Remotery

Cloud Security Architect – GCP

Posted 17 hours ago

This is a fully remote position, open to applicants in Brazil.

📋 Description

• Design, implement, and maintain security architectures, policies, and controls on Google Cloud Platform (GCP) to safeguard resources, applications, identities, and data within cloud environments.

• Establish and execute Cloud Security and Security Architecture strategies rooted in Zero Trust, least privilege, defense-in-depth, and secure-by-design principles.

• Configure and oversee GCP security services and tools.

• Create secure controls and architectures for Artificial Intelligence, Generative AI, and Agentic AI applications, including LLMs, RAG, AI Agents, APIs, external tools, and enterprise integrations.

• Implement identity and authorization controls for AI agents, users, services, and tools.

• Evaluate and mitigate risks such as prompt injection, data leakage, excessive agency, insecure tool usage, API abuse, exposure of sensitive information, and credential misuse.

• Establish guardrails, security policies, access controls, and monitoring for AI applications and agents.

• Assess the security of Agentic AI frameworks and architectures along with their integrations.

• Collaborate with Cloud, Data, Software Engineering, DevOps, MLOps, and AI Engineering teams.

• Conduct security assessments, threat modeling, vulnerability analyses, architecture reviews, and security audits.

• Develop and implement security and compliance policies aligned with ISO 27001, SOC 2, HIPAA, and GDPR.

• Ensure protection controls, encryption, data classification, and governance for AI workloads.

• Define strategies for logging, monitoring, auditing, and incident response.

• Provide technical support and guidance on Cloud Security, Application Security, AI Security, and secure architecture.

• Monitor emerging threats and new technologies, recommending solutions to enhance the security posture.


⛳️ Requirements

• Demonstrated experience as a Cloud Security Architect, Cloud Security Engineer, Security Architect, or a similar role, with substantial expertise on Google Cloud Platform.

• Practical experience in designing, implementing, and managing security architectures and solutions on GCP.

• Preferred certification in Google Cloud security, ideally Google Professional Cloud Security Engineer, or an equivalent certification.

• In-depth knowledge of IAM, Identity-Aware Proxy (IAP), Security Command Center, Cloud Armor, Cloud KMS, Cloud HSM, Secret Manager, VPC Service Controls, and Cloud Audit Logs.

• Experience with Cloud Security Architecture, Zero Trust, IAM, RBAC/ABAC, least privilege, network security, encryption, secrets management, and security monitoring.

• Practical experience with Artificial Intelligence, Generative AI, and/or Agentic AI, preferably within enterprise and cloud environments.

• Familiarity with architectures involving LLMs, RAG, AI Agents, tool calling, APIs, and integrations between agents and enterprise systems.

• Understanding of risks associated with prompt injection, data leakage, insecure tool usage, excessive agency, model abuse, and exposure of sensitive information.

• Experience in defining guardrails, access controls, security policies, and monitoring for AI applications and agents.

• Knowledge of AI Security and/or OWASP Top 10 for LLM Applications.

• Experience in threat modeling, vulnerability assessment, security assessment, penetration testing, or security architecture.

• Familiarity with ISO 27001, SOC 2, HIPAA, GDPR, and where applicable, LGPD.

• Experience collaborating with Cloud Engineering, DevOps, Software Engineering, Data Engineering, Data Science, MLOps, and AI Engineering teams.

• Nice-to-haves include: Vertex AI, Gemini, Google Cloud AI/ML, LangChain, LangGraph, CrewAI, AutoGen, RAG, vector databases, embeddings, OWASP Top 10 for Agentic Applications, DevSecOps, CI/CD Security, Terraform, Security Automation, SIEM, SOAR, CSPM, CNAPP, and experience in regulated or high-criticality environments.


🏝️ Benefits

• Remote work – Monday to Friday (09:00–18:00).

• Home-office allowance – R$300.00 per month credited to an iFood card for meals/food.

• Birthday – Rox provides a voucher and a day off for you to celebrate your special day.

• Courses – Full access via RoxSchool and platforms such as Alura, Pluralsight, and O’Reilly for books and talks.

• Certifications – Certification reimbursement up to R$300.00 (TECHNOLOGY) + R$300.00 bonus for each certification achieved from these brands.

• Psychologist support – Two psychotherapy sessions paid monthly by ROX with partner psychologists.

• Feedz partnership – A gamified platform for enhanced communication and tracking of sentiment, engagement, feedback, IDP, and performance.

• WellHub (Gympass) – Partnership with gyms and health & wellness applications.

• We provide the necessary work equipment.

People also viewed

OCHIN, Inc.7 hours ago

Security Application Analyst

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$85.7k – $137.1k/year
ApplyView job
Dynanet Corporation7 hours ago

AI Security Engineer

US flagMaryland OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Solutions for Information Design, Inc.7 hours ago

Infrastructure & Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$110k – $130k/year
ApplyView job
Fuze Health8 hours ago

Senior Security Engineer

US flagArizona, +4 more statesFull-timeCybersecurity / Security Engineer$156.8k – $196k/year
ApplyView job
LG Energy Solution Vertech, Inc.9 hours ago

Cybersecurity Specialist III

US flagMassachusetts OnlyFull-timeCybersecurity / Security Engineer$98k – $110k/year
ApplyView job
Coupa Software15 hours ago

Senior Security Engineer – Red Team

IN flagIndia OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers