LOG IN
SIGN UP
Canary Wharfian - Online Investment Banking & Finance Community.
Sign In
or continue with e-mail and password
Forgot password?
Don't have an account?
Join Canary Wharfian
or continue with e-mail and password
By signing up, you agree to our Terms & Conditions and Privacy Policy.

GCP IAM Specialist - Cloud-Native Development

ExperiencedNo visa sponsorship
Capgemini logo

at Capgemini

Consultancies

Posted 7 days ago

No clicks

**GCP IAM Specialist - Cloud-Native Development**: Design and enforce GCP IAM policies (custom roles, policy boundaries), develop cloud-native apps using GCP-native services, implement IAM controls in CI/CD, and ensure least-privilege principles. Requires 5+ years of GCP IAM experience, proficiency in GCP-native development, Terraform, and working knowledge of related security tools and compliance frameworks.

Compensation
Not specified

Currency: Not specified

City
Tokyo
Country
Not specified

Full Job Description

Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way youd like, where youll be supported and inspired by a collaborative community of colleagues around the world, and where youll be able to reimagine whats possible. Join us and help the worlds leading organizations unlock the value of technology and build a more sustainable, more inclusive world.

Job Description

We are seeking a highly skilled GCP IAM Specialist with strong cloud-native development expertise to design, implement, and govern identity and access management frameworks across our Google Cloud Platform estate. This role is pivotal in ensuring secure, compliant, and scalable access controls while driving cloud-native application delivery.

Job Description - Grade Specific

KEY RESPONSIBILITIES

  • Design and enforce IAM policies, roles, and permission boundaries across GCP projects, folders, and organizations
  • Develop and maintain custom IAM roles aligned to least-privilege principles across multi-project GCP environments
  • Build and maintain cloud-native applications and automation tooling using GCP-native services (Cloud Run, Cloud Functions, Pub/Sub, GCS)
  • Implement Workload Identity Federation and service account management best practices
  • Integrate IAM controls with CI/CD pipelines and enforce policy-as-code using Terraform
  • Conduct IAM access reviews, audit log analysis via Cloud Audit Logs and Security Command Center
  • Collaborate with development and platform teams to embed security controls into cloud-native delivery
  • Define and maintain organization-level IAM guardrails using VPC Service Controls and Access Context Manager
  • Drive IAM automation using Ansible playbooks for configuration management and drift detection
  • Provide technical guidance and IAM governance frameworks to delivery teams

REQUIRED QUALIFICATIONS

  • 5+ years of hands-on experience with GCP IAM, including custom roles and policy management
  • Strong proficiency in GCP-native development (Cloud Run, Cloud Functions, App Engine, Pub/Sub)
  • Solid Terraform experience for IAM policy provisioning and infrastructure-as-code
  • Experience with Workload Identity, service accounts, and federated identity management
  • Proficiency in Python or Go for automation and tooling development
  • Familiarity with GCP Security Command Center, Cloud Audit Logs, and compliance frameworks
  • Experience implementing VPC Service Controls and organization policies
  • Understanding of OAuth 2.0, OIDC, and SAML integration patterns on GCP

PREFERRED QUALIFICATIONS

  • Google Professional Cloud Security Engineer certification
  • Experience with Ansible for IAM configuration drift detection
  • Background in financial services, healthcare, or other regulated industries
  • Familiarity with GKE Workload Identity and namespace-scoped IAM bindings
  • Experience with SIEM integration and security event automation pipelines

CORE SKILLS & TECHNOLOGIES

GCP IAM

Cloud-Native Dev

Terraform

Ansible

VPC Service Controls

Workload Identity

Cloud Run

Security Command Center

Python / Go

GCP Org Policy

Audit Logs

CI/CD Security

Capgemini is an AI-powered global business and technology transformation partner, delivering tangible business value. We imagine the future of organizations and make it real with AI, technology and people. With our strong heritage of nearly 60 years, we are a responsible and diverse group of 420,000 team members in more than 50 countries. We deliver end-to-end services and solutions with our deep industry expertise and strong partner ecosystem, leveraging our capabilities across strategy, technology, design, engineering and business operations. The Group reported 2024 global revenues of €22.1 billion.
Make it real | www.capgemini.com

