- Design, develop, and maintain security architecture, including reference architectures and secure design patterns.
- Perform security architecture reviews for enterprise applications, cloud platforms, and infrastructure services.
- Conduct threat modeling and technical risk assessments to identify security gaps.
- Define and implement cloud security guardrails, network segmentation, and access control models across GCP.
- Partner with Engineering and DevOps to integrate security controls into CI/CD pipelines, including IaC and container security.
- Assess emerging technologies, including AI and generative AI platforms, for security risks.
- Develop security guidance for API security, application authentication, and encryption.
- Participate in security on-call rotation and incident response.