勤務地
東京都 23区
雇用形態
正社員
給与
経験考慮の上、応相談
We are seeking a highly skilled GCP IAM Specialist with strong cloud-native development expertise to design, implement, and govern identity and access management frameworks across our Google Cloud Platform estate. This role is pivotal in ensuring secure, compliant, and scalable access controls while driving cloud-native application delivery.
Job Description - Grade Specific
Key Responsibilities:
- Design and enforce IAM policies, roles, and permission boundaries across GCP projects, folders, and organizations
- Develop and maintain custom IAM roles aligned to least-privilege principles across multi-project GCP environments
- Build and maintain cloud-native applications and automation tooling using GCP-native services (Cloud Run, Cloud Functions, Pub/Sub, GCS)
- Implement Workload Identity Federation and service account management best practices
- Integrate IAM controls with CI/CD pipelines and enforce policy-as-code using Terraform
- Conduct IAM access reviews, audit log analysis via Cloud Audit Logs and Security Command Center
- Collaborate with development and platform teams to embed security controls into cloud-native delivery
- Define and maintain organization-level IAM guardrails using VPC Service Controls and Access Context Manager
- Drive IAM automation using Ansible playbooks for configuration management and drift detection
- Provide technical guidance and IAM governance frameworks to delivery teams
職務経験
6年以上
キャリアレベル
中途経験者レベル
英語レベル
ビジネス会話レベル
日本語レベル
ビジネス会話レベル
最終学歴
大学卒: 学士号
現在のビザ
日本での就労許可が必要です
Required Qualifications
- 5+ years of hands-on experience with GCP IAM, including custom roles and policy management
- Strong proficiency in GCP-native development (Cloud Run, Cloud Functions, App Engine, Pub/Sub)
- Solid Terraform experience for IAM policy provisioning and infrastructure-as-code
- Experience with Workload Identity, service accounts, and federated identity management
- Proficiency in Python or Go for automation and tooling development
- Familiarity with GCP Security Command Center, Cloud Audit Logs, and compliance frameworks
- Experience implementing VPC Service Controls and organization policies
- Understanding of OAuth 2.0, OIDC, and SAML integration patterns on GCP
Preferred Qualifications
- Google Professional Cloud Security Engineer certification
- Experience with Ansible for IAM configuration drift detection
- Background in financial services, healthcare, or other regulated industries
- Familiarity with GKE Workload Identity and namespace-scoped IAM bindings
- Experience with SIEM integration and security event automation pipelines
雇用形態正社員給与経験考慮の上、応相談
募集について
本求人は転職サイトCareerCross(キャリアクロス)がIndeedへの掲載を行っております。
【求職者の方のお問い合わせについて】
■ 求人内容に関するお問い合わせ
CareerCrossは求人掲載サービスのため、各求人の詳細な職務内容や選考内容につきましては、掲載企業様より直接ご案内いただいております。
ご応募後、企業様から返信があった場合は、CareerCrossサイト内で企業の担当者様と直接やり取りが可能となります。求人内容や選考に関するご質問につきましては、企業様へ直接ご確認ください。
■ CareerCrossのサービスに関するお問い合わせ
CareerCrossのサービス利用方法等に関するお問い合わせにつきましては、以下までご連絡ください。
電話:03-5217-3900
問い合わせフォーム:https://www.careercross.com/suggestion
【CareerCross求人掲載企業様のお問い合わせについて】
Indeedでは求人の掲載停止や内容変更の手続きができません。
大変お手数ですが、該当のご依頼につきましてはCareerCross(当社)までご連絡いただけますと幸いです。
電話番号:03-5217-3900
メール:[email protected]