Security Engineer (Standard)
Tenarai (formerly Infogain) · IT Services & Consulting
- Gurugram, India
- On-site
- Posted yesterday
- Cybersecurity
- Full-Time / Contract
About the job
<p><strong>Core Skills</strong></p><p>We are seeking a skilled and experienced GCP Security Engineer to design,</p><p>implement, and manage security solutions in Google Cloud Platform (GCP). The</p><p>ideal candidate will have a deep understanding of cloud security best practices,</p><p>compliance frameworks, and hands-on experience with GCP security services.</p><p>Key Responsibilities</p><p>1. Security Architecture &amp;amp; Design</p><p>o Design secure cloud architectures on GCP, following security best</p><p>practices and standards (e.g., CIS Benchmarks, NIST).</p><p>o Integrate security by design across cloud services and applications.</p><p>2. Security Implementation</p><p>o Deploy and configure GCP security services, including Cloud IAM, VPC</p><p>Service Controls, Cloud Armor, Security Command Center, Cloud KMS,</p><p>and Cloud HSM.</p><p>3. Vulnerability Management</p><p>o Perform regular vulnerability assessments and penetration testing on GCP</p><p>resources.</p><p>o Remediate identified vulnerabilities and provide security</p><p>recommendations.</p><p>4. Compliance &amp;amp; Auditing</p><p>o Ensure GCP environment compliance with security standards (e.g., ISO</p><p>27001, SOC 2, HIPAA, GDPR).</p><p>o Support internal and external security audits and implement remediation</p><p>plans.</p><p>5. Security Automation</p><p>o Automate security tasks using scripting languages (e.g., Python, Bash)</p><p>and infrastructure-as-code tools (e.g., Terraform, Cloud Deployment</p><p>Manager).</p><p>6. Security Monitoring &amp;amp; Logging</p><p>o Configure and manage security logging and monitoring tools to detect,</p><p>analyse, and respond to security events.</p><p>7. Collaboration &amp;amp; Communication</p><p>o Collaborate with engineering, operations, and development teams to</p><p>integrate security into the software development lifecycle (DevSecOps).</p><p>o Communicate security best practices to technical and non-technical</p><p>stakeholders.</p><p>8. Research &amp;amp; Development</p><p>o Stay up-to-date on the latest GCP security features, vulnerabilities, and</p><p>emerging threats.</p><p>o Evaluate and recommend new security tools and technologies.</p><p>9. Incident Response</p><p>? Participate in security incident response activities, including investigation,</p><p>containment, eradication, and recovery.</p><p>Required Qualifications</p><p>? Bachelor&amp;#39;s degree in Computer Science, Information Security, or related field.</p><p>? 5+ years of experience in IT security, with a focus on cloud security.</p><p>? 2+ years of hands-on experience with GCP security services and best practices.</p><p>? Strong understanding of cloud security concepts, principles, and technologies.</p><p>? Proven experience in security hardening, vulnerability management, and incident</p><p>response.</p><p>? Familiarity with security compliance frameworks and regulations (e.g., ISO</p><p>27001, SOC 2, HIPAA, GDPR).</p><p>? Excellent communication and collaboration skills.</p><p>? GCP Security Engineer or Professional certification is preferred.</p><p>Bonus Qualifications</p><p>? Bonus Qualifications</p><p>? Experience in Insights Management for reporting and security analytics.</p><p>? Strong knowledge of SQL to support Big Data teams in managing and securing</p><p>large-scale data environments.</p><p>? Familiarity with data visualization tools for security insights</p>