Get more replies from employers
Send a job-specific resume in minutes.
Axos Business Center CORP. seeks a Senior GCP Security Engineer to protect and advance the security of our Google Cloud Platform environments. You will lead security architecture decisions, implement controls, and ensure cloud workloads meet the highest standards for security and compliance.
You will architect, implement, and manage IAM, VPC Security Controls, and data security strategies while aligning with regulatory requirements and industry best practices.
Imagine a world where banking is not just a transaction but a transformative experience. Welcome to Axos Business Center! We’re on a mission to redefine the financial landscape with innovation, creativity, and customer-centric solutions at the core of everything we do. #Banking Evolved.
Ready to dive into a new chapter in your career journey and make your mark this year? We need visionary minds like yours! Join our team and become part of a dynamic force that’s reshaping how people interact with their finances.
Your next big opportunity is just a click away!
We are looking for a Senior GCP Security Engineer to protect and advance the security of our Google Cloud Platform environments. As a key member of our Cloud and AI Security team, you will serve as the GCP security authority - leading security architecture decisions, implementing controls, and ensuring our cloud workloads meet the highest standards required.
Job Description
Architect and implement end-to-end GCP security controls across projects, folders, and organization-level policies
Design and manage IAM strategy: workforce identity federation, service account governance, Workload Identity, and organization policy constraints
Implement and manage VPC Security Controls - VPC Service Controls, Private Google Access, Cloud Armor, and firewall policies
Lead data security strategy as well as zero-trust access controls for internal applications and services hosted on GCP
Integrate security tooling into GCP-native CI/CD pipelines (Cloud Build, Artifact Registry) and Infrastructure as Code (Terraform)
Conduct threat modeling and security assessments for GCP-hosted financial workloads
Support audit and regulatory reviews as well as monitor GCP security posture
Stay current with GCP releases and the evolving FSI threat landscape; communicate relevant changes to stakeholders
6+ years of information security experience, with 3+ years focused on GCP security in enterprise or regulated environments
Expert-level proficiency with GCP security services: SCC, IAM, VPC Service Controls, Cloud Armor, KMS, DLP, Chronicle
Hands-on experience with Terraform for GCP infrastructure security automation
Strong command of Python for security tooling and automation
Knowledge of financial services compliance requirements
Deep understanding of cloud-native threat vectors, attack techniques (MITRE ATT&CK for Cloud), and detection engineering
Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience)
Google Professional Cloud Security Engineer certification - strongly preferred
Google Professional Cloud Architect certification
Certifications: CISSP, CCSP, CISM, GCIA, or GCSA
Experience securing Google Workspace in an enterprise financial services context
Familiarity with Apigee API security and Cloud Endpoints for financial API gateways