Devops Cloud Security Engineer
Listed on 2026-08-22
-
IT/Tech
Cloud Computing: Infrastructure & Operations, Cybersecurity, Systems Engineer
Description
We are seeking an experienced Cloud Security Engineer to design, implement, and manage cloud network security controls in GCP. The role focuses on Infrastructure-as-Code (IaC) delivery using Terraform, integrated into Azure Dev Ops Pipelines and Git Hub Actions.
Job Description Must Have Technical/Functional SkillsWe are seeking an experienced Cloud Security Engineer to design, implement, and manage cloud network security controls in GCP. The role focuses on Infrastructure-as-Code (IaC) delivery using Terraform, integrated into Azure Dev Ops Pipelines and Git Hub Actions.
The ideal candidate is a subject matter expert (SME) who can build secure, automated solutions from the ground up using Terraform, while documenting and transferring knowledge to internal teams. This role requires the ability to balance planned project execution within agile methodologies with rapid incident response (P0–P3) in a dynamic, fast-paced environment.
Responsibilities- Design, implement, and manage cloud-native network security controls in GCP, including:
- GCP VPC Service Controls (VPC-SC)
- GCP Cloud Armor (DDoS/WAF protection)
- GCP Cloud Next-Gen Firewall (NGFW Enterprise) with IPS/IDS
- Zscaler Cloud Connector
- Develop, maintain, and scale Terraform-based Infrastructure-as-Code modules for cloud infrastructure and security policies.
- Build, enhance, and manage CI/CD automation using Azure Dev Ops Pipelines and Git Hub Actions.
- Author clear documentation, runbooks, and deliver knowledge transfers and training to operational and engineering teams.
- Collaborate cross-functionally with cloud, security, and development teams to ensure secure, scalable solutions.
- Participate in agile ceremonies for planned project work and provide rapid incident response during P0–P3 security/networking events.
- U.S. citizenship is required (by birth or naturalization);
Green Card holders are not eligible. - Work must be performed within the United States (onshore only; no offshore work permitted).
- 5+ years of hands-on experience as a Cloud Engineer or Cloud Security Engineer.
- 3+ years of hands-on experience with GCP network security services, including VPC Service Controls (VPC-SC), Cloud Armor, and NGFW with IPS/IDS.
- Strong expertise in Terraform (designing reusable modules, managing state, enterprise workflows).
- Proficiency in CI/CD tools:
Azure Dev Ops Pipelines and Git Hub Actions. - Scripting proficiency (Power Shell, Bash, or Python) for automation and troubleshooting.
- Demonstrated experience documenting technical solutions, producing clear runbooks, and performing knowledge transfers to enable operational adoption.
- Strong troubleshooting and incident response skills in cloud environments.
- Experience integrating AI/ML and agentic platforms (e.g., Anthropic Claude or sim ilar) into Dev Ops pipelines to automate processes, improve operational efficiency, and accelerate delivery timelines.
- Experience with additional CI/CD platforms (e.g., Git Lab CI, Jenkins, CircleCI) and configuration management tools (e.g., Ansible).
- Relevant certifications:
- Cloud Security / Architecture:
Google Professional Cloud Security Engineer or Google Professional Cloud Architect - IaC / Dev Ops:
Hashi Corp Certified:
Terraform Associate or Azure Dev Ops Engineer Expert
Salary Range $90,000-$130,000 years
TCS Employee Benefits Summary- Discretionary Annual Incentive.
- Comprehensive Medical Coverage:
Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans. - Family Support:
Maternal & Parental Leaves. - Insurance Options:
Auto & Home Insurance, Identity Theft Protection. - Convenience & Professional Growth:
Commuter Benefits & Certification & Training Reimbursement. - Time Off:
Vacation, Time Off, Sick Leave & Holidays. - Legal & Financial Assistance:
Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.
BACHELOR OF COMPUTER SCIENCE
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).