Cloud Platform Engineer, GCP

Posted 22hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Senior GCP engineer designing secure, compliant infrastructure for OpsGuru’s financial-services clients. Building Terraform, IAM, networking, CI/CD, and policy guardrails for production cloud platforms.

Responsibilities:

  • Design, build, and maintain modular, reusable Terraform modules for GCP organization, folder, project, and service resources
  • Develop CI/CD pipelines that plan, test, scan, and deploy infrastructure and policy changes with approval gates and audit trails
  • Implement IAM, RBAC, and least-privilege models, including service account lifecycles, Workload Identity, and privileged access patterns
  • Build and secure VPCs, including Shared VPCs, firewall policies, Cloud DNS, and private connectivity through Private Service Connect, Interconnect, and VPN
  • Apply STIG and/or CIS benchmarks and implement enterprise security controls across the platform and its services
  • Define and enforce guardrails using GCP Organization Policy, OPA/Rego, Terraform policy checks, or equivalent tooling
  • Onboard enterprise cloud and platform services into production with controls, patterns, and runbooks for safe consumption
  • Facilitate design sessions, present technical decisions, and deliver comprehensive documentation and training to customer teams
  • Collaborate with the client's Security, IAM, Networking, Architecture, and Operations teams to translate business requirements into platform capabilities
  • Deliver complete documentation and knowledge transfer

Requirements:

  • Must be located and legally eligible to work in Canada
  • Proven hands-on experience structuring modular Terraform within enterprise GCP environments
  • Experience building automation pipelines for infrastructure delivery and testing
  • Strong grasp of GCP IAM, RBAC, service account management, and security controls
  • Expertise in GCP enterprise networking, including Shared VPCs, firewalls, Cloud DNS, Private Service Connect, Interconnect, and VPN
  • Hands-on experience implementing STIG and/or CIS benchmarks
  • Experience enforcing platform guardrails programmatically using OPA/Rego, Org Policy, Terraform policy checks, or equivalent tooling
  • Track record of enabling cloud platform services in enterprise production environments
  • Ability to partner effectively with Security, IAM, Networking, Architecture, and Operations teams
  • Excellent technical writing and stakeholder management skills
  • Experience with Gemini Enterprise implementation or enablement
  • Google Cloud Professional Cloud Architect certification
  • Experience in banking, financial services, or other highly regulated environments
  • Experience supporting enterprise Governance, Risk, and Compliance processes
  • Experience onboarding AI services into enterprise environments
  • Successful completion of background and security checks may be required prior to onboarding

Benefits:

  • Full-time workload of 40 hours/week
  • Contract duration of 14–16 weeks with potential for extension