About Coalfire Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate,
Technical Tools
Security ConsultantCybersecurity
About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But that’s not who we are – that’s just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
What We Offer
~2 min read
We’re looking for a Principal Google Cloud Security Consultant to serve as a senior advisor, technical architect, and delivery leader for enterprise GCP security engagements. This role helps clients design, secure, deploy, and operationalize Google Cloud environments while translating business risk, compliance needs, and emerging technology requirements into scalable security programs.
Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, data protection, logging, monitoring, and compliance
Advise enterprise customers on GCP security strategy aligned to business risk, regulatory requirements, and operating priorities
Lead Google Cloud security posture assessments to identify high-impact risks, misconfigurations, control gaps, and operational weaknesses
Advise customers on Google SecOps, Chronicle, SIEM strategy, cloud telemetry strategy, detection engineering, and SOC workflow design
Advise customers on Wiz use cases such as CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows
Mentor consultants and help raise the overall capability of the Google Cloud Security practice
Provide technical leadership during client reviews, executive briefings, architecture discussions, and operational meetings
Contribute to process improvement and automation initiatives that improve consistency, scalability, and delivery quality
✓Lead secure Google Cloud architecture design and reviews across IAM, networking, workload protection, data protection, logging, monitoring, and compliance
✓Advise enterprise customers on GCP security strategy aligned to business risk, regulatory requirements, and operating priorities
✓Lead Google Cloud security posture assessments to identify high-impact risks, misconfigurations, control gaps, and operational weaknesses
✓Advise customers on Google SecOps, Chronicle, SIEM strategy, cloud telemetry strategy, detection engineering, and SOC workflow design
✓Advise customers on Wiz use cases such as CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows
✓Mentor consultants and help raise the overall capability of the Google Cloud Security practice
✓Provide technical leadership during client reviews, executive briefings, architecture discussions, and operational meetings
✓Contribute to process improvement and automation initiatives that improve consistency, scalability, and delivery quality
Remote working environment with up to 25% travel required.
8 years of security consulting experience spanning various domains with at least 4 years experience directly working as a Google Cloud consultant.
Proven track record delivering Google Cloud security architecture, posture modernization, and operationalization outcomes from discovery through handover.
Hands-on leadership in cloud security projects across security, cloud, DevOps, architecture, compliance, and operations teams.
History working under regulatory or industry frameworks such as FedRAMP, FISMA, HIPAA, HITRUST, PCI, CMMC, or similar standards.
Demonstrable client-facing consulting experience, maintaining professionalism and clear communication in ambiguous, high-stakes, or fast-paced engagements.
6 years of security consulting experience spanning various domains with at least 2 years experience directly working as a Google Cloud consultant.
Deep experience designing, securing, deploying, and operationalizing Google Cloud environments.
Strong expertise in Google Cloud security architecture, IAM, networking, logging, monitoring, data protection, workload security, and compliance-oriented design.
Hands-on experience with Google Cloud security services, including Security Command Center or equivalent cloud-native security platforms.
Experience leading cloud security posture assessments, architecture reviews, or enterprise cloud security modernization efforts.
Proven ability to lead complex technical engagements with multiple stakeholders, competing priorities, and enterprise-scale environments.
Highly adaptable consulting mindset with the ability to move between strategy, architecture, implementation, delivery leadership, and executive advisory work.
Excellent communication, organizational, and problem-solving skills, including the ability to brief executives and guide technical teams.
Strong documentation skills for creating diagrams, assessment reports, roadmaps, implementation plans, written recommendations, and supporting materials.
Critical thinking skills to balance security requirements against business objectives, operational realities, and customer maturity.
Proven track record adapting quickly and efficiently in fast-paced, dynamic customer environments.
Google Cloud Professional, Cloud Security Engineer, or Professional Cloud Architect
Google Cloud Professional Security Operations Engineer, or equivalent Google Cloud security experience
Google Cloud certifications: Professional Cloud Security Engineer, Professional Security Operations Engineer, or Professional Cloud Architect.
Security Command Center Enterprise: Experience implementing, configuring, tuning, or operationalizing SCC Enterprise.
Wiz experience: Experience with CNAPP, CSPM, vulnerability prioritization, attack path analysis, entitlement risk, and remediation workflows.
Google SecOps and SIEM modernization: Experience with Chronicle, SIEM architecture, telemetry strategy, detection engineering, or SIEM migration.
Vertex AI security: Experience advising on AI governance, workload isolation, access controls, logging, monitoring, and secure deployment patterns.
Practice development: Ability to create reusable methodologies, delivery accelerators, reference architectures, and practice-level intellectual property.
Nice to Have
~2 min read
Wiz, Google SecOps/Chronicle, SIEM migration, Vertex AI security, Terraform, or related cloud security skills
Why You’ll Want to Join Us
At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.
Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.
At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at HumanResourcesMB@coalfire.com.
Coalfire is a cybersecurity advisor that helps private and public-sector organizations avert threats, close gaps, and effectively manage risk. They provide independent, tailored advice, assessments, technical testing, and cyber engineering services to help clients develop scalable programs that improve their security posture and achieve business objectives.