Develop, deploy, and maintain Infrastructure-as-Code (IaC) in a GCP cloud-based environment Lead the development and enforcement of security architecture and operational best practices Establish monitoring, alerting, and incident response strategies across environments Define and execute on security roadmaps (e.g., threat modeling, vulnerability scanning, IAM policies) Partner with developers to shift security and reliability left into the SDLC Support compliance and audit initiatives (SOC2, ISO27001) Develop and maintain automated CI/CD pipelines for DBs, Servers, containers, and applications using DevSecOps tools to include Terraform, Ansible, GitHub, ArgoCD Develop integration interfaces using Python, Bash and Go Deploy and maintain complex modern cloud architectures Create automated testing plans for infrastructure and applications Create and update technical documentation (e.g. Familiarity with compliance frameworks like SOC2 or ISO27001 Comfortable writing code and automation scripts (e.g., Python, Bash, Go) A strategic mindset paired with startup scrappiness-you can zoom out and drive systems-level thinking, and also dive in and ship Experience with Kubernetes, service mesh (e.g., Istio), and zero-trust architecture History of leading incident response or large-scale reliability improvements Strong communication skills across engineering and non-technical stakeholders.