Role: GCP DevOps Security Engineer
Position Overview:
We are seeking a highly skilled and motivated Cloud DevOps Engineer to join our dynamic team. As a Cloud DevOps Engineer, you will play a crucial role in implementation and maintenance of our cloud infrastructure on Google Cloud Platform (GCP). This position requires expertise in DevOps and Security practices on Cloud Platforms, CI/CD pipelines, and a deep understanding of GCP services. If you are passionate about cloud technologies and possess hands-on experience in deploying and managing cloud environments, we encourage you to apply.
About The Company
AllClear Decisioning (allclear.ai) is a FinTech company with a mission to provide industry leaders with technology advancements, so that our partners can focus on growth, while we focus on the Tech. We are currently engaged in the development of an innovative product solution and digital transformation in the debt relief sector.
Responsibilities:
- Design, develop, and maintain automation solutions to provision, configure, and manage cloud resources, such as virtual machines, containers, storage, networking, and security services.
- Integrate automation workflows into CI/CD pipelines to enable continuous deployment and delivery of applications on cloud platforms via integration with GitHub actions.
- Ensure reliability of our systems and services by automating and provisioning of cloud monitors, automated remediation, security baselines and templates, etc through the concept of pipeline engineering.
- Implement core cloud security capabilities such as identity & access, data protection, security controls and compliance, vulnerability management, threat detection and response, and logging/monitoring.
- Conduct security assessments and threat models of products, environments, and code to identify potential vulnerabilities.
- Identify and manage technology risks across production environments, ensuring treatment plans are agreed upon by the security and engineering teams.
- Coordinate application and infrastructure security testing for production environments.
- Perform penetration testing, red/blue teaming, and gap analysis with audit and cybersecurity partners.
- Design and deploy programs, dashboards, tests, scripts, and automation to enhance cloud security posture, detection, and response.
- Act as a SME for all Cloud technical hands-on questions cloud security related.
- Document and implement security procedures.
- Support operations and incident response in cloud events and incidents.
- Educate and guide team members on cloud standards, procedures, and guidelines/best practices.
Requirements:
- 4+ years of Cloud development and support experience such as Google Cloud Platform (GCP), Amazon Web Services (AWS) or Microsoft Azure.
- 2+ years experience with security engineering in Google Cloud Platform.
- BS in Computer Science (or a related field) or professional-level GCP cloud certifications
- Experience developing design specifications, test plans, and protocols.
- Experience mentoring less experienced team members.
- Expert technical knowledge in three or more and strong technical knowledge in six or more of the following domains:
- Cryotography, encryption, and key management
- Data protection and security
- Governance and risk management
- Identity, access and permissions
- Infrastructure security
- Logging and monitoring
- Security event and incident response
- Threat and vulnerability management
- Application and interface security
- DevOps pipeline governance and security
- Ability to create system and process flow diagrams, data flow diagrams, sequence and UML diagrams, inter and intra system dependencies within the functional domain and across them
- Must be attentive to details, organized, self-motivated, and driven.
- Excellent written and oral communication skills with ability to communicate effectively with technical and non-technical staff.
- Defines and promotes best practices; cultivates a culture of innovation and learning, including willingness to instruct and coach in a cloud training program as needed.
- Demonstrated strong analytic and problem-solving abilities.
The GCP DevOps Security Engineer reports to
Director of DevOps and Quality Assurance
Salary base range: $110k – 130k