GCP IAM Specialist - Cloud-Native Development

Posted One Month Ago
Be an Early Applicant
Tokyo, JPN
In-Office
Senior level
Information Technology • Professional Services • Software • Consulting
The Role
Design, implement, and govern GCP IAM frameworks and least-privilege roles across multi-project environments. Build cloud-native automation and applications, integrate IAM with CI/CD via Terraform, enforce org-level guardrails (VPC Service Controls, Access Context Manager), conduct access reviews and audits, and provide IAM governance and technical guidance to platform and delivery teams.
Summary Generated by Built In

We are seeking a highly skilled GCP IAM Specialist with strong cloud-native development expertise to design, implement, and govern identity and access management frameworks across our Google Cloud Platform estate. This role is pivotal in ensuring secure, compliant, and scalable access controls while driving cloud-native application delivery.

Job Description - Grade Specific

Key Responsibilities

  • Design and enforce IAM policies, roles, and permission boundaries across GCP projects, folders, and organizations
  • Develop and maintain custom IAM roles aligned to least-privilege principles across multi-project GCP environments
  • Build and maintain cloud-native applications and automation tooling using GCP-native services (Cloud Run, Cloud Functions, Pub/Sub, GCS)
  • Implement Workload Identity Federation and service account management best practices
  • Integrate IAM controls with CI/CD pipelines and enforce policy-as-code using Terraform
  • Conduct IAM access reviews, audit log analysis via Cloud Audit Logs and Security Command Center
  • Collaborate with development and platform teams to embed security controls into cloud-native delivery
  • Define and maintain organization-level IAM guardrails using VPC Service Controls and Access Context Manager
  • Drive IAM automation using Ansible playbooks for configuration management and drift detection
  • Provide technical guidance and IAM governance frameworks to delivery teams


Requirements

Required Qualifications:

  • 5+ years of hands-on experience with GCP IAM, including custom roles and policy management
  • Strong proficiency in GCP-native development (Cloud Run, Cloud Functions, App Engine, Pub/Sub)
  • Solid Terraform experience for IAM policy provisioning and infrastructure-as-code
  • Experience with Workload Identity, service accounts, and federated identity management
  • Proficiency in Python or Go for automation and tooling development
  • Familiarity with GCP Security Command Center, Cloud Audit Logs, and compliance frameworks
  • Experience implementing VPC Service Controls and organization policies
  • Understanding of OAuth 2.0, OIDC, and SAML integration patterns on GCP

Preferred Qualifications:

  • Google Professional Cloud Security Engineer certification
  • Experience with Ansible for IAM configuration drift detection
  • Background in financial services, healthcare, or other regulated industries
  • Familiarity with GKE Workload Identity and namespace-scoped IAM bindings
  • Experience with SIEM integration and security event automation pipelines


Skills Required

  • 5+ years of hands-on experience with GCP IAM, including custom roles and policy management
  • Proficiency in GCP-native development (Cloud Run, Cloud Functions, App Engine, Pub/Sub)
  • Solid Terraform experience for IAM policy provisioning and infrastructure-as-code
  • Experience with Workload Identity, service accounts, and federated identity management
  • Proficiency in Python or Go for automation and tooling development
  • Familiarity with GCP Security Command Center, Cloud Audit Logs, and compliance frameworks
  • Experience implementing VPC Service Controls and organization policies
  • Understanding of OAuth 2.0, OIDC, and SAML integration patterns on GCP
  • Google Professional Cloud Security Engineer certification
  • Experience with Ansible for IAM configuration drift detection
  • Background in financial services, healthcare, or other regulated industries
  • Familiarity with GKE Workload Identity and namespace-scoped IAM bindings
  • Experience with SIEM integration and security event automation pipelines
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
17 Employees
Year Founded: 2015

What We Do

NexusCorp LLC (operating as Nexus Corporation) helps businesses achieve their goals through custom software development, IT consulting, statement-of-work delivery, contingent workforce and direct-hire solutions, and payroll services. It designs, builds, tests, and maintains scalable digital applications; analyzes systems to improve technology use; and supplies specialized professionals and structured project delivery. Its client-first approach emphasizes compliance, integrity, innovation, and tailored business outcomes.

Similar Jobs

ServiceNow Logo ServiceNow

Senior in-Market Engineer

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Hybrid
Tokyo, JPN
29000 Employees

BlackRock Logo BlackRock

Japan Fixed Income & Credit Portfolio Manager, Managing Director

Fintech • Information Technology • Financial Services
In-Office
Tokyo, JPN
25000 Employees

Micron Technology Logo Micron Technology

Principal University Recruiting Leader

Artificial Intelligence • Hardware • Information Technology • Machine Learning
In-Office or Remote
2 Locations
45000 Employees
Hybrid
Tokyo, JPN
289097 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account