Staff Security Engineer (GCP)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Staff Security Engineer (GCP): Designing and implementing security primitives and architecture for a multitenant cloud hosting platform with an accent on GCP-native security, IAM design, and workload protection. Focus on building reusable security primitives, automating AppSec controls in CI/CD pipelines, and establishing a Security by Design culture.
Location: Remote within Canada or hybrid in Vancouver, BC. Visa sponsorship is not available.
Salary: 176,000 – 220,000 CAD per year
Company
WebOps platform powering over 300,000 sites for global customers including Google, Princeton, and the United Nations.
What you will do
- Design and implement GCP security primitives including Org policy hierarchies, VPC Service Controls, and Workload Identity Federation.
- Lead threat modeling for GCP-hosted, container-based multi-tenant architectures.
- Automate application security testing and controls (SAST, DAST, IAST, CSPM) directly into CI/CD pipelines.
- Conduct secure code and architecture design reviews and risk-based assessments.
- Manage the software supply chain security program, including SCA tooling and Binary Authorization.
- Mentor engineering teams and define organization-wide application security policies and standards.
Requirements
- Must be based in Canada.
- 10+ years of overall experience, with at least 5+ years dedicated to Application Security.
- Deep hands-on experience designing security controls in GCP at scale (IAM, VPC SC, GKE hardening, SCC).
- Proficiency in writing production-grade, secure-by-default Terraform for GCP.
- Ability to build maintainable components in Go or Python.
- Experience with CI/CD tools such as Jenkins, Cloud Build, or CircleCI.
Nice to have
- Google Professional Cloud Security Engineer certification.
- CISSP, CCSP, or CKS (Certified Kubernetes Security Specialist) certifications.
- Experience with AWS or Azure.
Culture & Benefits
- Industry competitive compensation and equity plan.
- Full medical coverage including extended healthcare, dental, and vision.
- Paid Time Off (PTO), Paid Sick Leave (PSL), and 11 company holidays.
- Monthly allowance for wellness, reading, and LinkedIn Learning access.
- Top-of-the-line equipment and available in-office workspace in Vancouver.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →