ApTask - Dallas, TX

posted 2 months ago

Full-time - Senior
Dallas, TX
Administrative and Support Services

About the position

As a GKE Senior Security Engineer specializing in Google Cloud Platform, you will play a pivotal role in enhancing the security posture of various Google Cloud services, including GKE, Cloud SQL, and Cloud Storage. Your primary responsibility will be to conduct thorough threat modeling to identify potential threats and vulnerabilities associated with these services. By leveraging your expertise in cybersecurity principles, you will specify and implement mitigating controls that effectively reduce the risks associated with operating in the Google Cloud environment. This position requires a deep understanding of both the technical and operational aspects of cybersecurity, particularly in highly regulated industries such as financial services. In this role, you will collaborate with cross-functional teams to design and review technical architectures, ensuring that security best practices are integrated throughout the development lifecycle. You will also be responsible for identifying vulnerabilities using established frameworks such as CWE and OWASP, and applying security practices related to authentication, authorization, logging, monitoring, encryption, and network segmentation. Your experience in operating systems hardening and familiarity with development concepts, including CI/CD pipelines and Infrastructure as Code (IaC) using tools like Terraform and CloudFormation, will be essential for success. Additionally, you will work within a DevOps and agile team structure, utilizing your knowledge of containerization technologies such as Docker and Kubernetes, as well as serverless architectures. Your contributions will directly impact the security and compliance of our cloud infrastructure, making it imperative that you stay updated on the latest security trends and threats in the cloud landscape.

Responsibilities

  • Conduct threat modeling for Google Cloud services including GKE, Cloud SQL, and Cloud Storage.
  • Identify threats and specify mitigating controls to reduce risks in the Google Cloud environment.
  • Collaborate with cross-functional teams to design and review technical architectures with a focus on security best practices.
  • Identify vulnerabilities using frameworks such as CWE and OWASP.
  • Implement security practices related to authentication, authorization, logging, monitoring, encryption, and network segmentation.
  • Perform operating systems hardening and ensure compliance with security standards.
  • Utilize development concepts such as CI/CD, Pipelines, and SDLC in security implementations.
  • Apply Infrastructure as Code (IaC) principles using Terraform and CloudFormation.
  • Work within a DevOps and agile team structure to enhance security measures.
  • Stay updated on the latest security trends and threats in the cloud landscape.

Requirements

  • Minimum of 10 years of IT experience, with at least 4 years in Cyber-Security/Information Security.
  • Experience in a highly regulated industry, preferably financial services.
  • Proficient in threat modeling techniques such as STRIDE, PASTA, and Attack Trees.
  • Extensive knowledge of Google Cloud Platform and its security practices.
  • Experience in identifying vulnerabilities using CWE or OWASP.
  • Strong understanding of security practices related to authentication, authorization, logging/monitoring, encryption, and infrastructure security.
  • Familiarity with operating systems and their hardening techniques.
  • Knowledge of development concepts including CI/CD, Pipelines, and SDLC.
  • Experience with scripting languages and Infrastructure as Code (Terraform, CloudFormation).
  • Understanding of Docker, Kubernetes, serverless architectures, and Helm.

Nice-to-haves

  • Certifications such as Google Cloud Architect, Cloud Developer, Data Engineer, Network Engineer, or Google Professional Cloud Security Engineer.
  • Professional certifications like CISM, CISSP, or equivalent cyber security certifications.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service