Senior Cloud Application Consultant
Indexed description
Our client is a cutting-edge research company dedicated to unraveling the biology of aging to promote longer, healthier lives. As a Senior Cloud/Application Security Consultant, you will play a pivotal role in protecting our advanced scientific infrastructure, enabling groundbreaking research while ensuring top-tier security across our cloud and application environments. This is your opportunity to collaborate with world-class scientists, engineers, and bioinformaticians in a dynamic, mission-driven organization that values curiosity and innovation.
What You’ll Do:
- Lead the design, implementation, and ongoing enhancement of cloud security controls within Google Cloud Platform (GCP), establishing secure-by-default architecture patterns.
- Develop and manage comprehensive security strategies for identity, access, secrets management, network security, and threat detection.
- Collaborate closely with engineering and research teams to integrate security best practices into CI/CD pipelines, secure application development, and AI/ML workflows.
- Perform threat modeling, security reviews, and vulnerability assessments for scientific applications, data pipelines, and infrastructure.
- Support security operations with incident response, logging, monitoring, and threat detection, strengthening Calico’s ability to detect and respond to security events.
- Ensure security compliance aligns with standards such as ISO 27001, NIST, CIS Controls, and SOC 2, supporting audits and assessments.
Required Skills:
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Engineering, or a related field, or equivalent practical experience.
- 8+ years of hands-on experience in information security with proven expertise in cloud and application security.
- 5+ years securing cloud applications and infrastructure, with strong preference for Google Cloud Platform experience.
- Deep knowledge of Google Cloud native security services such as Security Command Center, Cloud Armor, KMS, Secret Manager, Cloud DLP, and related tools.
- Strong experience with Infrastructure as Code tools, especially Terraform, implementing policy-as-code and automated security guardrails.
- Proven expertise in securing containerized workloads with Docker, Kubernetes, GKE.
- Skilled in application security concepts including API security, web app security, threat modeling, and security testing tools like SAST, DAST, SCA.
- Excellent communication skills, capable of translating complex security topics to technical and non-technical audiences.
Nice to Have:
- Relevant cybersecurity certifications such as CISSP, CCSP, CSSLP, GCP Professional Cloud Security Engineer, GIAC certifications.
- Experience in biotechnology, life sciences, healthcare, or research environments.
- Additional security tools and frameworks familiarity.
Preferred Education and Experience:
- Master’s degree preferred but not required.
- Extensive experience in research computing, AI/ML security, or scientific data environments.
Other Requirements:
- Willingness to work onsite at least four days per week.
- Ability to collaborate across multiple teams and communicate effectively with stakeholders at all levels.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search