- Company Name
- Qodea
- Job Title
- GCP Security Consultant- Defence Sector
- Job Description
-
**Job title**
GCP Security Consultant – Defence Sector
**Role Summary**
Design, implement, and advise on secure Google Cloud Platform (GCP) architectures for UK defence‑sector and other regulated clients. Lead risk assessments, compliance reviews, and integrate security controls into cloud solutions and DevOps pipelines.
**Expectations**
- Deliver robust, compliant GCP security designs.
- Conduct comprehensive security assessments and gap analyses.
- Translate technical risks into clear business impact.
- Maintain up‑to‑date knowledge of GCP security features, UK regulations, and emerging threats.
**Key Responsibilities**
- Architect secure GCP environments, applying IAM, KMS, VPC Service Controls, Cloud Armor, and other native services.
- Perform cloud security assessments, gap analyses, and threat modelling.
- Advise on GDPR, NCSC Cloud Security Principles, ISO 27001, ICO guidance, and other UK data‑protection frameworks.
- Develop and enforce cloud security policies, procedures, and governance models.
- Configure and manage GCP security tools (Security Command Center, SecOps tooling, Cloud Armor, VPC Service Controls).
- Embed security into CI/CD pipelines, collaborating with engineering and DevOps teams.
- Support incident response planning and cloud‑specific disaster‑recovery strategies.
- Provide guidance on infrastructure‑as‑code (Terraform, Deployment Manager) and SIEM integration (Splunk, Chronicle).
**Required Skills**
- 3+ years of cloud security experience focused on GCP.
- Proficiency with GCP security services: IAM, Cloud KMS, VPC Service Controls, Cloud Armor, Security Command Center.
- Deep understanding of UK data‑protection and compliance frameworks (GDPR, ICO guidance, NCSC principles).
- Expertise in identity federation, SSO, RBAC, network segmentation, firewall configuration in GCP.
- Experience with logging, monitoring, SIEM integration (e.g., Splunk, Chronicle).
- Familiarity with Terraform and/or Deployment Manager for infrastructure‑as‑code.
- Scripting skills (Python, Bash) for automation and tooling.
- Incident response experience in cloud‑native environments.
- Strong communication, consulting mindset, and ability to engage technical and non‑technical stakeholders.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- Google Cloud Professional Cloud Security Engineer certification (desirable).
- DV clearance required; experience with MOD or other UK public‑sector organisations is highly desirable.