Principal Cloud Security Architect - Google Cloud Platform (GCP)

apply

Roseland (NJ)

Hybrid

USD 180,000 - 230,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

ADP is seeking a Principal Cloud Security Architect to oversee cloud security across Google Cloud Platform and Azure, shaping security architecture, standards, and solutions for a global enterprise. You will partner with cloud engineering, infrastructure, and risk teams to implement scalable, secure cloud environments and lead security initiatives at scale.

The role requires deep hands-on expertise in GCP and Azure security services, IAM, data protection, and workload security, with strong

Qualifications

  • 10+ years of IT security/cybersecurity or cloud security experience.
  • Deep expertise in GCP and Azure security architecture and services.
  • Strong IAM, networking, data protection, and workload security knowledge.
  • Experience designing security for containers, serverless, APIs, and VMs.
  • Hands-on IaC and automation with Terraform; coding in Python/JS/C#/C++.

Responsibilities

  • Design and evolve security architecture for GCP and other clouds.
  • Architect secure landing zones, org structures, and governance models.
  • Define data security architectures, encryption, and key management.
  • Document security standards for GCP, Azure, and other clouds.
  • Establish security patterns, guardrails, and engineering standards.
  • Provide internal security consulting for ADP applications and services.
  • Lead cross-functional teams through communication and prioritization.
  • Develop cloud security monitoring, logging, and incident response architectures.
  • Evaluate emerging cloud technologies and influence security roadmaps.
  • Communicate complex risks to senior leadership.

Skills

Cloud security
GCP
Azure
Security architecture
Kubernetes
Terraform
CI/CD
Programming (Python/JS/C#/C++)
Identity and access management
Networking security

Education

Bachelor's degree or equivalent

Tools

Terraform
Kubernetes (GKE/AKS)
Azure DevOps
SIEM/Threat monitoring

Job description

ADP is Hiring aPrincipal Cloud Security Architect - Google Cloud Platform (GCP)

Position Summary:

The Cyber Security Architecture (CSA) team within ADP’s Global Security Organization (GSO) is responsible for the research, design, and standardization of ADP's integrated global protection and security infrastructure. The CSA team is responsible for leading these efforts for ADP worldwide across a broad set of security disciplines providing an integrated security ecosystem to detect, defend, and respond to business impacting cyber and physical security, data protection, and fraud prevention. The CSA team must have strong skills in conducting technical analysis of security and business problems, as well as threats, incidents, investigations, and other general security related issues.

We are seeking a Principal Cloud Security Architect to join our Cyber Security Architecture team and serve as a senior technical authority for securing cloud environments across the enterprise's Google Cloud Platform (GCP) and Microsoft Azure environment.
This role will define and drive cloud security architecture, engineering standards, and security solutions across a complex global enterprise environment. The successful candidate will have deep hands-on expertise designing and implementing security capabilities in GCP and Azure, with the ability to translate enterprise security requirements into scalable, resilient, and practical technical architectures.
The Principal Cloud Security Architect will partner closely with cloud engineering, infrastructure, application development, identity, network security, risk, and compliance teams. This is a highly technical role requiring strong architecture skills, technical leadership, and the ability to influence security outcomes across the ADP organization.

