What You'll Do
- Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, data protection, logging, monitoring, and compliance
- Advise enterprise customers on GCP security strategy aligned to business risk, regulatory requirements, and operating priorities
- Lead Google Cloud security posture assessments to identify high-impact risks, misconfigurations, control gaps, and operational weaknesses
- Advise customers on Wiz use cases such as CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows
- Advise customers on Google SecOps, Chronicle, SIEM strategy, cloud telemetry strategy, detection engineering, and SOC workflow design
- Develop executive-ready findings, prioritized remediation roadmaps, and maturity-based security improvement plans
- Lead Security Command Center and Security Command Center Enterprise implementation, configuration, tuning, and operationalization
- Integrate Security Command Center findings into vulnerability management, compliance, security operations, and executive risk reporting workflows
- Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition
- Help customers move from fragmented monitoring approaches into scalable, cloud-native security operations models
- Own complex technical workstreams from discovery through delivery, including technical direction, scope, risks, and stakeholder coordination
- Translate technical security findings into clear business risks, investment priorities, and actionable recommendations for senior leaders
- Guide customer teams through secure Google Cloud design, configuration, deployment, and operational maturity decisions
- Advise on Vertex AI and AI workload security, including identity, access control, data protection, governance, logging, and monitoring
- Create architecture diagrams, assessment deliverables, roadmaps, implementation documentation, and operational runbooks
- Develop repeatable methodologies, assessment frameworks, implementation patterns, reference architectures, and reusable technical assets
- Mentor consultants and help raise the overall capability of the Google Cloud Security practice
- Provide technical leadership during client reviews, executive briefings, architecture discussions, and operational meetings
- Contribute to process improvement and automation initiatives that improve consistency, scalability, and delivery quality
WORK ENVIRONMENT/TRAVEL REQUIRED:
Remote working environment with up to 25% travel required.
Bonus Points
- Wiz, Google SecOps/Chronicle, SIEM migration, Vertex AI security, Terraform, or related cloud security skills
Skills Required
- 8 years of security consulting experience with at least 4 years as a Google Cloud consultant
- Hold one or more Google Cloud security certifications (e.g., Professional Cloud Security Engineer, Professional Cloud Architect, Professional Security Operations Engineer) or equivalent experience
- Proven track record delivering Google Cloud security architecture, posture modernization, and operationalization from discovery through handover
- Hands-on leadership in cloud security projects across security, cloud, DevOps, architecture, compliance, and operations teams
- Documented experience integrating cloud-native security platforms, SIEM, CNAPP/CSPM, logging, monitoring, vulnerability management, and SOC workflows
- Experience working under regulatory/industry frameworks such as FedRAMP, FISMA, HIPAA, HITRUST, PCI, CMMC, or similar
- Client-facing consulting experience with strong communication and ability to operate in ambiguous, high-stakes engagements
- Deep experience designing, securing, deploying, and operationalizing Google Cloud environments (IAM, networking, data protection, workload security, logging/monitoring)
- Hands-on experience with Google Cloud security services, including Security Command Center or equivalent
- Experience leading cloud security posture assessments, architecture reviews, or enterprise cloud security modernization efforts
- Proven ability to lead complex technical engagements with multiple stakeholders and enterprise-scale environments
- Excellent documentation skills (architecture diagrams, assessment reports, roadmaps, implementation plans, runbooks)
- Strong problem-solving, organizational, and executive briefing skills
Coalfire Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Coalfire and has not been reviewed or approved by Coalfire.
-
Leave & Time Off Breadth — Flexible paid time off and paid parental leave are prominently offered, with remote/WFH support enabling time away when workload allows.
-
Healthcare Strength — Comprehensive medical, dental, vision, wellness resources, and an EAP are part of the core package. Carrier coverage and plan options are regularly highlighted across employer materials.
-
Retirement Support — A company‑matched 401(k) is included alongside other financial and development perks. This retirement benefit is consistently featured across benefits overviews.
Coalfire Insights
What We Do
Coalfire is the cybersecurity advisor that helps private and public sector organizations avert threats, close gaps, and effectively manage risk. By providing independent and tailored advice, assessments, technical testing, and cyber engineering services, we help clients develop scalable programs that improve their security posture, achieve their business objectives, and fuel their continued success. Coalfire has been a cybersecurity thought leader for more than 20 years and has offices throughout the United States and Europe.









