GCP Cloud Security Engineer, Senior

San Antonio, Texas


Employer: United Services Automobile Association
Industry: Information Security
Salary: Competitive
Job type: Full-Time

Why USAA?
Let's do something that really matters.

At USAA, we have an important mission: facilitating the financial security of millions of U.S. military members and their families. Not all of our employees served in our nation's military, but we all share in the mission to give back to those who did. We're working as one to build a great experience and make a real impact for our members.

We believe in our core values of honesty, integrity, loyalty and service. They're what guides everything we do - from how we treat our members to how we treat each other. Come be a part of what makes us so special!

The Opportunity

As a dedicated GCP Cloud Security Engineer, Senior, you will support the Public Cloud Security teams efforts to enable key cloud capabilities and controls across multiple security domains including Identity and Access Management, Data Security, Detections, Incident Response, and Core Infrastructure Security. The team enables applications and capabilities utilized across USAA by delivering solutions that ensure their confidentiality, integrity, and availability. The team aims to shift security to the left by integrating best practices into the software development lifecycle and leveraging infrastructure as code (IaC) capabilities to streamline delivery and support consumer demands. In addition to enablement activities this engineer will be responsible for the maturation of critical controls, sustainment and alignment of the volatile changes made by GCP directly, customer support of consuming App teams, and compliance adherence/monitoring/testing of controls. This position/role is directly aligned to USAA's technology modernization and future proofing strategies across the enterprise.

Conducts software and systems engineering to develop new capabilities, ensuring Information Security is integrated across the enterprise. Conducts comprehensive technology research to evaluate potential vulnerabilities in Enterprise systems. Identifies and manages existing and emerging risks that stem from business activities and ensures risks associated with business activities are effectively identified, measured, monitored, and controlled. Installs, configures, troubleshoots, and maintains hardware and software.

This position can work remotely in the continental U.S. with occasional business travel.

What you'll do:
  • Responsible for ensuring that security requirements are adequately addressed in all aspects of a solution/application enablement and sustainment lifecycle.
  • Design, develop, code, integrate, and test complex cross functional technical solutions with a focus on security, often collaborating with Engineers or Architects outside of team/department.
  • Leads the team in code/design reviews and engineering efficiencies to ensure effective operations and accurate planning.
  • Supports the resolution of complex production issues and troubleshooting of end-to-end solutions that span multiple applications and systems.
  • Works with architecture to help define directions for cross functional or highly complex key technologies within a specific security domain.
  • Drives community impact through active participation in internal and external training outlets, conferences, blog post, and participating in professional societies, advisory boards, and consortiums.
  • Leverages Site Reliability Engineering practices in their domain.
  • Ensures risks associated within their domain activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
  • Supports cross-functional efforts across the Enterprise as a subject matter expert in their domain.
  • Monitors and troubleshoots highly complex systems, tools, and vendor integrations.
  • Supports continuous research, analysis, and troubleshooting to identify, resolve, and report on highly complex security issues.
  • Collaborates with Security Analysts, IT and Business Partners to tune, harden, and enhance Security solutions and technologies to keep up with the latest trends and threats.
  • Provides mentorship and guidance to junior engineers, fosters a culture of continuous learning and professional growth, and ensures the team stays current with the latest security trends and technologies.
  • Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.


What you have:
  • Bachelor's degree; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
  • 6 years of related experience in Security Engineering and/or Information Technology with a security focus to include experience leading driving enterprise technology projects or initiatives.
  • 4 years of experience delivering technology solutions in all phases of a solution development lifecycle.
  • Demonstrated experience guiding security strategies, solutions, and/or initiatives, with proven ability to drive these efforts to successful completion.
  • Working experience with modern programming/scripting languages and frameworks.
  • Experience designing, implementing, and leading security engineering activities utilizing modern DevSecOps practices.
  • Demonstrated hands-on success with agile delivery methods and deep desire to be flexible while delivering value early and often.
  • Demonstrated ability to address complex production issues by troubleshooting applications and systems.
  • Experience working with platform engineering concepts on security best practices in infrastructure/policy as code, security architecture design patterns, security vendor integrations, and CI/CD pipelines with built in application security controls.
  • Experience implementing event driven security architecture, methods, and controls.
  • Experience with advising on security architecture, methods, and controls required to meet security, compliance, and audit requirements.
  • Familiarity with cloud and emergent technologies such as: Public Cloud, Containerization, Security Data Lakes, ML/LLMs, GenAI, etc.


What sets you apart:
  • Experience deploying, managing, and securing resources in Google Cloud Platform (GCP), including knowledge of GCP services like Compute Engine, Kubernetes Engine, Cloud IAM, Security Command Center, etc.
  • Experience enabling GCP GenAI/LLM integrated services like Palm2, Vertex API, and Gemini
  • Experience with DevSecOps principles and practices, including continuous integration/continuous deployment (CI/CD), infrastructure as code (IaC), automation, and configuration management tools.
  • Experience working with a scripting language like Python or Golang in a large codebase to automate tasks, build custom tools, and integrate security solutions.
  • Experience leading the adoption/migration of cloud native technologies
  • Experience with networking and virtualization concepts
  • Experience with containers and container orchestration platforms like Kubernetes
  • Experience working with open source solutions like cloud native SDKs
  • Experience leading the implementation of event driven security architecture, methods, and controls
  • Experience developing and maintaining documentation for cloud security systems, procedures, baselines, and best practices


The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.

What we offer:

Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. The salary range for this position is: $120,550-$230,400.

Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.

Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.

For more details on our outstanding benefits, please visit our benefits page on USAAjobs.com.

Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.

USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Created: 2024-05-05
Reference: R0098932
Country: United States
State: Texas
City: San Antonio
ZIP: 78112


Similar jobs: