Principal Google Cloud Security Consultant

    United States
    Full-Time
    Senior (7+ yrs)
    Engineering & Development
    Posted on June 15, 2026

    Position Summary

    We’re looking for a Principal Google Cloud Security Consultant to serve as a senior advisor, technical architect, and delivery leader for enterprise GCP security engagements. This role helps clients design, secure, deploy, and operationalize Google Cloud environments while translating business risk, compliance needs, and emerging technology requirements into scalable security programs.
    What You'll Do
  1. Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, data protection, logging, monitoring, and compliance
  2. Advise enterprise customers on GCP security strategy aligned to business risk, regulatory requirements, and operating priorities
  3. Lead Google Cloud security posture assessments to identify high-impact risks, misconfigurations, control gaps, and operational weaknesses
  4. Advise customers on Google SecOps, Chronicle, SIEM strategy, cloud telemetry strategy, detection engineering, and SOC workflow design
  5. Advise customers on Wiz use cases such as CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows
  6. Develop executive-ready findings, prioritized remediation roadmaps, and maturity-based security improvement plans
  7. Lead Security Command Center and Security Command Center Enterprise implementation, configuration, tuning, and operationalization
  8. Integrate Security Command Center findings into vulnerability management, compliance, security operations, and executive risk reporting workflows
  9. Support SIEM modernization and migration planning, including log source rationalization, detection migration, alert tuning, and operational transition
  10. Help customers move from fragmented monitoring approaches into scalable, cloud-native security operations models
  11. Own complex technical workstreams from discovery through delivery, including technical direction, scope, risks, and stakeholder coordination
  12. Translate technical security findings into clear business risks, investment priorities, and actionable recommendations for senior leaders
  13. Guide customer teams through secure Google Cloud design, configuration, deployment, and operational maturity decisions
  14. Advise on Vertex AI and AI workload security, including identity, access control, data protection, governance, logging, and monitoring
  15. Create architecture diagrams, assessment deliverables, roadmaps, implementation documentation, and operational runbooks
  16. Develop repeatable methodologies, assessment frameworks, implementation patterns, reference architectures, and reusable technical assets
  17. Mentor consultants and help raise the overall capability of the Google Cloud Security practice
  18. Provide technical leadership during client reviews, executive briefings, architecture discussions, and operational meetings
  19. Contribute to process improvement and automation initiatives that improve consistency, scalability, and delivery quality
  20. WORK ENVIRONMENT/TRAVEL REQUIRED:

    Remote working environment with up to 25% travel required.

    What You'll Bring
  21. 8 years of security consulting experience spanning various domains with at least 4 years experience directly working as a Google Cloud consultant.
  22. Hold one or more of these security certifications: Google Cloud Professional, Cloud Security Engineer, or Professional Cloud Architect / Google Cloud Professional Security Operations Engineer, or equivalent Google Cloud security experience
  23. Proven track record delivering Google Cloud security architecture, posture modernization, and operationalization outcomes from discovery through handover.
  24. Hands-on leadership in cloud security projects across security, cloud, DevOps, architecture, compliance, and operations teams.
  25. Documented success integrating cloud-native security platforms, SIEM, CNAPP/CSPM, logging, monitoring, vulnerability management, and SOC workflows.
  26. History working under regulatory or industry frameworks such as FedRAMP, FISMA, HIPAA, HITRUST, PCI, CMMC, or similar standards.
  27. Demonstrable client-facing consulting experience, maintaining professionalism and clear communication in ambiguous, high-stakes, or fast-paced engagements.
  28. 6 years of security consulting experience spanning various domains with at least 2 years experience directly working as a Google Cloud consultant.
  29. Deep experience designing, securing, deploying, and operationalizing Google Cloud environments.
  30. Strong expertise in Google Cloud security architecture, IAM, networking, logging, monitoring, data protection, workload security, and compliance-oriented design.
  31. Hands-on experience with Google Cloud security services, including Security Command Center or equivalent cloud-native security platforms.
  32. Experience leading cloud security posture assessments, architecture reviews, or enterprise cloud security modernization efforts.
  33. Proven ability to lead complex technical engagements with multiple stakeholders, competing priorities, and enterprise-scale environments.
  34. Highly adaptable consulting mindset with the ability to move between strategy, architecture, implementation, delivery leadership, and executive advisory work.
  35. Excellent communication, organizational, and problem-solving skills, including the ability to brief executives and guide technical teams.
  36. Strong documentation skills for creating diagrams, assessment reports, roadmaps, implementation plans, written recommendations, and supporting materials.
  37. Critical thinking skills to balance security requirements against business objectives, operational realities, and customer maturity.
  38. Proven track record adapting quickly and efficiently in fast-paced, dynamic customer environments.
  39. Bonus Points
  40. Google Cloud certifications: Professional Cloud Security Engineer, Professional Security Operations Engineer, or Professional Cloud Architect.
  41. Security Command Center Enterprise: Experience implementing, configuring, tuning, or operationalizing SCC Enterprise.
  42. Wiz experience: Experience with CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows.
  43. Google SecOps and SIEM modernization: Experience with Chronicle, SIEM architecture, telemetry strategy, detection engineering, or SIEM migration.
  44. Vertex AI security: Experience advising on AI governance, workload isolation, access controls, logging, monitoring, and secure deployment patterns.
  45. Practice development: Ability to create reusable methodologies, delivery accelerators, reference architectures, and practice-level intellectual property.
  46. Bonus Points
  47. Wiz, Google SecOps/Chronicle, SIEM migration, Vertex AI security, Terraform, or related cloud security skills
  48. Company:  Coalfire

    Provides cybersecurity and compliance services for tech, healthcare, and finance industries.
    Remote-First Company
    1001-5000 employees
    Cybersecurity
    HQ: United States