Architect

Virtusa

10+ years in IT Security with strong focus on Cloud Security, SecOps, and Governance

5+ years of hands-on experience with Google Cloud Platform in security operations and reviews

Skills

Deep expertise in GCP security services: IAM, Cloud Armor, Security Command Center, VPC Service Controls, Cloud KMS, Secret Manager

Strong understanding of identity & access management (RBAC, least privilege, service accounts, federation)

Network security: VPC design, firewall rules, private access, hybrid connectivity (VPN/Interconnect), DDoS protection

Security monitoring & threat detection using Cloud Logging, Cloud Monitoring, SIEM integrations (e.g., Splunk)

Vulnerability management, container security (GKE), and image scanning

DevSecOps: integrating security tools into CI/CD (SAST, DAST, container scanning)

Data security: encryption at rest/in transit, tokenization, data masking for telecom-sensitive data (CDRs, subscriber info)

Hands-on scripting (Python, Bash) for automation and security tooling

Knowledge of zero-trust architecture and secure API gateways

Proven experience securing telecom workloads (OSS/BSS, 4G/5G core systems, network APIs)

Expertise in conducting security assessments, threat modeling, and risk analysis for cloud-native telecom platforms

Experience in implementing security controls for high-availability, low-latency telecom systems

Hands-on exposure to compliance and regulatory standards relevant to telecom (data privacy, lawful interception, regional regulations)

Experience managing incident response, SOC operations, and vulnerability management in 24x7 environments

Strong background in DevSecOps and integrating security into CI/CD pipelines

Experience working with distributed teams across network, cloud, and application domains

Good to have skills

Exposure to telecom security standards and frameworks such as 3GPP security standards and ETSI NFV

Familiarity with TM Forum security guidelines and Open APIs

Experience securing 5G architectures (Core, RAN, SBA – Service-Based Architecture)

Knowledge of edge security (MEC – Multi-access Edge Computing)

Experience with CASB, DLP, and cloud workload protection platforms (CWPP)

Multi-cloud security exposure (AWS/Azure)

Experience with compliance frameworks (ISO 27001, SOC 2, GDPR equivalents in telecom regions)

Familiarity with security automation/orchestration (SOAR tools)

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.