GCP IAM Specialist - Cloud-Native Development

Compensation

Not specified

City: Tokyo

Country: Not specified

Capgemini logo
Consultancies

7 days ago

No clicks

at Capgemini

ExperiencedNo visa sponsorship

**GCP IAM Specialist - Cloud-Native Development**: Design and enforce GCP IAM policies (custom roles, policy boundaries), develop cloud-native apps using GCP-native services, implement IAM controls in CI/CD, and ensure least-privilege principles. Requires 5+ years of GCP IAM experience, proficiency in GCP-native development, Terraform, and working knowledge of related security tools and compliance frameworks.

Full Job Description

Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way youd like, where youll be supported and inspired by a collaborative community of colleagues around the world, and where youll be able to reimagine whats possible. Join us and help the worlds leading organizations unlock the value of technology and build a more sustainable, more inclusive world.

Job Description

We are seeking a highly skilled GCP IAM Specialist with strong cloud-native development expertise to design, implement, and govern identity and access management frameworks across our Google Cloud Platform estate. This role is pivotal in ensuring secure, compliant, and scalable access controls while driving cloud-native application delivery.

Job Description - Grade Specific

KEY RESPONSIBILITIES

  • Design and enforce IAM policies, roles, and permission boundaries across GCP projects, folders, and organizations
  • Develop and maintain custom IAM roles aligned to least-privilege principles across multi-project GCP environments
  • Build and maintain cloud-native applications and automation tooling using GCP-native services (Cloud Run, Cloud Functions, Pub/Sub, GCS)
  • Implement Workload Identity Federation and service account management best practices
  • Integrate IAM controls with CI/CD pipelines and enforce policy-as-code using Terraform
  • Conduct IAM access reviews, audit log analysis via Cloud Audit Logs and Security Command Center
  • Collaborate with development and platform teams to embed security controls into cloud-native delivery
  • Define and maintain organization-level IAM guardrails using VPC Service Controls and Access Context Manager
  • Drive IAM automation using Ansible playbooks for configuration management and drift detection
  • Provide technical guidance and IAM governance frameworks to delivery teams

REQUIRED QUALIFICATIONS

  • 5+ years of hands-on experience with GCP IAM, including custom roles and policy management
  • Strong proficiency in GCP-native development (Cloud Run, Cloud Functions, App Engine, Pub/Sub)
  • Solid Terraform experience for IAM policy provisioning and infrastructure-as-code
  • Experience with Workload Identity, service accounts, and federated identity management
  • Proficiency in Python or Go for automation and tooling development
  • Familiarity with GCP Security Command Center, Cloud Audit Logs, and compliance frameworks
  • Experience implementing VPC Service Controls and organization policies
  • Understanding of OAuth 2.0, OIDC, and SAML integration patterns on GCP

PREFERRED QUALIFICATIONS

  • Google Professional Cloud Security Engineer certification
  • Experience with Ansible for IAM configuration drift detection
  • Background in financial services, healthcare, or other regulated industries
  • Familiarity with GKE Workload Identity and namespace-scoped IAM bindings
  • Experience with SIEM integration and security event automation pipelines

CORE SKILLS & TECHNOLOGIES

GCP IAM

Cloud-Native Dev

Terraform

Ansible

VPC Service Controls

Workload Identity

Cloud Run

Security Command Center

Python / Go

GCP Org Policy

Audit Logs

CI/CD Security

Capgemini is an AI-powered global business and technology transformation partner, delivering tangible business value. We imagine the future of organizations and make it real with AI, technology and people. With our strong heritage of nearly 60 years, we are a responsible and diverse group of 420,000 team members in more than 50 countries. We deliver end-to-end services and solutions with our deep industry expertise and strong partner ecosystem, leveraging our capabilities across strategy, technology, design, engineering and business operations. The Group reported 2024 global revenues of €22.1 billion.
Make it real | www.capgemini.com