLab CI/CD

Job description

Job Description:

We are seeking a skilled and experienced DevSecOps Engineer with a strong specialization in Google Cloud Platform (GCP) to join our dynamic team. In this role, you will play a pivotal role in ensuring the security and integrity of our software development processes on GCP. Your expertise in GCP, Rego policies, and Terraform will be instrumental in building a secure and efficient development pipeline.

Responsibilities:
  1. Develop, implement, and maintain Rego policies to enforce security controls and compliance standards within our GCP infrastructure and applications.
  2. Collaborate with development and operations teams to integrate security into the GCP-focused CI/CD pipeline, ensuring security checks and scans are automated and seamlessly incorporated.
  3. Leverage your GCP expertise to architect and implement secure microservices and containerized applications, ensuring compliance with GCP security best practices.
  4. Design and implement infrastructure-as-code (IaC) using Terraform to define and manage GCP resources securely and efficiently.
  5. Perform thorough security assessments on GCP environments, utilizing GCP-specific security tools and technologies, to identify and address potential vulnerabilities.
  6. Conduct threat modelling and risk assessments for GCP deployments, designing effective security solutions tailored to GCP services.
  7. Collaborate with cross-functional teams to respond to GCP-specific security incidents promptly, conduct root cause analysis, and implement corrective actions.
  8. Stay current with GCP advancements, industry security trends, and best practices, sharing knowledge and insights with team members.
  9. Drive a culture of security awareness specific to GCP environments, ensuring security considerations are integrated throughout development.
Requirements:
  1. Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
  2. Proven experience as a DevSecOps Engineer with a strong focus on GCP.
  3. Expertise in Rego policies and policy-as-code practices especially with implementation in GCP. THIS IS AN ABSOLUTE MUST.
  4. In-depth understanding of GCP services, security controls, and best practices.
  5. Proficiency in using GCP-specific security tools, vulnerability scanners, and penetration testing tools.
  6. Experience with Wiz and its integration for continuous security monitoring in GCP environments.
  7. Strong experience with infrastructure-as-code (IaC) using Terraform for GCP resource provisioning and management.
  8. Familiarity with CI/CD pipelines and automation tools (e.g., Jenkins, GitLab CI/CD) with GCP integrations.
  9. Solid knowledge of GCP security frameworks, standards, and compliance requirements.
  10. Strong understanding of container security in GCP and experience securing microservices.
  11. Excellent communication and collaboration skills, with a proven ability to work effectively in cross-functional teams.
  12. Relevant GCP certifications such as Google Professional DevOps Engineer, Google Professional Cloud Security Engineer, or similar certifications are highly advantageous.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Principal Security Architect

Ofgem

London null

Hybrid

Hybrid

GBP 62,000 - 62,000

Full time

Yesterday
Be an early applicant

Lead Security Architect - Defence & Aviation

NTT DATA

London null

Hybrid

Hybrid

GBP 70,000 - 100,000

Full time

6 days ago
Be an early applicant

Senior / Lead Security Architect

JR United Kingdom

null null

Remote

Remote

GBP 80,000 - 120,000

Full time

Today
Be an early applicant

Lead Security Architect

UK Home Office

Croydon null

Hybrid

Hybrid

GBP 70,000 - 90,000

Full time

28 days ago

Lead Cloud Architect

CloudMeUp

London null

Remote

Remote

GBP 70,000 - 95,000

Full time

14 days ago

Principal Security Architect – Sentinel, Defender, Purview

InfraView Ltd

null null

Remote

Remote

GBP 80,000 - 90,000

Full time

30+ days ago

Senior Consultant - Migration Architect

Veeva Consumer Products

London null

Remote

Remote

GBP 60,000 - 100,000

Full time

15 days ago

Principal Security Architect

Gespreksleider Jacobs

London null

Hybrid

Hybrid

GBP 71,000 - 94,000

Full time

30+ days ago

Lead Solution Architect

Capita

London null

Remote

Remote

GBP 50,000 - 80,000

Full time

9 days ago