Principal Google Cloud Security Consultant

7 hours, 37 minutes ago
Full-time
Lead
DevOps and Infrastructure
Coalfire

Coalfire

Coalfire is a cybersecurity advisor that helps organizations avert threats, reduce risk, and turn security into a competitive advantage, fueling their success.

Internet Software & Services
251-1K
Founded 2001
$9M raised

Description

  • Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, data protection, logging, monitoring, and compliance.
  • Advise enterprise customers on Google Cloud security strategy aligned to business risk, regulatory requirements, and operational priorities.
  • Lead cloud security posture assessments to identify risks, misconfigurations, control gaps, and operational weaknesses.
  • Advise customers on Google SecOps, Chronicle, SIEM strategy, cloud telemetry strategy, detection engineering, and SOC workflow design.
  • Advise customers on Wiz use cases including CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows.
  • Lead Security Command Center and Security Command Center Enterprise implementation, configuration, tuning, and operationalization.
  • Integrate Security Command Center findings into vulnerability management, compliance, security operations, and executive risk reporting workflows.
  • Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition.
  • Own complex technical workstreams from discovery through delivery, including technical direction, scope, risks, and stakeholder coordination.
  • Translate technical security findings into clear business risks, investment priorities, and actionable recommendations for senior leaders.
  • Guide customer teams through secure Google Cloud design, configuration, deployment, and operational maturity decisions.
  • Advise on Vertex AI and AI workload security, including identity, access control, data protection, governance, logging, and monitoring.
  • Create architecture diagrams, assessment deliverables, roadmaps, implementation documentation, and operational runbooks.
  • Develop repeatable methodologies, assessment frameworks, implementation patterns, reference architectures, and reusable technical assets.
  • Mentor consultants and provide technical leadership during client reviews, executive briefings, architecture discussions, and operational meetings.
  • Contribute to process improvement and automation initiatives that improve consistency, scalability, and delivery quality.

Requirements

  • 8+ years of security consulting experience across multiple domains, including at least 4 years working directly as a Google Cloud consultant.
  • Proven track record delivering Google Cloud security architecture, posture modernization, and operationalization outcomes from discovery through handover.
  • Hands-on leadership in cloud security projects across security, cloud, DevOps, architecture, compliance, and operations teams.
  • Documented success integrating cloud-native security platforms, SIEM, CNAPP/CSPM, logging, monitoring, vulnerability management, and SOC workflows.
  • Experience working under regulatory or industry frameworks such as FedRAMP, FISMA, HIPAA, HITRUST, PCI, CMMC, or similar standards.
  • Demonstrable client-facing consulting experience with professionalism and clear communication in ambiguous, high-stakes, or fast-paced engagements.
  • Deep experience designing, securing, deploying, and operationalizing Google Cloud environments.
  • Strong expertise in Google Cloud security architecture, IAM, networking, logging, monitoring, data protection, workload security, and compliance-oriented design.
  • Hands-on experience with Google Cloud security services, including Security Command Center or equivalent cloud-native security platforms.
  • Experience leading cloud security posture assessments, architecture reviews, or enterprise cloud security modernization efforts.
  • Ability to lead complex technical engagements with multiple stakeholders, competing priorities, and enterprise-scale environments.
  • Excellent communication, organizational, problem-solving, and executive briefing skills.
  • Strong documentation skills for diagrams, assessment reports, roadmaps, implementation plans, written recommendations, and supporting materials.
  • Critical thinking skills to balance security requirements against business objectives, operational realities, and customer maturity.
  • Ability to adapt quickly in fast-paced, dynamic customer environments.
  • Google Cloud Professional Cloud Security Engineer, Professional Cloud Architect, or related certification is desired.
  • Google Cloud Professional Security Operations Engineer or equivalent Google Cloud security experience is desired.
  • Wiz, Google SecOps/Chronicle, SIEM migration, Vertex AI security, Terraform, or related cloud security skills are preferred.

Benefits

  • $125,000 - $217,000 annual salary range.
  • Eligibility for annual incentive, commission, and/or recognition programs.
  • Flexible work model with remote work and the option to work from home or an office.
  • Paid parental leave.
  • Flexible time off.
  • Certification and training reimbursement.
  • Digital mental health and wellbeing support membership.
  • Comprehensive insurance options.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Oracle Security & Controls consultant 6 Months Contract

Belmont Lavan 11-50 Professional Services

Belmont Lavan Ltd is hiring an Oracle Security & Controls Consultant for a 6-month contract to assess, design, and implement security controls across Oracle environments that support data integrity, confidentiality, and regulatory compliance.

Oracle
4 days, 7 hours ago

Senior Information Security GRC Specialist

BHG Financial 1K-5K Diversified Financial Services

BHG Financial is hiring a Senior Information Security GRC Specialist to lead enterprise business continuity and disaster recovery efforts while supporting risk and compliance initiatives for its financial services operations.

4 days, 7 hours ago

Senior Penetration Tester

Bridewell 251-1K Internet Software & Services

Bridewell is hiring a Senior Penetration Tester to deliver client-facing offensive security assessments across web applications, APIs, and infrastructure while supporting reporting, pre-sales, and service development.

AWS Azure Bash Cybersecurity GCP LLM Penetration Testing PowerShell Python
4 days, 7 hours ago

Pentester, Offensive Forward Deployment Engineer

Mistral AI 201-500 Artificial Intelligence

Mistral AI is hiring a hands-on Pentester for its Offensive Security team to run real client engagements, uncover vulnerabilities in Mistral’s systems and external targets, and help shape AI-assisted offensive security capabilities.

Active Directory AWS Azure CI/CD GCP Penetration Testing
4 days, 7 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers