Senior Technical Lead
Listed on 2026-09-12
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description:
Data Security Architecture Assessment Contractor
Focus: Security assessment of GCP-based conversational AI, telephony, API, and backend integration architecture.
Key Responsibilities Responsibilities- Assess the end-to-end architecture from a data security and privacy standpoint.
- Review security controls for GCP Shared VPC, interconnects, service accounts, IAM, and network segmentation.
- Implement Sentinel policies for enforcing encryption standards and data access standards.
- Implement database activity monitoring and blocking rules in GCP.
- Assess AI-specific risks, including prompt/context leakage, model input/output handling, and knowledge store access.
- Produce findings report with risk ratings, gaps, and remediation recommendations.
- Review data flows across:
- GCP service projects
- Virtual agents / conversational AI
- Telephony platforms
- API proxies
- Datastore, Big Query, Cloud Storage
- On-prem / Amex systems of record
- Identify risks related and implement controls related to:
- Blocking Customer data exposure
- PII handling
- Encryption in transit and at rest
- Secrets and key management, Users and NHI authentication.
- Database activity Logging, monitoring, and auditability
- Data retention and deletion
- Strong experience in cloud security architecture, preferably Google Cloud Platform.
- Hands-on knowledge of:
- GCP IAM
- VPC / Shared VPC
- Cloud Run / GKE
- Big Query
- Cloud Storage
- Datastore / Firestore
- Cloud KMS / Secret Manager
- Experience assessing data protection controls for PII, PCI, or regulated customer data.
- Knowledge of API security, including OAuth, mTLS, token handling, gateways, and service-to-service authentication.
- Familiarity with network security, private connectivity, firewalls, segmentation, and hybrid cloud interconnects.
- Understanding of logging, SIEM integration, audit trails, and security monitoring.
- Experience with threat modeling and architecture risk reviews.
- Experience with conversational AI / virtual agent platforms.
- Knowledge of telephony/SIP integrations and contact center platforms.
- Experience with PCI DSS, NIST, ISO 27001, SOC 2, or financial services security standards.
- Familiarity with AI data governance, model safety, and GenAI security risks.
At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.
HCLTech is a global technology company, home to more than 223,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services.
Consolidated revenues as of 12 months ending June 2026totaled $14.8billion.
A candidate’s pay within the range will depend on their skills, experience, education, and other factors permitted by law. This role may also be eligible for performance-based bonuses subject to company policies. In addition, this role is eligible for the following benefits subject to company policies: medical, dental, vision, pharmacy, life, accidental death & dismemberment, and disability insurance; employee assistance program;
401(k) retirement plan; 10 days of paid time off per year (some positions are eligible for need-based leave with no designated number of leave days per year); and 10 paid holidays per year.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).