Insight Global
, , United States / Global
You have blocked notifications
Oops! You have blocked notifications. Click here for more info
You have blocked notifications, please check your browser settings.
You're currently subscribed to job notifications
Subscribe to notifications
You will no longer receive notifications
, , United States / Global
Required Skills & Experience
- 5-10 years of hands-on cloud engineering, with deep expertise in Google Cloud Platform (GCP). \n- Proven experience hardening cloud environments to CIS Benchmarks for GCP. \n- Track record establishing policies and guardrails across a hyperscaler (org policies, policy-as-code, continuous compliance). \n- Strong CI/CD command, building and hardening pipelines in partnership with development teams. \n- Advanced automation and Infrastructure as Code, primarily Terraform. \n- GCP OS patch management, coordinating server patching with the platform team. \n- GCP identity and security services: IAM, VPC/firewall, KMS/Secret Manager, logging and monitoring. \n- Proficiency in Python and Bash for automation and reporting.
Nice to Have Skills & Experience
- Ansible for configuration management and patch orchestration\n- Hyperscaler certifications (AWS, Google Cloud, and/or Azure). \n- HashiCorp Terraform Associate or equivalent IaC certification. \n- CSPM and vulnerability tooling (Security Command Center, Security Hub, Wiz, Prisma Cloud, Tenable, or Qualys). \n- Container and image scanning (Trivy, Aqua, Artifact Registry / ECR) and Kubernetes hardening. \n- Knowledge of the security “color wheel” model and Green / Purple Team frameworks.
Job Description
Insight Global is seeking an experienced GCP Cloud Engineer to serve as a core member of a Security Green Team – the function responsible for translating vulnerability and misconfiguration findings into durable, automated remediation that is embedded into how cloud infrastructure is built and maintained. Moving beyond a reactive, manual approach to patching, this individual will own the configuration remediation pipeline for the Google Cloud estate: codifying fixes as infrastructure as code, automating patch and image lifecycle management, hardening cloud baselines against CIS benchmarks, and enforcing policies and guardrails through policy-as-code. This is a hands-on engineering position in which architects establish strategic direction and the engineer executes against it. As the organization’s Google Cloud footprint continues to mature, the successful candidate should anticipate a significant volume of foundational hardening work.\n\nKey Responsibilities:\n- Assess the current GCP and broader cloud environment to identify hardening and configuration gaps. \n- Validate that guardrails are in place and meet CIS benchmarks.\n- Design and implement policy enforcement and guardrails across GCP via policy-as-code and continuous compliance scanning. \n- Codify fixes and standards as Infrastructure as Code (Terraform) so misconfigurations do not reappear downstream. \n- Build and harden CI/CD pipelines with development teams, integrating security and policy gates. \n- Prepare the environment for forthcoming container and Kubernetes workloads as the Kubernetes platform team engages. \n- Coordinate server patching and lifecycle management with the platform and Linux teams. \n- Maintain dashboards and reporting on security posture, remediation velocity, and cloud risk.
, United States / Global
, United States / Global
, United States / Global
New York / Global
New York / Global
New York / Global