GCP IAM Implementation
REQUIRED GCP Architect / Security Engineer certification
- 4+ years of cloud IAM implementation experience with at least 2+ years focused on Google Cloud Platform
- Strong GCP IAM hands-on experience including :
o IAM policy bindings (resource-level, project-level, folder-level, organization-level)
o Custom role creation and management
o Conditional IAM policies (IAM Conditions) with complex expressions
o Service account management and impersonation
o Organization policies and constraints
o IAM policy troubleshooting and debugging
Experience with IAM Conditions expressions using Common Expression Language (CEL)Understanding of permission inheritance through GCP resource hierarchyKnowledge of IAM policy limits and optimization techniquesFamiliarity with IAM best practices and security pattern.Preferred Qualifications
Google Cloud Professional Cloud Architect or Professional Security Engineer certificationHealthcare industry experience with HIPAA access control requirementsExperience integrating with identity governance platforms (Collibra or similar)Knowledge of Google Workspace administration and integration with GCPFamiliarity with Policy Simulator and Policy Analyzer toolsExperience with BeyondCorp Enterprise (Google's Zero Trust solution)Background in attribute-based access control (ABAC) implementationsUnderstanding of OAuth 2.0, OpenID Connect for authentication flowsKnowledge of Workload Identity Federation for containerized workloadsExperience with monitoring and alerting for IAM events