What are the responsibilities and job description for the GCP Infrastructure Architect position at Covetus?
Job Title: GCP Infrastructure Architect
Preferred locations: New York, NY; Jersey City, NJ; Atlanta, GA; Chicago, IL
Employee type: Full-time with Capgemini
Client: Capgemini (Internal Project - Google Cloud Center of Excellence (GCP COE))
Role Overview:
Capgemini is seeking a seasoned GCP Infrastructure Architect to lead the design, implementation, and governance of secure, scalable cloud environments for financial services clients.
This role is part of the Google Cloud Center of Excellence (GCP COE) and focuses on modernizing IT estates, ensuring regulatory compliance, and embedding security by design across hybrid and multi-cloud environments—with a strong emphasis on container orchestration using Kubernetes and GKE.
Key Responsibilities:
Infrastructure Architecture:
- Architect and implement secure, scalable, and resilient cloud infrastructure on Google Cloud Platform (GCP).
- Lead Kubernetes and GKE-based container platform design, deployment, and operations.
- Define and enforce infrastructure-as-code (IaC), DevSecOps, and automation standards using Terraform, Ansible, and CI/CD pipelines.
- Drive hybrid and multi-cloud strategies, including SD-WAN, service mesh, and edge computing.
Security & Compliance:
- Design and implement security controls aligned with financial regulations (e.g., Basel III, GDPR, PCI-DSS).
- Lead cloud security posture management (CSPM), IAM, encryption, network segmentation, and audit logging strategies.
- Integrate Kubernetes-native security tools (e.g., GKE Autopilot, GKE Workload Identity, Policy Controller, Binary Authorization) into enterprise security frameworks.
- Collaborate with cybersecurity teams to embed zero-trust architecture, threat modeling, and vulnerability management.
Client Engagement & Governance:
- Lead architecture governance, risk assessments, and compliance reviews for regulated workloads.
- Support RFPs, solutioning, and client workshops with a focus on infrastructure and security transformation.
Required Skills & Experience:
- 8 years in infrastructure architecture, with 3 years on GCP.
- Deep expertise in:
- Kubernetes, GKE, and container security.
- GCP networking, IAM, VPC, firewall, and security services.
- Infrastructure automation and DevSecOps.
- Experience with regulated environments in banking, insurance, or capital markets.
- Strong understanding of cloud-native security frameworks and compliance automation.
Preferred Certifications:
- Google Cloud Professional Cloud Architect
- Google Cloud Security Engineer
- Kubernetes Administrator (CKA)
- Certified Information Systems Security Professional (CISSP)