Lead Security Architect – GCP

Five Rivers IT, Inc.Miami, FL
1dOnsite

About The Position

We are seeking a Lead Security Architect to serve as the technical authority for our Google Cloud Platform (GCP) ecosystem. This is an architecture role focused on high-level design (HLD), low-level design (LLD), and requirements of engineering. You will lead the secure build-out of our cloud environment by establishing foundational guardrails and "secure-by-default" patterns.

Requirements

  • Experience: 8+ years in Cybersecurity with at least 5+ years specifically focused on GCP architecture and security.
  • Certification: Must hold a Professional GCP Security Architect/Engineer or similar certification.
  • Technical Depth: Expert-level knowledge of GCP-native security tools, VPC-SC, IAM, and Cloud Armor.
  • Documentation: Proven ability to translate complex security requirements into actionable HLD/LLD documentation without the requirement to write or maintain code.

Responsibilities

  • Secure Design Blueprints (SDBs): Author and maintain high-fidelity SDBs for all GCP services. These will serve as the definitive security standard.
  • Generative AI Security: Act as the lead architect for the secure deployment of Gemini AI. You will focus on areas including but not limited to data isolation, VPC Service Controls (VPC-SC), and identity boundaries for Gemini and Vertex AI.
  • Guardrail Governance: Design and implement organization-level protections, including Organization Policy Constraints and complex IAM hierarchies, to ensure systemic compliance.
  • Strategic CSPM Support: Provide deep architectural analysis of Cloud Security Posture Management findings. You will identify systemic weaknesses and update SDBs accordingly, supporting the CSPM program through design rather than daily operational monitoring.
  • Design Authority: Function as the primary lead for secure design patterns and blueprints for GCP, ensuring all deployments align with established security domains.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service