We're looking for a Senior infrastructure Security Engineer with a strong focus on cloud security, particularly within Google Cloud Platform (GCP). The ideal candidate should have in-depth expertise in data and infrastructure security in cloud environments, using GCP tools and technologies. As a vital member of our security team, you'll work across functions to proactively prevent, detect, and respond to threats against our cloud-based infrastructure.
Requirements
- 5+ years of hands-on cloud or infrastructure security experience, with real production experience in both GCP and Azure.
- 5+ years of experience with security assessments, security design reviews, or threat modeling.
- Strong understanding of cloud fundamentals; IAM, networking, logging, monitoring, encryption and how security failures actually happen in cloud environments.
- Experience delivering comprehensive security solutioning through design, coding, configuration and deployment
- Solid Python skills for automation, integrations, and reducing manual security work.
- Practical experience using Terraform and security-as-code, including integrating security checks into CI/CD pipelines.
- Hands-on experience with Wiz or similar CNAPP tools, with the ability to distinguish real risk from noise and drive remediation.
- Experience writing or tuning detections in Chronicle SIEM and understanding how cloud threats show up in logs.
- Background in vulnerability management, including prioritization, remediation tracking, and working with engineering teams to get fixes shipped.
- Familiarity with penetration testing and using findings to improve systems, not just generate reports.
- Ability to explain risk clearly to engineers without jargon.
- Comfortable owning and driving projects end-to-end as an Individual Contributor or with a team, leveraging a highly collaborative environment.
Benefits
- Flexible time off
- Comprehensive health coverage
- Competitive salary
- Paid parental leave
- Other wellness benefits