Our client, a IT Services and Consulting company, is looking for a GCP Cloud Security Specialist – Data & AI Security for their Phoenix, AZ/Hybrid location.
Responsibilities:
Assess the end-to-end architecture from a data security and privacy standpoint.
Review data flows across:
GCP service projects
Virtual agents / conversational AI
Telephony platforms
API proxies
Datastore, BigQuery, Cloud Storage
On-prem / Amex systems of record
Identify risks related to:
Customer data exposure
PII handling
Authentication and authorization
Encryption in transit and at rest
Secrets and key management
Logging, monitoring, and auditability
Data retention and deletion
Cross-boundary data movement
Review security controls for GCP Shared VPC, interconnects, service accounts, IAM, and network segmentation.
Implement Sentinel policies for enforcing encryption standards.
Implement database activity monitoring and blocking rules in GCP.
Assess AI-specific risks, including prompt/context leakage, model input/output handling, and knowledge store access.
Produce findings report with risk ratings, gaps, and remediation recommendations.
Requirements:
Strong experience in cloud security architecture, preferably Google Cloud Platform.
Hands-on knowledge of:
GCP IAM
VPC / Shared VPC
Cloud Run / GKE
BigQuery
Cloud Storage
Datastore / Firestore
Cloud KMS / Secret Manager
Experience assessing data protection controls for PII, PCI, or regulated customer data.
Knowledge of API security, including OAuth, mTLS, token handling, gateways, and service-to-service authentication.
Familiarity with network security, private connectivity, firewalls, segmentation, and hybrid cloud interconnects.
Understanding of logging, SIEM integration, audit trails, and security monitoring.
Experience with threat modeling and architecture risk reviews.
Preferred Skills
Experience with conversational AI / virtual agent platforms.
Knowledge of telephony/SIP integrations and contact center platforms.
Experience with PCI DSS, NIST, ISO 27001, SOC 2, or financial services security standards.
Familiarity with AI data governance, model safety, and GenAI security risks.
Cloud Security Architecture (GCP Focus): Strong expertise in designing and assessing cloud security architectures, specifically within Google Cloud Platform.
GCP Security & Infrastructure Controls: Hands-on experience with core GCP security and data tools, including IAM, VPC / Shared VPC, Cloud Run/GKE, BigQuery, Cloud Storage, Datastore/Firestore, and Cloud KMS / Secret Manager.
Data Protection & Compliance: Demonstrated experience assessing data protection controls for sensitive and regulated customer data, including PII and PCI.