GCP Cloud Security Engineer

GCP Cloud Security Engineer

Posted Today by IO Associates

£600 Per day
Outside
Hybrid
City of London, UK

Summary: The Cloud Security Engineer role focuses on designing and securing a private cloud platform within a UK government environment, specifically utilizing Google Cloud Platform (GCP). The position requires expertise in cloud security engineering, IAM architectures, and network security controls. The role is hybrid, requiring three days on-site work in London, and is outside IR35. Candidates must hold active SC clearance and be willing to undergo DV clearance.

Key Responsibilities:

  • Design & implement secure workloads in Google Distributed Cloud (GDC)/GCP (GDC experience not necessarily needed but would be strongly desired)
  • Build and manage IAM architectures (SSO, MFA, privileged access life cycle)
  • Enforce least privilege via resource hierarchies, policies, and constraints
  • Configure network security controls (Firewalls, WAF, service perimeters)
  • Deliver data protection & encryption (KMS, CMEK/EKM, sensitive data handling)
  • Secure CI/CD pipelines with vulnerability scanning and policy enforcement

Key Skills:

  • Strong experience in cloud security engineering (GCP preferred; other CSPs considered)
  • Proven IAM, network security, and compliance implementation
  • Experience securing workloads in restricted/air-gapped/high-assurance environments
  • Ability to translate cloud-native security practices to distributed/edge platforms

Salary (Rate): £600 daily

City: London

Country: UK

Working Arrangements: hybrid

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Cloud Security Engineer (GCP/IAM/Encryption) - Contract

Rate: £600 day Outside IR35
Location: London - hybrid (3 days onsite) - Non negotable
Duration: 12 month
Clearance: Active SC, willingness for DV

Overview
Join a high-impact programme delivering secure, large-scale cloud infrastructure within a UK government environment. You'll help design and secure a private/distributed cloud platform supporting critical national services.

Key Responsibilities

  • Design & implement secure workloads in Google Distributed Cloud (GDC)/GCP (GDC experience not necessarily needed but would be strongly desired)
  • Build and manage IAM architectures (SSO, MFA, privileged access life cycle)
  • Enforce least privilege via resource hierarchies, policies, and constraints
  • Configure network security controls (Firewalls, WAF, service perimeters)
  • Deliver data protection & encryption (KMS, CMEK/EKM, sensitive data handling)
  • Secure CI/CD pipelines with vulnerability scanning and policy enforcement

Requirements

  • Strong experience in cloud security engineering (GCP preferred; other CSPs considered)
  • Proven IAM, network security, and compliance implementation
  • Experience securing workloads in restricted/air-gapped/high-assurance environments
  • Ability to translate cloud-native security practices to distributed/edge platforms

Desirable

  • GCP Professional Cloud Security Engineer certification
  • Experience in UK Gov secure environments (SC/DV, SECRET+)
  • Familiarity with GDS standards or public sector delivery

Please note this role will require you to undergo DV clearance.
If you currently hold ACTIVE SC clearance and match the above requirements please reach out