VS01606 - GCP Cloud Subject Matter Expert (SME)

E4 Software Services Pvt Ltd.

Mumbai

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

E4 Software Services Pvt Ltd. is seeking an experienced Cloud Architect to design secure GCP environments, implement multi-cloud connectivity, and build infrastructure-as-code pipelines with Terraform.

The ideal candidate will hold GCP certifications and have strong network design experience. Communication skills are essential as you will liaise with technical and non-technical stakeholders.

Qualifications

  • GCP certification required: Professional Cloud Architect and/or Professional Cloud Security Engineer.
  • Strong network design experience with hub-and-spoke, firewall policies.
  • Ability to explain complex cloud architecture to non-technical audiences.

Responsibilities

  • Design secure GCP landing zones and reference architectures.
  • Architect VPC networking and implement multi-cloud connectivity.
  • Build infrastructure-as-code and DevSecOps pipelines with Terraform.

Skills

GCP certification
Network design experience
Identity and access management
Security tooling
Infrastructure-as-code (Terraform)
Multi-cloud fluency
REST APIs knowledge
Strong analytical skills

Education

GCP Professional Cloud Architect certification

Tools

Terraform / Infrastructure Manager
Palo Alto NGFW
Splunk
CyberArk

Job description

Immediate joiner will be given preference

Key Responsibilities:
  • Design secure GCP landing zones and reference architectures, mapping each control to the client's existing Azure security posture.
  • Architect VPC networking, including Shared VPC, hub-and-spoke topology, subnetting, and hierarchical firewall policies.
  • Design hybrid and multi-cloud connectivity using HA VPN and Dedicated / Partner Interconnect between GCP, Azure, and on-premises.
  • Implement workforce identity federation between Microsoft Entra ID and GCP IAM (OIDC / SAML), including group-to-role mapping and Context-Aware / Conditional Access.
  • Harden GCP to CIS benchmarks using Organisation Policy Service custom constraints and Security Command Centre.
  • Integrate detective controls and SIEM: stream Cloud Logging and Security Command Centre findings to Splunk (Dataflow Pub/Sub-to-Splunk), and extend Palo Alto (VM-Series / Cloud NGFW, Panorama) into GCP.
  • Design privileged access using Privileged Access Manager, IAM Conditions, VPC Service Controls, and integration with CyberArk.
  • Build infrastructure-as-code and DevSecOps pipelines with Infrastructure Manager / Terraform, policy-as-code, and Binary Authorisation.
  • Advise client Cloud Centres of Excellence and internal teams; translate complex architecture into plain language for non-technical and executive stakeholders.
  • Produce client-ready architecture diagrams, control mappings, and design documentation.
  • Support cost management / FinOps, logging, and monitoring (Cloud Monitoring, New Relic) for GCP workloads.
Requirements:
  • GCP certification required: Professional Cloud Architect and/or Professional Cloud Security Engineer (Professional Cloud Network Engineer and Professional Cloud DevOps Engineer strongly preferred).
  • Strong network design experience: hub-and-spoke, firewall policies, Private Service Connect, VPC Service Controls.
  • Identity and access: Workforce and Workload Identity Federation, OIDC / SAML, IAM Conditions, Context-Aware Access (Access Context Manager), Privileged Access Manager.
  • Security tooling: Palo Alto VM-Series / Cloud NGFW and Panorama; CyberArk; Splunk integration (Varonis a plus).
  • Infrastructure-as-code and DevSecOps: Terraform / Infrastructure Manager, policy-as-code (Org Policy custom constraints / gcloud terraform vet), CI/CD, Binary Authorization.
  • Multi-cloud fluency: ability to map controls between Microsoft Azure (Entra ID, Azure Policy, Defender for Cloud, ExpressRoute, Azure Firewall) and their GCP equivalents.
  • Familiarity with CIAM platforms (Google Identity Platform / Firebase, SAP CDC / Gigya) a plus.
  • Strong understanding of REST APIs, OAuth 2.0 / OpenID Connect, and secure service-to-service integration (e.g., Cloud Functions to API Management).
  • Ability to explain complex cloud architecture in plain language to non-technical and executive audiences.
  • Strong analytical, problem-solving, and troubleshooting skills.
  • Effective communication and collaboration with cross-functional and client teams (Cyber, Network, DevOps, Cloud COE).
  • Comfortable leading workshops and producing client-ready documentation.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

VS01689 - DevOps Engineer - GCP
VS01689 - DevOps Engineer - GCP

E4 Software Services Pvt Ltd. • Pune District

On-site
INR 1,400,000 - 2,100,000
Cloud Security Architect- GCP
Cloud Security Architect- GCP

Cloudxtreme • Hyderabad, Bengaluru, Delhi

On-site
INR 900,000 - 1,300,000
GCP Engineer Infra
GCP Engineer Infra

HCLTech • Dadri

On-site
INR 350,000 - 750,000
Cloud Devops Engineer(GCP)
Cloud Devops Engineer(GCP)

Nisum • Hyderabad

On-site
INR 250,000 - 450,000
Cloud Security -GCP
Cloud Security -GCP

Cloudxtreme • Hyderabad

Hybrid
INR 1,400,000 - 2,200,000
GCP Infra Architect
GCP Infra Architect

Tata Consultancy Services • Hyderabad, Bengaluru

Hybrid
INR 3,500,000 - 6,000,000
Google cloud Architect ( GCP)
Google cloud Architect ( GCP)

Tata Consultancy Services • Hyderabad

On-site
INR 1,800,000 - 3,000,000
Gcp Architect
Gcp Architect

Cloudxtreme • Kolkata District, Hyderabad, Bengaluru

On-site
INR 1,800,000 - 2,700,000
GCP Architect
GCP Architect

ParadigmIT • Hyderabad

On-site
INR 2,500,000 - 3,500,000
Sr. Cloud L3 Infra Admin
Sr. Cloud L3 Infra Admin

Stefanini North America and APAC • Hyderabad

On-site
INR 3,500,000 - 6,500,000