Architect
Virtusa
5+ years of hands-on experience with Google Cloud Platform in security operations and reviews
Skills
Deep expertise in GCP security services: IAM, Cloud Armor, Security Command Center, VPC Service Controls, Cloud KMS, Secret Manager
Strong understanding of identity & access management (RBAC, least privilege, service accounts, federation)
Network security: VPC design, firewall rules, private access, hybrid connectivity (VPN/Interconnect), DDoS protection
Security monitoring & threat detection using Cloud Logging, Cloud Monitoring, SIEM integrations (e.g., Splunk)
Vulnerability management, container security (GKE), and image scanning
DevSecOps: integrating security tools into CI/CD (SAST, DAST, container scanning)
Data security: encryption at rest/in transit, tokenization, data masking for telecom-sensitive data (CDRs, subscriber info)
Hands-on scripting (Python, Bash) for automation and security tooling
Knowledge of zero-trust architecture and secure API gateways
Proven experience securing telecom workloads (OSS/BSS, 4G/5G core systems, network APIs)
Expertise in conducting security assessments, threat modeling, and risk analysis for cloud-native telecom platforms
Experience in implementing security controls for high-availability, low-latency telecom systems
Hands-on exposure to compliance and regulatory standards relevant to telecom (data privacy, lawful interception, regional regulations)
Experience managing incident response, SOC operations, and vulnerability management in 24x7 environments
Strong background in DevSecOps and integrating security into CI/CD pipelines
Experience working with distributed teams across network, cloud, and application domains
Good to have skills
Exposure to telecom security standards and frameworks such as 3GPP security standards and ETSI NFV
Familiarity with TM Forum security guidelines and Open APIs
Experience securing 5G architectures (Core, RAN, SBA – Service-Based Architecture)
Knowledge of edge security (MEC – Multi-access Edge Computing)
Experience with CASB, DLP, and cloud workload protection platforms (CWPP)
Multi-cloud security exposure (AWS/Azure)
Experience with compliance frameworks (ISO 27001, SOC 2, GDPR equivalents in telecom regions)
Familiarity with security automation/orchestration (SOAR tools)