Cloud Security Engineer – GCP & SecOps

Jobtailor

Charlotte (NC)

On-site

USD 65,000 - 90,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a cybersecurity engineer focused on secure Google Cloud architecture, IAM, logging/monitoring, and encryption. You will collaborate with SecOps, Cloud Platform teams, and engineering to implement guardrails, onboard log sources, and maintain auditable controls.

The role emphasizes documentation, runbooks, and repeatable processes for log onboarding and SIEM content, with a strong bias toward least-privilege configurations and baseline security practices.

Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Engineering, or related field (or equivalent practical experience).
  • 0–3 years of experience in cybersecurity engineering, cloud engineering, security operations, or related internships.
  • Exposure to at least one cloud platform (Google Cloud preferred) with core security concepts (IAM, networking, logging/monitoring, encryption).
  • Foundational understanding of cloud identity and access controls (roles/permissions, service accounts, least privilege).
  • Working knowledge of cloud logging/monitoring and why audit logs matter for security operations.
  • Comfortable writing clear documentation and collaborating cross-functionally.

Responsibilities

  • Support secure Google Cloud architecture patterns across IAM, networks, logging, and data protection.
  • Partner with Google Cloud team to implement guardrails and engineering improvements.
  • Assist SecOps with SIEM operations including onboarding log sources and investigations.
  • Produce documentation, diagrams, and runbooks for repeatable controls.
  • Assist with secure configurations across Google Cloud environments and least privilege access.
  • Support cloud service security reviews and baseline controls like encryption and key management.
  • Contribute to IaC security hygiene and cloud configuration repeatability.
  • Operationalize cloud security monitoring for investigations with high-quality telemetry.
  • Coordinate SIEM data onboarding, ingestion validation, and normalization readiness.
  • Support detection content lifecycle and alert quality improvement.
  • Develop repeatable processes for log onboarding, SIEM content management, and dashboards.

Skills

Cloud security concepts
SIEM concepts
Logging/monitoring
Least privilege
Documentation
Cross-functional collaboration
Python scripting

Education

Bachelor's degree or equivalent in Cybersecurity/CS/IS/Engineering

Job description

• Supporting secure Google Cloud architecture patterns across identity, network, logging/monitoring, and data protection domains (IAM, policies, encryption, boundary controls).
• Partnering with the Google Cloud team to implement guardrails and engineering improvements aligned to best practices and compliance needs.
• Assisting with SecOps SIEM operations including onboarding log sources, supporting detections, and helping improve investigation workflows.
• Producing clear documentation, diagrams, and runbooks that make controls repeatable and auditable.
• Assist in implementing and maintaining secure configurations across Google Cloud environments, focusing on least privilege access, resource hierarchy/policies, and workload protection patterns.
• Support security design reviews for new/changed cloud services and applications (e.g., networking changes, service accounts, logging requirements).
• Help deploy and validate baseline security controls such as encryption, key management practices, and secure network boundary protections (e.g., segmentation and perimeter controls where applicable).
• Contribute to Infrastructure-as-Code (IaC) security hygiene by reviewing and improving cloud configurations for repeatability and reduced drift (tooling used by the platform team).
• Help operationalize cloud security monitoring by ensuring audit and security telemetry is available and usable for investigations (visibility, alert context, and log quality).
• Support vulnerability and configuration findings triage by partnering with engineering teams to validate issues and track remediation progress.
• Assist with SIEM data onboarding efforts: coordinate with system owners, validate ingestion, and support normalization/correlation readiness.
• Support detection content lifecycle activities such as documentation updates, basic tuning support, and reporting on alert quality (false positives/noise reduction).
• Help build repeatable processes for log source onboarding and SIEM content management (runbooks, checklists, dashboards, and metrics).
• Partner with SecOps stakeholders to improve investigation workflows and ensure SIEM capabilities are aligned to operational needs (search, context, and investigation views).
• Maintain security documentation (control narratives, diagrams, standards) and contribute to “secure-by-default” enablement content for engineering teams.
• Coordinate with cloud engineering, Security Architecture, and SecOps teams to plan and execute small-to-medium security initiatives.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Engineering, or related field (or equivalent practical experience).
  • 0–3 years of experience in cybersecurity engineering, cloud engineering, security operations, or related technical internships/rotations.
  • Exposure to at least one cloud platform (Google Cloud preferred) with understanding of core security concepts (IAM, networking, logging/monitoring, encryption).
  • Basic familiarity with SIEM concepts (log sources, parsing/normalization, alerting, investigation workflows).
  • Foundational understanding of cloud identity and access controls (roles/permissions, service accounts, least privilege concepts).
  • Working knowledge of cloud logging/monitoring and why audit logs matter for security operations.
  • Familiarity with network security basics (segmentation, boundary protection concepts, secure communications).
  • Comfortable writing clear documentation and collaborating cross-functionally with engineering and operations teams.
  • Scripting/automation mindset (Python or similar) is a plus.
  • Certifications (preferred / growth-oriented): Google Cloud: Associate Cloud Engineer (strongly preferred as junior baseline); Professional Cloud Security Engineer (stretch as experience grows); Security fundamentals: CompTIA Security+ (or equivalent); Cloud security fundamentals: CCSK or CCSP (as role matures); SIEM/Detection: Training aligned to Google SecOps / Chronicle SIEM concepts (SIEM/SOAR learning path).

