Cyber solutions that move you forward, faster.
Senior Cloud Security Consultant
Location
United States
Posted
4 days ago
Salary
$94K - $163K / year
Seniority
Senior
Job Description
Senior Cloud Security Consultant
Coalfire
• Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, data protection, logging, monitoring, and compliance • Advise enterprise customers on Google Cloud security strategy aligned to business risk, regulatory requirements, and operating priorities • Lead Google Cloud security posture assessments to identify high-impact risks, misconfigurations, control gaps, and operational weaknesses • Develop executive-ready findings, prioritized remediation roadmaps, and maturity-based security improvement plans • Lead Security Command Center and Security Command Center Enterprise implementation, configuration, tuning, and operationalization • Integrate Security Command Center findings into vulnerability management, compliance, security operations, and executive risk reporting workflows • Advise customers on Google SecOps, Chronicle, SIEM strategy, cloud telemetry strategy, detection engineering, and SOC workflow design • Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition • Help customers move from fragmented monitoring approaches into scalable, cloud-native security operations models • Own complex technical workstreams from discovery through delivery, including technical direction, scope, risks, and stakeholder coordination • Translate technical security findings into clear business risks, investment priorities, and actionable recommendations for senior leaders • Guide customer teams through secure Google Cloud design, configuration, deployment, and operational maturity decisions • Advise customers on Wiz use cases such as CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows • Advise on Vertex AI and AI workload security, including identity, access control, data protection, governance, logging, and monitoring • Create architecture diagrams, assessment deliverables, roadmaps, implementation documentation, and operational runbooks • Develop repeatable methodologies, assessment frameworks, implementation patterns, reference architectures, and reusable technical assets • Mentor consultants and help raise the overall capability of the Google Cloud Security practice • Provide technical leadership during client reviews, executive briefings, architecture discussions, and operational meetings • Contribute to process improvement and automation initiatives that improve consistency, scalability, and delivery quality
Job Requirements
- 6 years of security consulting experience spanning various domains with at least 2 years experience directly working as a Google Cloud consultant.
- Proven track record delivering Google Cloud security architecture, posture modernization, and operationalization outcomes from discovery through handover.
- Hands-on leadership in cloud security projects across security, cloud, DevOps, architecture, compliance, and operations teams.
- Documented success integrating cloud-native security platforms, SIEM, CNAPP/CSPM, logging, monitoring, vulnerability management, and SOC workflows.
- History working under regulatory or industry frameworks such as FedRAMP, FISMA, HIPAA, HITRUST, PCI, CMMC, or similar standards.
- Deep experience designing, securing, deploying, and operationalizing Google Cloud environments.
- Strong expertise in Google Cloud security architecture, IAM, networking, logging, monitoring, data protection, workload security, and compliance-oriented design.
- Hands-on experience with Google Cloud security services, including Security Command Center or equivalent cloud-native security platforms.
- Experience leading cloud security posture assessments, architecture reviews, or enterprise cloud security modernization efforts.
- Proven ability to lead complex technical engagements with multiple stakeholders, competing priorities, and enterprise-scale environments.
- Highly adaptable consulting mindset with the ability to move between strategy, architecture, implementation, delivery leadership, and executive advisory work.
- Excellent communication, organizational, and problem-solving skills, including the ability to brief executives and guide technical teams.
- Strong documentation skills for creating diagrams, assessment reports, roadmaps, implementation plans, written recommendations, and supporting materials.
- Critical thinking skills to balance security requirements against business objectives, operational realities, and customer maturity.
- Proven track record adapting quickly and efficiently in fast-paced, dynamic customer environments.
- REQUIRED CERTIFICATIONS: Google Cloud Professional Cloud Security Engineer or Professional Cloud Architect
- Google Cloud Professional Security Operations Engineer or equivalent Google Cloud security experience
Benefits
- paid parental leave
- flexible time off
- certification and training reimbursement
- digital mental health and wellbeing support membership
- comprehensive insurance options
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Identity Security Sales Specialist
BeyondTrustProtect identities, stop threats, and deliver dynamic access to empower and secure a work-from-anywhere world.
