This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for a Senior Security Engineer with a focus on cloud security to design, implement, and improve security across our GCP and Kubernetes environments, and to join our Security team.
Job Responsibility:
Design and implement secure architecture in GCP
Secure and harden Kubernetes clusters (GKE) across network, workloads, and access layers
Build and operate Zero Trust access model based on Zero Trust Architecture
Configure, tune, and maintain WAF solutions (e.g. Cloudflare, Google Cloud Armor, F5)
Identify and remediate cloud and Kubernetes misconfigurations
Implement security logging, monitoring, and detection use cases for cloud-native environments
Lead or support incident response (triage, containment, root cause analysis, post-incident improvements)
Partner with DevOps and Engineering teams to integrate security into infrastructure
Define and enforce security baselines, hardening standards, and guardrails across cloud environments
Requirements:
Strong hands-on experience securing Google Cloud Platform (GCP) environments (IAM, least privilege, service accounts, Workload Identity, VPC security, firewalls, egress control, Org Policies, Security Command Center, audit logging, misconfiguration detection)
Solid experience securing Kubernetes (GKE) (cluster hardening, API access, RBAC, network policies, workload isolation, pod security, secrets management, container/image security, runtime monitoring e.g. Falco, policy enforcement with OPA/Kyverno)
Experience with WAF solutions (preferrably F5.) and rule tuning
Practical experience with ZTNA (e.g. Cloudflare Access, Zscaler) and understanding of OAuth2, OIDC, JWT
Strong hands-on experience with Infrastructure as Code (Terraform)
Good understanding of web and API security (OWASP Top 10)
Experience with logging, monitoring, and incident response in cloud environments
Ability to identify and mitigate real-world security risks and attack vectors
Strong problem-solving skills and ability to work independently in a fast-paced environment
Focus on practical, scalable security solutions rather than theoretical or compliance-only approaches
Independence and strong communication skills
What we offer:
Generous vacation time, paid sick leave, and bonus days for years of service
Language classes
Workshops on investing, mental wellbeing, and intercultural communication
$600/year for additional courses, plus internal workshops
QIC running club
Relocation support
Remote health insurance with up to $1,500 in dental coverage
Tax consultations
Travel discounts with Qatar Airways, Turkish Airlines, and Doha hotel partners