- Company Name
- Intuitive.ai
- Job Title
- GCP Network Security Engineer
- Job Description
-
**Job Title**
GCP Network Security Engineer
**Role Summary**
Design, implement, and troubleshoot secure GCP network solutions for enterprise clients. Leverage deep expertise in GCP networking (VPC, Cloud Interconnect, HA‑VPN, Cloud Load Balancer, Private Service Connect) and security services (Cloud Armor, Firewall rules, Service Control Perimeter, Cloud Security Command Center, IAM, KMS) to transform on‑prem and hybrid environments into resilient, compliant architectures.
**Expectations**
- Deliver high‑quality, on‑time network and security designs that meet client requirements.
- Communicate complex technical concepts clearly to customers and leadership.
- Provide comprehensive documentation (HDI, LLD, configuration guides) aligned with industry standards.
- Act as a trusted advisor, managing stakeholder expectations and ensuring client satisfaction.
**Key Responsibilities**
- Assess and map existing on‑prem and hybrid networks to identify gaps and opportunities for GCP migration.
- Develop end‑to‑end network architecture, including routing (BGP, OSPF), connectivity (Cloud Interconnect, HA‑VPN, Private Service Connect), load balancing, and DNS/DHCP.
- Configure and manage GCP security controls: firewall rules, VPC Service Controls, Cloud Armor, Cloud IDS, DDoS protection, WAF, IAM, KMS.
- Collaborate with cross‑functional technical teams (DevSecOps, SRE, Application) to integrate network security into broader solutions.
- Troubleshoot connectivity, performance, and security issues within GCP and hybrid environments.
- Create and review design documents, technical presentations, and post‑implementation reports.
- Stay current with GCP networking best practices, new services, and emerging security threats.
**Required Skills**
- Hands‑on experience with GCP services: Cloud Interconnect, VPC, Cloud Router, VPC Peering, HA‑VPN, Load Balancer, Cloud NAT, Cloud DNS, Cloud CDN, Cloud Armor, Cloud IDS, Private Service Connect.
- Proficiency in GCP security components: Cloud Security Command Center, IAM, KMS, Service Control perimeters, Firewall rules.
- Knowledge of on‑prem routing (BGP, OSPF), data center networking (Cisco, Arista, Juniper switches/routers), and firewall products (Palo Alto, Cisco, Fortinet).
- Understanding of hybrid connectivity between multiple data centers and cloud environments.
- Ability to design secure, scalable network topologies and document them at both high‑level and low‑level detail.
- Strong communication and customer‑facing skills; ability to influence and negotiate with technical and non‑technical stakeholders.
- Familiarity with automation/staging tools: Terraform, Ansible, Python, Jenkins, CloudFormation.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Technology, or related field (or equivalent practical experience).
- Certifications: Google Cloud Professional Cloud Network Engineer, Google Cloud Professional Cloud Security Engineer, or equivalent.
- Valid networking certifications (e.g., CCNP/CCNA, Cisco Certified Network Associate/Professional).
---