GCP Cloud Security Specialist - Data & AI Security

Iconma LLC

  • Phoenix, AZ
  • 16 days ago

    Highlights

    GCP Security & Infrastructure Controls: Hands-on experience with core GCP security and data tools, including IAM, VPC / Shared VPC, Cloud Run/GKE, BigQuery, Cloud Storage, Datastore/Firestore, and Cloud KMS / Secret Manager. Cloud Security Architecture (GCP Focus): Strong expertise in designing and assessing cloud security architectures, specifically within Google Cloud Platform.

    Numbers & Facts

    LocationPhoenix, AZ

    Description

    Our client, a IT Services and Consulting company, is looking for a GCP Cloud Security Specialist - Data & AI Security for their Phoenix, AZ/Hybrid location.

    Responsibilities:

    • Assess the end-to-end architecture from a data security and privacy standpoint.
    • Review data flows across:
    • GCP service projects
    • Virtual agents / conversational AI
    • Telephony platforms
    • API proxies
    • Datastore, BigQuery, Cloud Storage
    • On-prem / Amex systems of record
    • Identify risks related to:
    • Customer data exposure
    • PII handling
    • Authentication and authorization
    • Encryption in transit and at rest
    • Secrets and key management
    • Logging, monitoring, and auditability
    • Data retention and deletion
    • Cross-boundary data movement
    • Review security controls for GCP Shared VPC, interconnects, service accounts, IAM, and network segmentation.
    • Implement Sentinel policies for enforcing encryption standards.
    • Implement database activity monitoring and blocking rules in GCP.
    • Assess AI-specific risks, including prompt/context leakage, model input/output handling, and knowledge store access.
    • Produce findings report with risk ratings, gaps, and remediation recommendations.

    Requirements:

    • Strong experience in cloud security architecture, preferably Google Cloud Platform.
    • Hands-on knowledge of:
    • GCP IAM
    • VPC / Shared VPC
    • Cloud Run / GKE
    • BigQuery
    • Cloud Storage
    • Datastore / Firestore
    • Cloud KMS / Secret Manager
    • Experience assessing data protection controls for PII, PCI, or regulated customer data.
    • Knowledge of API security, including OAuth, mTLS, token handling, gateways, and service-to-service authentication.
    • Familiarity with network security, private connectivity, firewalls, segmentation, and hybrid cloud interconnects.
    • Understanding of logging, SIEM integration, audit trails, and security monitoring.
    • Experience with threat modeling and architecture risk reviews.
    • Preferred Skills
    • Experience with conversational AI / virtual agent platforms.
    • Knowledge of telephony/SIP integrations and contact center platforms.
    • Experience with PCI DSS, NIST, ISO 27001, SOC 2, or financial services security standards.
    • Familiarity with AI data governance, model safety, and GenAI security risks.
    • Cloud Security Architecture (GCP Focus): Strong expertise in designing and assessing cloud security architectures, specifically within Google Cloud Platform.
    • GCP Security & Infrastructure Controls: Hands-on experience with core GCP security and data tools, including IAM, VPC / Shared VPC, Cloud Run/GKE, BigQuery, Cloud Storage, Datastore/Firestore, and Cloud KMS / Secret Manager.
    • Data Protection & Compliance: Demonstrated experience assessing data protection controls for sensitive and regulated customer data, including PII and PCI.
    • 10.00 Years of Experience

    Why Should You Apply?

    • Health Benefits
    • Referral Program
    • Excellent growth and advancement opportunities

    Similar Jobs