What You'll Do
- Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, data protection, logging, monitoring, and compliance
- Advise enterprise customers on GCP security strategy aligned to business risk, regulatory requirements, and operating priorities
- Lead Google Cloud security posture assessments to identify high-impact risks, misconfigurations, control gaps, and operational weaknesses
- Advise customers on Google SecOps, Chronicle, SIEM strategy, cloud telemetry strategy, detection engineering, and SOC workflow design
- Advise customers on Wiz use cases such as CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows
- Develop executive-ready findings, prioritized remediation roadmaps, and maturity-based security improvement plans
- Lead Security Command Center and Security Command Center Enterprise implementation, configuration, tuning, and operationalization
- Integrate Security Command Center findings into vulnerability management, compliance, security operations, and executive risk reporting workflows
- Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition
- Help customers move from fragmented monitoring approaches into scalable, cloud-native security operations models
- Own complex technical workstreams from discovery through delivery, including technical direction, scope, risks, and stakeholder coordination
- Translate technical security findings into clear business risks, investment priorities, and actionable recommendations for senior leaders
- Guide customer teams through secure Google Cloud design, configuration, deployment, and operational maturity decisions
- Advise on Vertex AI and AI workload security, including identity, access control, data protection, governance, logging, and monitoring
- Create architecture diagrams, assessment deliverables, roadmaps, implementation documentation, and operational runbooks
- Develop repeatable methodologies, assessment frameworks, implementation patterns, reference architectures, and reusable technical assets
- Mentor consultants and help raise the overall capability of the Google Cloud Security practice
- Provide technical leadership during client reviews, executive briefings, architecture discussions, and operational meetings
- Contribute to process improvement and automation initiatives that improve consistency, scalability, and delivery quality
WORK ENVIRONMENT/TRAVEL REQUIRED:
Remote working environment with up to 25% travel required.
What You'll Bring
- 8 years of security consulting experience spanning various domains with at least 4 years experience directly working as a Google Cloud consultant.
- Hold one or more of these security certifications: Google Cloud Professional, Cloud Security Engineer, or Professional Cloud Architect / Google Cloud Professional Security Operations Engineer, or equivalent Google Cloud security experience
- Proven track record delivering Google Cloud security architecture, posture modernization, and operationalization outcomes from discovery through handover.
- Hands-on leadership in cloud security projects across security, cloud, DevOps, architecture, compliance, and operations teams.
- Documented success integrating cloud-native security platforms, SIEM, CNAPP/CSPM, logging, monitoring, vulnerability management, and SOC workflows.
- History working under regulatory or industry frameworks such as FedRAMP, FISMA, HIPAA, HITRUST, PCI, CMMC, or similar standards.
- Demonstrable client-facing consulting experience, maintaining professionalism and clear communication in ambiguous, high-stakes, or fast-paced engagements.
- 6 years of security consulting experience spanning various domains with at least 2 years experience directly working as a Google Cloud consultant.
- Deep experience designing, securing, deploying, and operationalizing Google Cloud environments.
- Strong expertise in Google Cloud security architecture, IAM, networking, logging, monitoring, data protection, workload security, and compliance-oriented design.
- Hands-on experience with Google Cloud security services, including Security Command Center or equivalent cloud-native security platforms.
- Experience leading cloud security posture assessments, architecture reviews, or enterprise cloud security modernization efforts.
- Proven ability to lead complex technical engagements with multiple stakeholders, competing priorities, and enterprise-scale environments.
- Highly adaptable consulting mindset with the ability to move between strategy, architecture, implementation, delivery leadership, and executive advisory work.
- Excellent communication, organizational, and problem-solving skills, including the ability to brief executives and guide technical teams.
- Strong documentation skills for creating diagrams, assessment reports, roadmaps, implementation plans, written recommendations, and supporting materials.
- Critical thinking skills to balance security requirements against business objectives, operational realities, and customer maturity.
- Proven track record adapting quickly and efficiently in fast-paced, dynamic customer environments.
Bonus Points
- Google Cloud certifications: Professional Cloud Security Engineer, Professional Security Operations Engineer, or Professional Cloud Architect.
- Security Command Center Enterprise: Experience implementing, configuring, tuning, or operationalizing SCC Enterprise.
- Wiz experience: Experience with CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows.
- Google SecOps and SIEM modernization: Experience with Chronicle, SIEM architecture, telemetry strategy, detection engineering, or SIEM migration.
- Vertex AI security: Experience advising on AI governance, workload isolation, access controls, logging, monitoring, and secure deployment patterns.
- Practice development: Ability to create reusable methodologies, delivery accelerators, reference architectures, and practice-level intellectual property.
Bonus Points
- Wiz, Google SecOps/Chronicle, SIEM migration, Vertex AI security, Terraform, or related cloud security skills
Skills Required
- 8 years of security consulting experience with at least 4 years as a Google Cloud consultant
- Hold one or more Google Cloud security certifications (e.g., Professional Cloud Security Engineer, Professional Cloud Architect, Professional Security Operations Engineer) or equivalent experience
- Proven track record delivering Google Cloud security architecture, posture modernization, and operationalization from discovery through handover
- Hands-on leadership in cloud security projects across security, cloud, DevOps, architecture, compliance, and operations teams
- Documented experience integrating cloud-native security platforms, SIEM, CNAPP/CSPM, logging, monitoring, vulnerability management, and SOC workflows
- Experience working under regulatory/industry frameworks such as FedRAMP, FISMA, HIPAA, HITRUST, PCI, CMMC, or similar
- Client-facing consulting experience with strong communication and ability to operate in ambiguous, high-stakes engagements
- Deep experience designing, securing, deploying, and operationalizing Google Cloud environments (IAM, networking, data protection, workload security, logging/monitoring)
- Hands-on experience with Google Cloud security services, including Security Command Center or equivalent
- Experience leading cloud security posture assessments, architecture reviews, or enterprise cloud security modernization efforts
- Proven ability to lead complex technical engagements with multiple stakeholders and enterprise-scale environments
- Excellent documentation skills (architecture diagrams, assessment reports, roadmaps, implementation plans, runbooks)
- Strong problem-solving, organizational, and executive briefing skills
Coalfire Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Coalfire and has not been reviewed or approved by Coalfire.
-
Leave & Time Off Breadth — Flexible paid time off and paid parental leave are prominently offered, with remote/WFH support enabling time away when workload allows.
-
Healthcare Strength — Comprehensive medical, dental, vision, wellness resources, and an EAP are part of the core package. Carrier coverage and plan options are regularly highlighted across employer materials.
-
Retirement Support — A company‑matched 401(k) is included alongside other financial and development perks. This retirement benefit is consistently featured across benefits overviews.
Coalfire Insights
What We Do
Coalfire is the cybersecurity advisor that helps private and public sector organizations avert threats, close gaps, and effectively manage risk. By providing independent and tailored advice, assessments, technical testing, and cyber engineering services, we help clients develop scalable programs that improve their security posture, achieve their business objectives, and fuel their continued success. Coalfire has been a cybersecurity thought leader for more than 20 years and has offices throughout the United States and Europe.







