3 часа назад
Senior Cloud Security Engineer (GCP)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cloud Security Engineer (GCP) (Fintech): Strengthening cloud security for a modern investing platform with an accent on Google Cloud security operations, threat detection, compliance, and secure infrastructure. Focus on implementing Security Command Center Enterprise, developing automated incident-response playbooks, integrating security into CI/CD pipelines, and improving visibility across cloud assets.
Location: Amsterdam, Netherlands; hybrid
Company
is a fintech company building investing products for millions of users.
What you will do
- Strengthen the cloud security posture through risk management, security assessments, vulnerability scanning, monitoring, and dashboards.
- Implement and manage Google Cloud Security Command Center Enterprise, threat detection, alerting, and security operations.
- Define security policies and development standards, support regulatory compliance, and integrate security into CI/CD pipelines.
- Advise engineering teams on secure system and architecture design, investigate incidents, and deliver security training.
- Develop automated response playbooks, monitor findings and misconfigurations, and coordinate with external security partners and auditors.
- Track security metrics, evaluate security tools, follow emerging threats, and participate in on-call security incident coverage.
Requirements
- Senior or Staff-level experience in cloud security.
- Expert knowledge of Google Cloud Platform security and hands-on experience with Security Command Center Enterprise.
- Strong knowledge of SIEM/SOAR platforms, security operations, threat detection, vulnerability management, and incident response.
- Experience with cloud security posture management, compliance frameworks, Terraform, and Kubernetes security.
- Understanding of SOC 2, ISO 27001, GDPR, and DORA requirements.
- Strong communication skills and the ability to explain complex security concepts to technical and non-technical audiences.
Nice to have
- Security certifications such as CISSP, CCSP, GCSA, or GIAC.
- Experience with AWS or Azure, DevSecOps, container security, penetration testing, or ethical hacking.
- Experience in fintech or other regulated industries.
- Knowledge of secure coding practices and SAST/DAST application security testing.
Culture & Benefits
- Opportunity to shape security strategy and establish security practices as the company scales.
- Work with modern cloud technologies and introduce security tools and practices.
- Collaborate with engineering teams in a learning-focused environment that values innovation and continuous improvement.
- Build secure products that support accessible investing and financial services.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →