Responsibilities
- Own and enhance security design: Assess current security controls within GCP and Kubernetes, identify improvements, and mature security posture.
- Champion secure development: Partner with Engineering, Product, and Platform teams to integrate security best practices into the software development lifecycle (shift-left).
- Build and automate: Design, implement, and manage security tooling and automation for vulnerability detection, remediation, and compliance.
- Refine access control: Evolve IAM strategy for least-privilege access and auditing.
- Strengthen network security: Improve network architecture, policies, and controls in cloud environment.
- Develop clear standards: Establish, document, and communicate security policies, standards, and guidelines.
- Lead security initiatives: Drive vulnerability management and incident response preparedness.
- Cultivate security awareness: Promote best practices throughout engineering organization.
Requirements
- Understanding and practical experience securing cloud-native applications and infrastructure, particularly Kubernetes (GCP strongly preferred).
- Strong grasp of networking, IAM, encryption, OWASP Top 10.
- Excellent communication to articulate security concepts and influence teams.
- Hands-on experience in application security: threat modeling, secure coding, vulnerability management, SAST/DAST/IAST.
- Proficiency in IaC tools, specifically Terraform.
- Development experience with Go and Python.
Compensation
Starting pay: $145,491 - $187,900 (location-based, commensurate with qualifications & experience). Benefits information on careers page.