Define alerting rules and respond to security incidents
Conduct root cause analysis (RCA) and post-incident reviews
Ensure compliance with standards such as ISO 27001, SOC2, CIS Benchmarks
Perform regular security audits and vulnerability assessments
Automate compliance checks using policy-as-code tools
Requirements
Strong hands-on experience with Google Cloud Platform (GCP): IAM, VPC, Cloud Armor, Cloud Logging, Security Command Center
Deep understanding of Kubernetes (GKE): RBAC, Network Policies, Ingress/Egress control Service Mesh (Istio) security concepts (mTLS, policies)
Experience with Cloudflare [WAF, Zero Trust, Access, DNS, CDN security]
Proficiency in at least one: Python / Go / Bash
Experience with Terraform / Helm
Tech Stack
Cloud
DNS
Google Cloud Platform
Kubernetes
Python
Splunk
Terraform
Go
Benefits
EEO Statement: The company is an Equal Opportunity Employer. As an employer subject to affirmative action regulations, we invite you to voluntarily provide the following demographic information. This information is used solely for compliance with government record-keeping, reporting, and other legal requirements. Providing this information is voluntary and refusal to do so will not affect your application status. This data will be kept separate from your application and will not be used in the hiring decision.