Key Responsibilities :
- Provision, manage, and support GCP sandbox environments for testing and development.
- Ensure sandbox governance, security, and compliance with Citi policies.
- Engage with Google Cloud and AWS support teams to troubleshoot and resolve issues.
- Ensure sandbox isolation from production workloads and enforce resource lifecycle management (deletion / suspension of unused resources).
- Onboard Citi teams and developers to new or existing AWS / GCP accounts.
- Manage user access for single / multiple cloud accounts, ensuring least privilege access.
- Assign and audit IAM roles and permissions for security and compliance.
- Remove user access to specific accounts as needed.
- Configure real-time alerts for sandbox activities and send notifications to Citi Sandbox Email Distribution Lists.
- Set up budget alerts (soft and hard limits) to prevent overspending.
- Monitor security incidents, unauthorized access attempts, and anomalies.
- Implement cost tracking mechanisms and automate resource cleanup to prevent cost overruns.
- Implement GCP / AWS cost control measures such as budgets, quotas, and auto-scaling.
- Track spending patterns and optimize resource allocation.
- Ensure compliance with financial industry regulations (SOC 2, ISO 27001, GDPR).
- Conduct periodic security and cost audits.
- Automate cloud operations using Terraform, CloudFormation, or Deployment Manager.
- Use Python and Bash scripting for process automation and cost / resource optimization.
Skills Required
Google Cloud Platform (GCP) mandatory, AWS experience required, sandbox environment provisioning and management, cloud governance and compliance, IAM roles