Responsibilities:
  • Design and evolve the security architecture of GCP and other public clouds including configuration, threat protection, network security, data protection and Identity and Access Management.
  • Architect secure cloud landing zones, organizational structures, subscriptions/projects, accounts, policies, and governance models.
  • Define cloud data security architectures, including encryption, key management, secrets management, data classification, and protection of sensitive workloads.
  • Document security standards, requirements, and best practices for the use of GCP, Azure and other public clouds.
  • Architect secure connectivity and segmentation across cloud, on-premises, and hybrid environments.
  • Establish security architecture patterns, guardrails, controls, and engineering standards for GCP and Azure environments.
  • Providing internal security consulting services for ADP applications, and IT shared services in GCP and other public clouds.
  • Motivate and lead cross functional teams through effective communication, delegation, and prioritization.
  • Establish cloud security monitoring, logging, detection, and incident-response architectures in partnership with security operations teams.
  • Evaluate emerging cloud technologies and security capabilities and determine their applicability to enterprise environments.
  • Influence technology strategy and security roadmaps across a global enterprise and communicate complex technical risks and recommendations to senior leadership.
To Succeed in This Role:
  • You'll have a bachelors degree or equivelent
Preferred Experience:
  • 10+ years of experience in IT Security/cybersecurity, cloud security, security architecture, infrastructure security, or a closely related discipline.
  • 7+ years of hands-on experience designing and implementing cloud security solutions, with significant expertise in both GCP and Azure.
  • Demonstrated experience architecting security solutions for large-scale enterprise cloud environments.
  • Deep technical knowledge of GCP security architecture and services, including IAM, organization/resource hierarchy, VPC security, Organization Policy, VPC Service Controls, Cloud KMS, Security Command Center, Cloud Armor, logging, monitoring, and workload security.
  • Deep technical knowledge of Azure security architecture and services, including Entra ID, Azure Policy, Defender for Cloud, Key Vault, networking/security controls, Sentinel, Private Link, and workload security.
  • Strong understanding of cloud identity and access management, including least privilege, RBAC, privileged access, workload identities, service principals/service accounts, federation, and identity governance.
  • Strong understanding of cloud networking and security, including segmentation, firewalls, private connectivity, DNS, routing, ingress/egress controls, zero-trust architectures, and hybrid connectivity.
  • Experience designing security controls for containers, Kubernetes, serverless workloads, APIs, VMs, and cloud-native applications.
  • Strong understanding of cloud data protection, encryption, key management, secrets management, and data security architectures.
  • Hands-on experience with Infrastructure as Code and automation, preferably Terraform, and experience implementing security through policy-as-code, CI/CD pipelines, programming and scripting languages (Python, JavaScript, C#, C++) and proficiency in working with relational databases, as well as NoSQL databases.
  • Experience with cloud security posture management, vulnerability management, security logging, SIEM, threat detection, and incident response.
  • Excellent technical communication skills, with the ability to explain complex cloud security concepts to engineers, architects, security professionals, and executive stakeholders.
  • One or more advanced cloud/security certifications, such as Google Professional Cloud Security Engineer, Microsoft Certified: Cybersecurity Architect Expert, CISSP, CCSP, or equivalent.
  • Experience securing Kubernetes/GKE and AKS environments at enterprise scale.
  • Experience with security architecture for AI/ML and emerging cloud-native technologies.

Find out why people come to ADP and why they stay: https://youtu.be/ODb8lxBrxrY

(ADA version: https://youtu.be/IQjUCA8SOoA )

#LI-SD4

#LI-Hybrid

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Cloud Security Architect - Google Cloud Platform (GCP)
Principal Cloud Security Architect - Google Cloud Platform (GCP)

adpinternalcareers • Roseland (NJ)

Hybrid
USD 180,000 - 240,000
Principal Cloud Security Architect - Google Cloud Platform (GCP)
Principal Cloud Security Architect - Google Cloud Platform (GCP)

ADP, Inc. • Roseland (NJ)

On-site
USD 123,000 - 304,000
Medical benefits
Dental benefits
Vision benefits
+6
Principal Cloud Security Architect - Google Cloud Platform (GCP)
Principal Cloud Security Architect - Google Cloud Platform (GCP)

ADP • Roseland (NJ)

On-site
USD 123,000 - 304,000
Medical benefits
Dental benefits
Vision benefits
Senior Application Security Architect - GCP
Senior Application Security Architect - GCP

adpinternalcareers • Alpharetta (GA)

Hybrid
USD 140,000 - 200,000
Senior Application Security Architect - GCP
Senior Application Security Architect - GCP

apply • Alpharetta (GA)

On-site
USD 150,000 - 190,000
Senior Cloud Security Architect, GCP & Azure Expert
Senior Cloud Security Architect, GCP & Azure Expert

ADP • Roseland (NJ)

On-site
USD 123,000 - 304,000
Medical benefits
Dental benefits
Vision benefits
Senior Cloud Security Architect: GCP & Azure
Senior Cloud Security Architect: GCP & Azure

apply • Roseland (NJ)

Hybrid
USD 180,000 - 230,000
Senior Cloud Security Architect (GCP & Azure)
Senior Cloud Security Architect (GCP & Azure)

ADP, Inc. • Roseland (NJ)

Hybrid
USD 123,000 - 304,000
Medical benefits
Dental benefits
Vision benefits
+6
Senior Application Security Architect
Senior Application Security Architect

adpinternalcareers • Roseland (NJ)

On-site
USD 140,000 - 190,000
Senior Application Security Architect
Senior Application Security Architect

apply • Roseland (NJ)

On-site
USD 150,000 - 210,000