
Open
Posted
•
Ends in 19 hours
Paid on delivery
My entire Google Cloud environment needs to reach SOC 2 Type I readiness. The foundations are already in place—projects, VPCs, IAM roles, logging, and monitoring—but I have not mapped any of this to formal SOC 2 controls. Here is what I expect from the engagement: • A concise gap-assessment of the current GCP configuration against SOC 2 Type I requirements, covering IAM, networking, encryption, logging, incident response, and vendor management. • A remediation plan with clear, actionable steps inside GCP (for example hardening Cloud IAM, enforcing CMEK on Cloud Storage, configuring VPC Service Controls, enabling Cloud Audit Logs, and activating Security Command Center). • Hands-on implementation or detailed guidance so the controls are actually in place and testable. • Supporting evidence—screenshots, policy documents, and configuration exports—packaged so an external auditor can review without additional clarification. I will grant temporary, least-privilege access to the relevant projects and will be available to answer architecture questions quickly. The engagement is complete once an auditor could, in good faith, sign off the environment as SOC 2 Type I compliant.
Project ID: 39727384
5 proposals
Open for bidding
Remote project
Active 4 days ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
5 freelancers are bidding on average ₹42,000 INR for this job

Hello, I understand that you are looking a consultant who can help you with readiness for SOC 2 Type I audit and certification for your GCP cloud. I am a CISSP certified cybersecurity consultant and in a recent engagement with a client for auditing cloud platform for AWS and Azure, helped the consultant with mapping controls to their SOC 2 Type II. I have sound technical knowledge and skills in both cybersecurity and IT including cloud, whic positions me well to complete this project efficiently and professionally. I am ready to discuss in details and can even start immediately, will be available till you are signed off by the auditor. Regards, Rana
₹15,000 INR in 7 days
1.7
1.7

With 15+ years in IT and recent hands-on experience supporting Google Cloud at EPAM, I specialize in IAM, VPC, logging, and security hardening. I can perform a clear SOC 2 gap assessment, create a detailed remediation plan, and provide hands-on guidance with supporting evidence so your environment is fully audit-ready. My mix of cloud security expertise, compliance focus, and strong attention to detail makes me the best fit for ensuring SOC 2 Type I readiness.
₹15,000 INR in 7 days
0.0
0.0

Hi, I’m Sahil, a cloud security and compliance specialist with 16+ years of experience in SOC 2, ISO 27001, PCI DSS, and cloud-native security frameworks. I’ve successfully helped organizations achieve SOC 2 Type I & II readiness across AWS, Azure, and GCP by aligning technical controls with the Trust Services Criteria while ensuring minimal disruption to operations. For your GCP environment, I will begin with a gap assessment of IAM, networking, encryption, monitoring, logging, incident response, and vendor management against SOC 2 Type I requirements. This will identify missing or weak controls, such as gaps in IAM enforcement, audit logging, encryption standards, and incident response workflows. Based on findings, I’ll create a clear remediation plan tailored to GCP covering IAM hardening, CMEK enforcement, VPC Service Controls, Security Command Center configuration, and mandatory logging/alerting. I can directly implement remediations where access permits or provide step-by-step guidance with GCP console/CLI instructions. Each control will be mapped to SOC 2 criteria with evidence collection prepared in an auditor-ready package. By the end, your GCP projects will have a hardened, audit-ready baseline that an external auditor can confidently review for SOC 2 Type I compliance. I’m available to start right away, and we can finalize the budget later depending on project scope and depth of implementation. Best regards, Sahil
₹15,000 INR in 7 days
1.4
1.4

With a solid grasp of GCP architecture and system compliance, I’m confident I’m the right fit for this task. As a System Engineer with a strong design sense and advanced command of Microsoft Office tools, I bring a rare mix of technical precision and visual storytelling that can elevate your project. My expertise allows me to produce structured, high-impact content with supporting evidence tailored to your needs. I specialize in translating complex ideas into clear, compelling deliverables—whether through PowerPoint presentations or technical documentation. This aligns perfectly with your goal of conducting a gap analysis of your current GCP setup against SOC 2 Type 1 standards, followed by actionable recommendations. My strength lies in blending logic, design, and narrative to create content that resonates and persuades. I understand the importance of clarity and completeness in documents meant for third-party review. I can provide step-by-step implementation guidance or take a hands-on role to ensure compliance that an external auditor can confidently approve. Let’s collaborate to build and secure your SOC 2 Type I–compliant environment.
₹15,000 INR in 7 days
0.0
0.0

Jaipur, India
Payment method verified
Member since Oct 1, 2024
₹1500-12500 INR
₹600-1500 INR
₹1500-12500 INR
₹12500-37500 INR
₹1500-12500 INR
₹150000-250000 INR
$15-25 USD / hour
₹400-750 INR / hour
₹100-400 INR / hour
$25-50 CAD / hour
₹600-1500 INR
€18-36 EUR / hour
₹1500-12500 INR
$250-750 USD
₹10000-20000 INR
$250-750 USD
₹1500-12500 INR
$30-250 USD
€30-250 EUR
$2-8 USD / hour
₹600-1500 INR
$750-1500 USD
$30-250 USD
₹15000-45000 INR
₹750-1250 INR / hour