Logo for Gorilla Logic

Senior Google Cloud Infrastructure, Network & Security Engineer (IRE) - AA, Remote: Colombia - Costa Rica , Fulltime.

Role overview

Qualifications

  • Senior-level hands-on experience implementing and supporting Google Cloud Platform infrastructure in production environments.
  • Strong GCP networking experience, including Shared VPC host/service project models.
  • Advanced knowledge of GCP IAM, including custom roles, IAM Conditions, and organization/folder/project inheritance.
  • Professional English communication skills with the ability to participate in technical working sessions.

Responsibilities

  • Implement and validate GCP organization, folder, project, and Shared VPC structures.
  • Configure Shared VPC host and service projects within hub-and-spoke network architectures.
  • Implement GCP IAM controls across organization, folder, project, and resource levels.
  • Develop reusable Terraform modules and automation for GCP infrastructure, networking, IAM, and security controls.

Key facts

  • Remote from: Costa Rica, Colombia
  • Full time
  • Senior (5-10 years)
  • Network Security Engineer
  • English

Hard skills

Other skills

  • Collaboration
  • Communication

About the company

Gorilla Logic logo

Gorilla Logic

Software Development

For more than 20 years, Gorilla Logic has partnered with leading enterprises across industries to help define, architect, and deliver their most important digital products and platforms. Our deep technical and domain expertise and proven approach enable clients to efficiently innovate, scale, and modernize—creating secure products that their customers love. With headquarters in the U.S. and nearshore development hubs across Latin America, our highly collaborative Agile teams bring a distinctive culture of tech-obsession and problem-solving to our clients’ projects. Everyone at Gorilla Logic strongly believes that when our colleagues and clients win, we all win, which makes for a spirit of partnership unique in our industry. To learn more, visit www.gorillalogic.com. Interested in a career with Gorilla Logic? Check here for our current job openings, and to submit your resume: https://gorillalogic.com/careers/

Company details

Company typeSME
IndustrySoftware Development
Company size501 - 1000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Gorilla Logic is looking for a Senior Google Cloud Infrastructure, Network & Security Engineer to join our team and support the implementation of a highly secure, isolated recovery environment on Google Cloud Platform (GCP).

This is a hands-on infrastructure engineering role focused equally on GCP networking and GCP IAM/security. You will work within an established enterprise cloud architecture to implement secure network segmentation, identity and access controls, infrastructure automation, and platform security using technologies such as Shared VPC, IAM, Organization Policies, VPC Service Controls, Workload Identity Federation, and Terraform.

You will collaborate closely with cloud architects, network engineers, and security specialists to translate existing architecture and security requirements into reliable, validated infrastructure.

What You’ll Do

  • Implement and validate GCP organization, folder, project, and Shared VPC structures.
  • Configure Shared VPC host and service projects within hub-and-spoke network architectures.
  • Design and implement subnet allocation, CIDR planning, routing, and network segmentation.
  • Configure Private Google Access, Cloud NAT, Cloud DNS, and secure egress patterns.
  • Implement hierarchical firewall policies and default-deny network security controls.
  • Configure environment and workload isolation, including east-west traffic restrictions and secure network boundaries.
  • Implement and manage VPC Service Controls and restricted service perimeters.
  • Validate network isolation, connectivity, and potential lateral-movement exposure.
  • Implement GCP IAM controls across organization, folder, project, and resource levels.
  • Create and manage custom IAM roles, IAM Conditions, IAM Deny Policies, and least-privilege access models.
  • Configure service accounts, service account impersonation, and secure authentication patterns.
  • Implement Workload Identity Federation and validate identity boundaries across projects and environments.
  • Support privileged access models, including Just-in-Time access, break-glass workflows, and zero-standing-privilege approaches.
  • Integrate Secret Manager and support secure secrets and identity lifecycle management.
  • Develop reusable Terraform modules and automation for GCP infrastructure, networking, IAM, and security controls.
  • Contribute to Git-based infrastructure workflows, CI/CD pipelines, and policy-as-code practices.
  • Validate deployed infrastructure against approved architecture and security requirements.
  • Document implemented components, assumptions, risks, gaps, and recommended remediation.
  • Participate in technical reviews, implementation checkpoints, security validation, and knowledge-transfer sessions.

What You Bring

  • Senior-level hands-on experience implementing and supporting Google Cloud Platform infrastructure in production environments.
  • Strong GCP networking experience, including Shared VPC host/service project models.
  • Hands-on experience with subnet allocation, CIDR planning, routing, and enterprise network segmentation.
  • Experience implementing Private Google Access, Cloud NAT, Cloud DNS, and controlled egress.
  • Strong experience implementing firewall rules and hierarchical firewall policies using default-deny security models.
  • Advanced knowledge of GCP IAM, including custom roles, IAM Conditions, IAM Deny Policies, and organization/folder/project inheritance.
  • Experience managing service accounts, service account impersonation, and least-privilege access models.
  • Hands-on experience implementing Workload Identity Federation.
  • Experience with Organization Policies and VPC Service Controls.
  • Strong hands-on experience using Terraform to provision and manage production GCP infrastructure.
  • Experience working with Git-based workflows and CI/CD pipelines for infrastructure.
  • Ability to interpret an established enterprise architecture and translate it into working infrastructure.
  • Ability to work independently in an environment where requirements and scope may continue to evolve.
  • Strong collaboration skills and experience working directly with cloud architects, network engineers, and security specialists.
  • Professional English communication skills with the ability to participate in technical working sessions with US-based teams and clients.


Nice to Have

  • Experience with Google Cloud Privileged Access Manager (PAM) or comparable Just-in-Time and break-glass access models.
  • Experience implementing Zero Trust architectures and controls designed to prevent lateral movement.
  • Experience with disaster recovery, cyber recovery, isolated recovery, clean-room, or air-gapped cloud environments.
  • Experience integrating Microsoft Entra ID with Google Cloud, including federated or dual-directory identity models.
  • Experience implementing Secure Web Gateway or secure egress proxy solutions.
  • Experience with Google Cloud Secret Manager and secrets lifecycle management.
  • Experience implementing policy-as-code using technologies such as OPA, Sentinel, or organization policy constraints.
  • Experience working in regulated environments, particularly financial services, with exposure to audit and compliance requirements.
  • Google Cloud certifications such as Professional Cloud Network Engineer, Professional Cloud Security Engineer, or Professional Cloud Architect.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Network Security Engineer Related jobs

Other jobs at Gorilla Logic

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.