1,356,003open jobs
79,136companies
206,858added this week
Browse all
Location
In office
Seniority
Architect

Confirmed on the employer's own hiring board on Oct 8, 2026. First seen by Alion on Oct 8, 2026.

Overview
Company
Impact
Profile match
HCLTech is a major Indian multinational information technology (IT) services and consulting company headquartered in Noida, Uttar Pradesh. Spun off from the original HCL Group in 1991, it ranks as one of India's largest technology companies alongside firms like TCS, Infosys, and Wipro.

Job Summary

Job Title

Cloud Security & AI Security Architect - Google Cloud Platform (GCP)

Job Summary

We are seeking an experienced Cloud Security & AI Security Architect to lead the design, implementation, and governance of secure cloud and AI environments on Google Cloud Platform (GCP). The ideal candidate will possess deep expertise in Cloud Security, Identity and Access Management (IAM), AI/GenAI Security, Zero Trust Architecture, Risk Assessment, Security Governance, and Compliance Frameworks such as ISO 27001 and NIST.

The role involves securing enterprise cloud workloads, AI/ML platforms, GenAI solutions, and data ecosystems by establishing robust security controls, governance frameworks, and compliance standards. The candidate will collaborate with enterprise architects, cloud engineers, AI teams, and business stakeholders to ensure security-by-design principles are embedded throughout the technology landscape.

Key Responsibilities

Cloud Security Architecture

  • Design and implement enterprise-grade cloud security architectures on GCP.
  • Develop security blueprints and reference architectures for cloud-native applications and services.
  • Define and enforce cloud security standards, policies, and best practices.
  • Lead security reviews for application modernization, microservices, APIs, and AI/ML solutions.
  • Ensure security controls align with organizational and regulatory requirements.

Identity & Access Management (IAM)

  • Design and manage enterprise IAM strategies using GCP IAM.
  • Implement Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC).
  • Enforce least-privilege access principles across cloud platforms and AI workloads.
  • Design privileged access management solutions and secure service account strategies.
  • Integrate IAM with enterprise directories, SSO, and federated identity solutions.

AI and GenAI Security

  • Define security frameworks for AI/ML and Generative AI platforms.
  • Secure AI pipelines, model development, training, deployment, and inference environments.
  • Perform risk assessments for LLMs, RAG systems, and AI agents.
  • Establish controls against prompt injection, model poisoning, data leakage, and adversarial attacks.
  • Implement AI governance policies, monitoring, and responsible AI principles.
  • Collaborate with data scientists and AI engineers to ensure secure AI adoption.

Zero Trust Security Implementation

  • Develop Zero Trust Architecture strategies across cloud, applications, and data layers.
  • Implement continuous verification, device trust, identity validation, and secure access controls.
  • Design network segmentation and micro-segmentation models.
  • Establish secure communication between cloud workloads and enterprise applications.
  • Reduce attack surfaces through adaptive trust mechanisms.

Security Governance & Compliance

  • Define security governance frameworks, policies, standards, and procedures.
  • Ensure compliance with ISO 27001, NIST Cybersecurity Framework, CIS Benchmarks, and organizational security standards.
  • Lead governance reviews and security audits.
  • Establish security metrics, KPIs, dashboards, and executive reporting mechanisms.
  • Support internal and external audits and regulatory compliance assessments.

Risk Assessment & Security Operations

  • Conduct enterprise risk assessments and cloud security posture reviews.
  • Identify vulnerabilities, threats, and security gaps across cloud environments.
  • Recommend remediation strategies and risk mitigation plans.
  • Lead threat modeling exercises for cloud and AI platforms.
  • Collaborate with SOC teams for incident response and security monitoring.

GCP Security Platform Management

  • Implement and manage GCP-native security services.
  • Configure cloud security controls across Compute Engine, GKE, Cloud Storage, BigQuery, Vertex AI, and networking services.
  • Manage encryption, key management, secrets management, and data protection mechanisms.
  • Establish logging, monitoring, and security event management solutions.
  • Continuously improve cloud security posture management processes.

Skill Requirements

Cloud Security

  • Google Cloud Platform (GCP)
  • Cloud Security Architecture
  • Security-by-Design
  • Cloud Security Posture Management (CSPM)
  • Secure Cloud Migration
  • Multi-Cloud Security Concepts

Identity & Access Management

  • GCP IAM
  • Identity Federation
  • Single Sign-On (SSO)
  • OAuth 2.0
  • OpenID Connect
  • Privileged Access Management (PAM)
  • RBAC and ABAC Models

AI Security

  • AI/ML Security
  • Generative AI Security
  • LLM Security
  • Prompt Injection Prevention
  • Secure RAG Architecture
  • AI Governance
  • Model Risk Assessment
  • Data Privacy and Responsible AI

Security Frameworks & Standards

  • ISO 27001
  • NIST Cybersecurity Framework
  • NIST AI Risk Management Framework
  • CIS Benchmarks
  • Security Control Frameworks
  • Enterprise Risk Management

GCP Security Services

  • Security Command Center
  • Cloud Armor
  • Cloud IAM
  • Cloud Key Management Service (KMS)
  • Secret Manager
  • Cloud Audit Logs
  • Cloud Monitoring
  • VPC Service Controls
  • BeyondCorp Enterprise
  • Vertex AI Security Controls

Security Assessment & Governance

  • Risk Management
  • Threat Modeling
  • Vulnerability Assessments
  • Security Audits
  • Compliance Reporting
  • Security Governance

Other Requirements

  • Google Professional Cloud Security Engineer
  • Google Professional Cloud Architect
  • CISSP (Certified Information Systems Security Professional)
  • CCSP (Certified Cloud Security Professional)
  • CISM (Certified Information Security Manager)
  • ISO 27001 Lead Implementer / Lead Auditor
  • Certified Ethical Hacker (CEH)
  • GIAC Cloud Security Certifications
  • NIST Cybersecurity Framework Certifications

Key Competencies

  • Strategic Security Leadership
  • Cloud Security Architecture
  • AI Security & Governance
  • Risk Management
  • Security Compliance
  • Stakeholder Management
  • Executive Communication
  • Security Incident Response
  • Analytical Thinking
  • Problem Solving
  • Cross-Functional Collaboration
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,356,003 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Solutions
Similar stack
Same company
In your city
Remote (United States) • Full-Time
Apply
$140k – $170k per year • Remote (United States) • Full-Time
DevOps
Terraform
GCP
Crossplane
Pulumi
Azure
AWS
Kubernetes
Apply
$130k – $180k per year • Remote (United States) • Full-Time
DevOps
Terraform
GCP
CloudFormation
Azure
AWS
Kubernetes
Bicep
FinOps
IAM
Management
ServiceNow
Apply
≈ $69k – $162k per year (Estimated) • Hybrid • Full-Time • Vienna
DevOps
Ansible
Red Hat
OpenShift
Kubernetes
Linux
Apply
≈ $89k – $218k per year (Estimated) • In office • 8+ years exp • Amman
JavaScript
TypeScript
C#
C#
.NET
Databases
PostgreSQL
Frontend
Angular
DevOps
CI/CD
Apply
See all jobs
This is one of many
1,356,003 more open roles from verified company boards, updated every day.