This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Cloud Security Architect Senior Engineer is responsible for defining and driving the Google Cloud Platform (GCP) security architecture across Citi's global cloud initiatives, ensuring compliance with financial regulations, internal controls, and industry best practices.
Job Responsibility:
Develop and implement a comprehensive security strategy for Google Cloud that aligns with the organization’s business goals and compliance standards, such as GDPR, SOC 2, and HIPAA
Develop security infrastructure architectures and frameworks, focusing on protecting sensitive data and mitigating risks across networks, storage, applications, and authentication services using automation across a hybrid cloud architecture
Design and enforce encryption and rest and in transit between all compute boundaries
Proactively monitor GCP environments for vulnerabilities, manage threat detection, and ensure prompt response to potential security incidents
Work closely with engineering, development, SRE, and operations teams to enforce security policies and integrate security best practices into the development lifecycle
Guide the security team, promote security awareness across the organization, and ensure compliance with industry standards (e.g., ISO 27001, NIST)
Requirements:
10+ years of experience in a Security Architecture role
10+ years of experience in a Cloud Security Engineering role
In-depth understanding of GCP core infrastructure services, security services, encryption practices, and compliance frameworks
Deep understanding of GCP IAM, RBAC, Cloud Identity and Zero trust principles for managing secure access to data and applications in the cloud
Expertise in GCP networking, including VPC’s subnets, firewall configurations, Google Cloud VPN etc.
Experience with scripting and configuration management tools like Bash, Python, Ansible, Puppet, and Chef
Ability to assess complex security risks, identify vulnerabilities, and design effective security solutions
GIT is a version control software that's commonly used to store and keep track of any changes to your source code
Proven ability to communicate technical information to stakeholders, including those with limited technical expertise and work with cross-functionality to enforce security measures
Bachelor’s degree/University degree or equivalent experience
Master’s degree preferred
What we offer:
medical, dental & vision coverage
401(k)
life, accident, and disability insurance
wellness programs
paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays
discretionary and formulaic incentive and retention awards