Role: Sr. GCP Cloud Security Engineer
Location: Marietta, GA – Hybrid
Full-Time/Perm
Salary: $135,000
POSITION OVERVIEW
We are seeking a senior, highly technical Cloud Security Engineer / Architect-minded Builder to join our team. This is a project-focused, high-impact role designed for an engineer who can look across an enterprise cloud footprint, proactively identify architectural risks, design custom solutions, write automated tooling, and drive projects through execution.
Our enterprise environment operates across multiple cloud providers, with Google Cloud Platform (GCP) representing 90–95% of our infrastructure. This is not an operational/ticket-remediation or administration role; we are looking for a true technical builder and thought leader who can build custom security controls, optimize CNAPP environments, and partner directly with software engineering and R&D teams.
PRIMARY RESPONSIBILITIES
- Architect & Build Custom Security Controls: Design, code, and deploy cloud-native security controls, custom bots, and Python automation from the ground up to reduce risk across GCP and multi-cloud environments.
- CNAPP Ownership & Risk Reduction: Manage and optimize our Cloud-Native Application Protection Platform (CNAPP), using findings to drive tangible architectural and configuration changes across Google Cloud.
- Proactive Security Architecture: Actively evaluate cloud infrastructure (including GKE, Cloud Armor, IAM, Cloud Run, and Load Balancers) to identify hidden risks, present strategic solutions to leadership, and drive implementation.
- DevSecOps & Software Engineering Alignment: Partner directly with software developers, DevOps, and R&D teams to embed security controls across the CI/CD pipeline, infrastructure-as-code, and application code.
- End-to-End Project Execution: Own cloud security projects from initial problem identification through technical design, coding, cross-functional alignment, and final delivery.
- Multi-Cloud Architecture: Maintain oversight and secure configurations across GCP, with secondary support for Azure, AWS, and Oracle Cloud environments.
REQUIRED SKILLS & QUALIFICATIONS
Experience Requirements
- IT & Security Foundation: 7+ years of total IT experience, including 5+ years in dedicated cybersecurity.
- Deep GCP Expertise: 4+ years of hands-on cloud security experience, with demonstrated technical depth in Google Cloud Platform (GCP) architecture.
- Hands-on Scripting/Coding: 3+ years of experience developing automation, scripts, custom controls, or tooling using Python (preferred), Go, PowerShell, or Bash.
- Vulnerability & Risk Reduction: 3+ years identifying, prioritizing, and remediating complex cloud vulnerabilities.
- Software/Product Environment Experience: Proven track record working in a software product company alongside R&D and engineering teams.
Technical Capabilities
- GCP Security Stack: Hands-on experience with Security Command Center, GKE, Cloud Armor, Cloud Functions, Cloud Run, IAM, and Cloud Load Balancers.
- Container & Infrastructure Security: Experience securing Kubernetes (GKE), Docker, and Infrastructure-as-Code (Terraform, CloudFormation).
- CNAPP Management: Experience operating CNAPP or enterprise CSPM/CWPP tools to drive security posture improvements.
- Standards & Compliance: Solid understanding of NIST, CIS Benchmarks, ISO 27001, and cloud networking/encryption standards.
PREFERRED CERTIFICATIONS & EDUCATION
- Education: Bachelor’s degree in Computer Science, Information Systems, or equivalent practical experience.
- Preferred Certifications:
- Google Professional Cloud Security Engineer
- Google Professional Cloud Architect
- Certified Information Systems Security Professional (CISSP)
- Additional Plus: AWS Certified Security – Specialty, Microsoft Azure Security Engineer Associate, CEH, or Security+.
CAREER OPPORTUNITY & GROWTH
This position provides high visibility across both technical and executive leadership. For exceptional candidates who demonstrate technical ownership and project success, there is a clear growth trajectory to transition into a Lead Cloud Security Engineer role within 12–18 months.