🔍 ATS Optimization Keywords
Below are skills and terms extracted directly from this job posting to improve Applicant Tracking System (ATS) visibility. This unique feature helps candidates tailor their applications more effectively — a feature exclusive to JobTailor job listings.

Hard Skills

  • Google Cloud
  • IAM
  • encryption
  • networking
  • logging
  • SIEM
  • Infrastructure-as-Code
  • Python
  • cloud security monitoring
  • vulnerability management

Soft Skills

  • documentation
  • collaboration
  • communication
  • problem-solving
  • attention to detail
  • cross-functional teamwork
  • process improvement
  • investigation workflows
  • tuning support
  • auditing

Certifications & Qualifications

  • Google Cloud Associate Cloud Engineer
  • Google Cloud Professional Cloud Security Engineer
  • CompTIA Security+
  • CCSK
  • CCSP
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer
Cloud Security Engineer

Jobtailor • Charlotte (NC)

On-site
USD 65,000 - 90,000
Security Engineer (Google SecOps Technical Credential)
Security Engineer (Google SecOps Technical Credential)

Infinite Ranges • United States

Remote
USD 100,000 - 140,000
Senior Security Engineer
Senior Security Engineer

twentysix • El Segundo (CA)

On-site
USD 120,000 - 180,000
Principal Security Engineer
Principal Security Engineer

Jobtailor • Town of Texas (WI)

On-site
USD 140,000 - 190,000
Google Cloud Platform Engineer
Google Cloud Platform Engineer

Jobtailor • Lincoln (MA)

On-site
USD 110,000 - 160,000
Cloud Security Engineer - GCP
Cloud Security Engineer - GCP

ExecuSource • Marietta (GA)

Hybrid
USD 115,000 - 155,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Manhattan Associates • Atlanta (GA)

On-site
USD 120,000 - 150,000
Staff Security Engineer, Product Security Engineering, Cloud CISO
Staff Security Engineer, Product Security Engineering, Cloud CISO

Socket.dev • New York (NY)

On-site
USD 207,000 - 300,000
Staff Security Engineer, Product Security Engineering, Cloud CISO
Staff Security Engineer, Product Security Engineering, Cloud CISO

Google • New York (NY)

On-site
USD 207,000 - 300,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Google • Seattle (WA)

On-site
USD 152,000 - 221,000
Health insurance
Retirement benefits (401k)
Paid time off
+3