Google Cloud Security Specialist, GCP

Jobtailor

Colorado

On-site

USD 140,000 - 180,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Jobtailor is seeking a cloud security leader to assess, design, and implement vulnerability management across cloud platforms in a regulated banking environment. The role ensures alignment with global information security policies and risk-based controls across Aqua, Wiz, Qualys, and CrowdStrike products.

The candidate will guide engineers, mentor team members, and adapt testing to evolving threats while collaborating with stakeholders and regulators.

Qualifications

  • 3+ years understanding of Google GCP native services, tools, and architecture.
  • Understanding of cloud security principles and practice.
  • Working knowledge of cloud threat landscape.
  • Technical experience in infrastructure and/or security functions.
  • Understanding of DevSecOps and CI/CD pipeline integration through security engineering lifecycles.
  • Understanding of threat modeling and frameworks.
  • Understanding of vulnerability management and scanning tools.
  • Experience in project management.
  • Well-developed analytic, qualitative, and quantitative reasoning skills with demonstrated creative problem-solving ability.
  • Ability to work independently with little oversight on complex initiatives.
  • Ability to communicate complex concepts to all levels of understanding and technical ability.
  • Desirable: CISSP/CCSP/CISM; Desirable: Cloud certifications (SANS/GIAC)
  • Desirable: Vendor certifications; Desirable: Bachelor's degree in a technical field.

Responsibilities

  • Assess the bank's technologies, applications, and security controls in cloud platforms to identify risks and vulnerabilities.
  • Understand and comply with the Bank’s Global Information Security policy and cybersecurity threats.
  • Provide expert technical guidance to support partners.
  • Adapt testing methods to evolving cybersecurity regulations and threats.
  • Develop others on the team.
  • Improve vulnerability identification quality control for the cloud environment and collaborate across Vulnerability Management.
  • Align strategy and roadmaps across Cloud Security and related controls.
  • Perform gap analysis and formulate recommendations with action plans.
  • Provide consulting as a cloud vulnerability identification SME.
  • Evaluate new technologies for cloud vulnerability management integration.
  • Support audit and regulatory inquiries.
  • Guide engineering staff in solving complex challenges.
  • Lead efforts to identify vulnerabilities and misconfigurations in cloud platforms/workloads.
  • Manage daily operations of Aqua, Wiz, Qualys, and CrowdStrike.
  • Enhance vulnerability identification processes for hybrid clouds.
  • Drive cloud security solutions in line with cloud strategy and best practices.
  • Implement and improve proactive security controls to prevent external threats.
  • Research and provide leadership updates on advanced threats.
  • Monitor new threats and attempts to compromise controls.
  • Develop partnerships by demonstrating operational expertise as SME.

Skills

Cloud Security
Vulnerability Mgmt
DevSecOps
GCP
Threat Modeling
CI/CD Security
Communication
Project Mgmt
Analytical Reasoning
Risk Assessment

