Core Security & Operations
3+ years experience in SecOps / Cloud Security / Security Engineering
Hands-on experience securing Google Cloud Platform environments
Strong understanding of:
IAM (roles, service accounts, workload identity)
Network security (VPCs, firewall rules, load balancers)
Organization policies and security baselines
Experience operating and tuning security controls in production
Detection, Monitoring & Response
Experience with Google Cloud Security Command Center
Experience with Google SecOps (Chronicle) or equivalent SIEM
Building and tuning:
Detection rules
Alerts
Dashboards
Incident triage, investigation, and response in cloud environments
Log ingestion and normalization from cloud and third-party sources
Automation & Engineering
Strong scripting skills (Python preferred)
Security automation (SOAR-like workflows, custom tooling)
Experience integrating security tooling via APIs
CI/CD security controls (shift-left, pipeline security checks)
Cloud & Platform Security
Experience securing:
GKE
Cloud Run
Compute Engine
Knowledge of container security concepts (images, registries, runtime)
Vulnerability management and remediation workflows
Governance & Compliance
Experience with security posture management
Familiarity with common frameworks (ISO 27001, SOC 2, CIS Benchmarks)
Risk assessment and security findings remediation
Nice to Have:
Experience with Wiz, Prisma Cloud, or similar CSPM tools
Experience with threat modeling and attack simulations
Experience working with regulated environments
Google Cloud security certifications