• Own and execute a strategic territory plan focused on net-new commercial acquisition. • Drive full-cycle sales motions from prospecting through close within your assigned accounts. • Operate as an overlay specialist across aligned Commercial Account Executives, identifying and advancing Entitle opportunities within their territories. • Build strong internal partnerships with Commercial AEs to create joint account plans and pipeline acceleration strategies. • Generate pipeline through proactive prospecting, executive outreach, partner collaboration, and targeted account strategies. • Lead complex, multi-threaded sales engagements within commercial organizations. • Engage C-level and senior security stakeholders (CISO, CIO, VP Security, Cloud Security leaders) in outcome-driven security conversations. • Deliver consultative discovery centered on privilege risk reduction, identity governance, and cloud security posture. • Coordinate cross-functional resources (Sales Engineering, Channel, Marketing, Professional Services, Customer Success) to accelerate deal progression and ensure successful outcomes. • Develop compelling business cases and ROI-driven proposals aligned to customer security initiatives. • Accurately forecast and manage pipeline using Salesforce, maintaining disciplined deal inspection and territory hygiene. • Consistently meet and exceed quarterly and annual revenue targets across both direct and overlay motions. • Represent the company at industry events, executive briefings, and partner engagements.
• Develop and execute on joint strategy with your direct salesperson which is tied to your partners and Fortinet Goals. • Support your partners in various ways such as though POCs, for internal consumption or managed offerings, develop labs for technical enablement, custom presentations, etc. • Be onsite with your partners to develop relationships across your partners internal business units. • Be the primary technical point of contact for your partners(s) in close collaboration with your sales partner. • Collectively work with Fortinet’s teams (account sales/ technical, marketing, specialization overlays) + your partners teams (sales/ technical/ professional services, managed services, etc) to develop “go to market” offerings to address Fortinet and our partners goals. • Continuously strive to improve knowledge around the Fortinet products and solutions, along with maintaining a deep understanding of the competitive landscape and Fortinet’s ability to provide long lasting protection against the ever-evolving threats. • Have a strong ability to position Fortinet solutions to the partner, whether this be remotely or in person. This requires strong communication skills and the ability to confidently present through whiteboarding, technical white papers, technical plans, or customer discussions. • Manage your time effectively when working on multiple projects simultaneously, ensuring a positive customer experience is maintained. • Maintain accurate activity, contact, and account technical information of all customers and prospects in our CRM (Salesforce).
Role Description The Cybersecurity Engineer designs, implements, maintains, and improves enterprise security controls across cloud, network, endpoint, and identity environments. This role supports threat detection, incident response, vulnerability management, identity and access management, and security operations aligned to federal security standards and Zero Trust principles. Qualifications - Five years of experience in cybersecurity engineering or security operations. - Experience implementing security controls in cloud, network, endpoint, and identity environments. - Experience with identity and access management (IAM), least privilege, MFA, logging, monitoring, vulnerability management, and security incident response. - Experience with security baselines, documentation, audit readiness, root cause analysis, and formal change management. - Ability to meet federal screening and suitability requirements prior to start. Requirements - Implement and maintain enterprise security controls aligned to federal security frameworks and Zero Trust architecture. - Support implementation, operation, and optimization of enterprise security platforms across cloud, on-premises, and hybrid environments. - Configure and manage identity and access services, including authentication, authorization, role-based access control (RBAC), privileged access management (PAM), and multi-factor authentication (MFA). - Configure centralized logging, monitoring, and audit capabilities across systems, applications, and cloud platforms. - Conduct continuous monitoring, vulnerability assessment, risk analysis, and remediation coordination. - Harden systems, applications, and cloud environments using secure baselines and industry best practices. - Support incident response activities, forensic collection, root cause analysis, change management, and standard operating procedure (SOP) development. - Collaborate with network, cloud, and application teams to resolve security issues and improve security posture. Company Description
• Serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures. • Performs a DOD cybersecurity process while either authorizing an information system or serving as a SME for an information system undergoing authorization. • Possesses an understanding of how the security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization’s IT infrastructure such as DLA’s. • Determines the applicable severity value for an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system’s current or future authorization. • Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.