Education

Bachelor's degree

Tools

Aqua
Wiz
Qualys
CrowdStrike

Job description

  • Assess the bank's technologies, applications, and overall security controls in cloud platforms to identify potential risks and vulnerabilities
  • Understand and comply with the Bank’s Global Information Security policy and relevant cybersecurity threats to complete security assessments
  • Provide expert technical guidance to support partners
  • Adapt testing methods to emerging cybersecurity regulations and evolving threats
  • Develop others on the team
  • Improve vulnerability identification quality control for the cloud environment and collaborate across Vulnerability Management for end-to-end adoption
  • Align strategy and roadmaps across Cloud Security, Cyber Security Operational Controls, Security Functions and Capabilities
  • Perform gap analysis of current controls, formulate recommendations, and develop action plans
  • Provide consulting as a cloud vulnerability identification subject matter expert
  • Evaluate new technologies for integration into cloud vulnerability management workstreams
  • Support audit and regulatory inquiries
  • Guide engineering staff in solving complex challenges
  • Lead efforts to identify vulnerabilities and misconfigurations in cloud platforms and workloads
  • Manage daily operations of Aqua, Wiz, Qualys, and CrowdStrike
  • Enhance vulnerability identification processes for hybrid cloud platforms
  • Drive cloud security solutions in alignment with the Bank’s cloud strategy and security best practices
  • Implement and improve proactive security controls to prevent external threat actors from infiltrating systems or information
  • Research and provide leadership updates regarding advanced threats
  • Monitor new threats and complex attempts to compromise security controls
  • Develop partnerships by demonstrating operational expertise as a subject matter expert
Requirements
  • 3+ years understanding of Google GCP native services, tools, and architecture
  • Understanding of cloud security principles and practice
  • Working knowledge of cloud threat landscape
  • Technical experience in infrastructure and/or security functions
  • Understanding of DevSecOps and CI/CD pipeline integration through security engineering lifecycles
  • Understanding of threat modeling and frameworks
  • Understanding of vulnerability management and scanning tools
  • Experience in project management
  • Well-developed analytic, qualitative, and quantitative reasoning skills with demonstrated creative problem-solving ability
  • Ability to work independently with little oversight on complex initiatives
  • Ability to communicate complex concepts to all levels of understanding and technical ability
  • Desired: CISSP/CCSP/CISM
  • Desired: Cloud-specific security certifications such as SANS/GIAC
  • Desired: Vendor-specific and relevant certifications
  • Desired: Bachelor's degree in a technical field

Demonstrates expertise in cloud security principles, vulnerability management, and risk assessment, with a strong ability to communicate complex security concepts effectively. Proven experience in leading security initiatives and enhancing security controls in cloud environments.

Highest-signal resume keywords
  • Cloud Security Principles
  • Vulnerability Management
  • Google GCP Native Services
  • DevSecOps Integration
  • CISSP/CCSP/CISM
Hard Skills
  • Vulnerability Identification
  • Security Assessments
  • Gap Analysis
  • Threat Modeling
  • Cloud Threat Landscape
  • Analytic Reasoning
  • Project Management
  • Security Engineering Lifecycles
  • Cloud Security Solutions
  • Complex Problem-Solving
Soft Skills
  • Creative Problem-Solving
  • Independent Work
  • Communication Skills
Certifications & Qualifications
  • CISSP
  • CCSP
  • CISM
  • SANS
  • GIAC
Industry Keywords
  • Cybersecurity
  • Cloud Platforms
  • Security Controls
  • Regulatory Compliance
  • Security Best Practices
Tools & Technologies
  • Aqua
  • Wiz
  • Qualys
  • CrowdStrike
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Google Cloud Security Specialist (GCP exp. required)
Google Cloud Security Specialist (GCP exp. required)

Bank of America • Chicago (IL)

On-site
USD 120,000 - 180,000
Cybersecurity Engineer III(no third party, only W2)
Cybersecurity Engineer III(no third party, only W2)

CBTS • Sterling (VA)

On-site
USD 120,000 - 150,000
Cloud Security Engineer - GCP
Cloud Security Engineer - GCP

ExecuSource • Marietta (GA)

Hybrid
USD 115,000 - 155,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Manhattan Associates • Atlanta (GA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

twentysix • El Segundo (CA)

On-site
USD 120,000 - 180,000
Senior Information Security Analyst – CSIRT
Senior Information Security Analyst – CSIRT

Jobtailor • Mount Laurel Township (NJ)

On-site
USD 110,000 - 170,000
Google Cloud Architect – Senior, Junior levels
Google Cloud Architect – Senior, Junior levels

Jobtailor • United States

On-site
USD 140,000 - 210,000
Senior Security Engineer
Senior Security Engineer

Manhattan Associates • Atlanta (GA)

On-site
USD 120,000 - 190,000
Manager – Cyber Security
Manager – Cyber Security

Jobtailor • Los Angeles (CA)

On-site
USD 140,000 - 190,000
Cloud Security Lead – GCP & Vulnerability Management
Cloud Security Lead – GCP & Vulnerability Management

Jobtailor • Colorado

On-site
USD 140,000 - 180,000