مهندس أول أمن سحابي (GCP)
تفاصيل الوظيفة
Key Responsibilities Architect, deploy, and manage Google Cloud Security Command Center Enterprise as the centralized platform for cloud security visibility and operations. Implement and manage Cloud Security Posture Management (CSPM) to identify misconfigurations, improve security posture, and support compliance requirements. Develop the organization’s Data Security Posture Management (DSPM) and Data Loss Prevention (DLP) strategy to discover, classify, monitor, and protect sensitive data across Google Cloud environments. Design and manage VPC Service Controls to establish secure perimeters around sensitive resources and reduce data exfiltration risks. Deploy and tune Container Threat Detection within Google Kubernetes Engine (GKE) to identify anomalous activity and protect containerized workloads. Manage Google Cloud Sec Ops, formerly Chronicle, as the primary platform for security telemetry ingestion, detection engineering, and threat hunting. Configure and manage Google Cloud Armor, including WAF rules and DDoS protection, for public-facing applications and services. Engineer and optimize SIEM capabilities to detect high-fidelity threats at scale. Build and maintain SOAR playbooks for automated alert triage, enrichment, investigation, and containment. Lead the investigation and resolution of complex security threat cases. Perform deep technical analysis of active threats and collaborate with the SOC and wider technology teams on remediation. Continuously improve cloud security controls, detection logic, response processes, and operational documentation.
Requirements At least 5 years of experience in cloud security, with strong hands-on expertise in Google Cloud environments. Proven experience deploying, configuring, and tuning:Google Cloud Security Command Center Google Cloud Sec Ops / Chronicle Google Cloud Armor VPC Service Controls Google Cloud DLP and related data protection tools Strong understanding of Google Cloud security architecture, IAM, networking, logging, monitoring, and security controls. Practical experience securing Kubernetes and Google Kubernetes Engine (GKE) environments. Knowledge of container runtime security, container threat detection, and workload protection. Experience with SIEM, SOAR, threat detection, threat hunting, and incident response. Ability to design and automate security operations workflows and response playbooks. Strong analytical and problem-solving skills, with the ability to investigate complex security incidents. Excellent communication skills and the ability to work effectively with security, infrastructure, Dev Ops, and SOC teams. Professional working proficiency in English.
Preferred Qualifications Google Cloud Professional Cloud Security Engineer certification. Experience with security and compliance frameworks such as ISO 27001, NIST, CIS, or PCI DSS. Experience with infrastructure-as-code and security automation. Familiarity with Dev Sec Ops practices and cloud-native application security. Experience operating security platforms in large-scale or highly regulated environments.
هذا الإعلان منشور على تنقيب السعودية ويُعرض هنا مع الإشارة إلى المصدر. لا نتقاضى أي رسوم من الباحثين عن عمل. إذا كان الإعلان مسيئًا أو احتياليًا، أبلغنا.