About the role
As a Security Engineer you will play a critical role in our Security Practice with designing, implementing, and maintaining secure cloud solutions for Cloud Office clients. This role is hands-on and will focus on the execution of security services, including security assessments, cloud solutions hardening, identity and access controls, monitoring, and incident response enablement. The Security Engineer will help ensure customers’ cloud environments are secure, compliant, and aligned with industry best practices, while enabling innovation and adoption of modern cloud technologies.
What You’ll Do
- Implement and maintain security baselines across customer cloud environments (Google Cloud, AWS).
- Configure and manage cloud-native security tools (e.g., Google Security Command Center, Chronicle SIEM, Google SecOps, AWS Security Hub, GuardDuty).
- Support secure deployment pipelines, reusable templates, and infrastructure-as-code (IaC) patterns.
- Conduct security assessments and audits of customer environments to identify vulnerabilities, misconfigurations, and risks.
- Implement controls and remediation plans to meet compliance requirements (e.g., PCI DSS, SOC 2, ISO 27001, GDPR).
- Assist in preparing evidence and documentation for customer audits and certifications.
- Implement least-privilege IAM models in customer environments. Monitor and remediate IAM policy violations.
- Configure authentication and authorization mechanisms, ensuring strong access controls.
- Support data protection strategies, including encryption, DLP, and compliance with data sovereignty requirements.
- Work with SMEs to apply security best practices for GenAI/LLM and ML workloads, including testing custom models.
- Deploy and tune logging, monitoring, and alerting solutions for cloud environments.
- Contribute to incident response playbooks and support real-time incident investigations.
- Assist with root cause analysis and remediation following security events.
- Collaborate with Cloud Office SMEs (DevOps, Data Engineering, SRE) and customer InfoSec teams.
- Document security configurations, procedures, and remediation steps for customer projects.
- Contribute to knowledge-sharing and enablement across the Cloud Office team.
What We’re Looking For
- Cloud security engineering experience (Google Cloud, AWS).
- Good knowledge of cloud-native security tools.
- Experience with IaC tools (Terraform, CloudFormation) and secure deployment practices.
- Skilled in IAM design, least-privilege models, and access control configuration.
- Familiar with compliance frameworks (PCI DSS, SOC 2, ISO 27001, GDPR).
- Hands-on experience with security monitoring, incident response, and vulnerability management.
- Knowledge of encryption, DLP, and data protection best practices.
- Excellent collaboration skills.