Job Description: Google Cloud Engineer (On-Prem Secure Instance – Defense/Regulated Environments)
Location : London
Contract Role
Position Overview
We are seeking a highly skilled Google Cloud Engineer with expertise in secure, on-premise Google Cloud instances to support mission-critical projects in defense and other regulated industries. This role will focus on migrating workloads and data into secure, isolated environments while ensuring compliance with strict governance, regulatory, and security standards. The ideal candidate combines deep technical knowledge of Google Cloud services with strong customer-facing skills, as much of the work will be conducted directly on customer sites.
Key Responsibilities
Design, plan, and execute data and workload migrations into secure, on-prem Google Cloud instances, including air-gapped and classified environments.
Work with customer stakeholders in defense and regulated industries to define technical requirements, compliance needs, and migration strategies.
Deploy, configure, and manage Google Cloud services (Compute Engine, Storage, IAM, VPC, Kubernetes, Databases) for isolated and highly secure environments.
Implement and enforce robust security, governance, and compliance controls (e.g., NIST, FedRAMP, ITAR, HIPAA, GDPR, or similar frameworks).
Troubleshoot and optimize workloads in mission-critical, resource-constrained, or disconnected environments.
Deliver hands-on technical workshops, knowledge transfer sessions, and ongoing support for secure deployments.
Provide on-site engineering support at customer facilities, ensuring operational readiness and compliance throughout the migration lifecycle.
Required Skills & Qualifications
Proven experience as a Cloud Engineer, Infrastructure Engineer, or Systems Engineer in secure, on-premise or air-gapped environments.
Deep understanding of Google Cloud services deployed in restricted or classified environments.
Expertise in data and workload migration within regulated sectors (defense, intelligence, healthcare, financial services, etc.).
Strong knowledge of networking, storage, and security architectures for isolated, compliant systems.
Hands-on experience with containerization and orchestration (Kubernetes, Docker) and automation frameworks (Terraform, Ansible).
Proficiency in scripting/programming (Python, Bash, or equivalent).
Demonstrated ability to work directly with customers, including government and defense agencies.
Google Cloud certification (Professional Cloud Engineer or Cloud Architect) preferred.
Preferred Qualifications
Experience working in classified environments or with security clearances.
Familiarity with compliance frameworks (e.g., FedRAMP High, DoD IL5/IL6, NIST 800-53, ITAR).
Knowledge of secure enclave operations, hardened systems, and cross-domain solutions.
Background in system hardening, encryption technologies, and identity/access control in secure environments.