Kuwait City, Kuwait

Cloud Architect (Google Cloud Platform)

 Job Description:

Cloud Architect (Google Cloud Platform & API Management – Apigee)

Job Description:

Experience Level: Senior (6+ Years)
Languages Required: Fluent in Arabic and English (written and spoken)

Role Overview:

We are seeking a highly skilled Cloud Architect with extensive experience in designing, implementing, and managing robust cloud solutions on Google Cloud Platform (GCP), with a strong focus on API-led architectures using Apigee.

The ideal candidate will have a proven track record of leading cloud transformation initiatives, designing API-first ecosystems, and implementing secure, scalable, and governed API platforms. This role requires aligning cloud and API strategies with business objectives, enabling digital channels, partner ecosystems, and monetization models.

Key Responsibilities:

Cloud & API Architecture Design:

  • Develop comprehensive architectural blueprints for scalable, secure, and cost-effective solutions on GCP.
  • Design and govern API-first architectures using Apigee (Apigee X / Hybrid) as a core integration and access layer.
  • Define API gateway patterns, microservices integration, and event-driven architectures (Pub/Sub).
  • Enable seamless integration between digital channels, backend systems, and partner ecosystems.

API Management & Governance (Apigee):

  • Design and implement API proxy architectures, policies, and shared flows on Apigee.
  • Establish API governance models including versioning, lifecycle management, and developer onboarding.
  • Implement API security frameworks (OAuth2, JWT, mTLS, rate limiting, spike arrest, threat protection).
  • Enable API monetization models and developer portal integrations.
  • Define traffic management, quota management, and caching strategies for high-scale systems.

Infrastructure Management:

  • Oversee deployment of cloud infrastructure including Compute Engine, GKE, Cloud Run, networking, and storage.
  • Ensure high availability, scalability, and performance across cloud and API layers.

Security & Compliance:

  • Implement security frameworks across both GCP and Apigee layers.
  • Utilize IAM, VPC Service Controls, Security Command Center, and Apigee Advanced API Security.
  • Ensure compliance with regulatory standards (e.g., PDPL, NCA, GDPR-aligned practices).

Cloud Cost Optimization:

  • Monitor and optimize cloud and API consumption costs (including API call volumes and gateway usage).
  • Implement cost governance models across GCP and Apigee environments.

Cloud & API Migrations:

  • Lead migrations from legacy gateways (e.g., ESBs, on-prem API gateways) to Apigee.
  • Design transition strategies ensuring minimal disruption and backward compatibility.

Automation & DevOps:

  • Implement Infrastructure as Code using Terraform (including Apigee configurations).
  • Establish CI/CD pipelines for API proxy deployments and cloud infrastructure (Jenkins, Cloud Build, GitOps).
  • Enable automated testing, version control, and environment promotion for APIs.

Disaster Recovery & High Availability:

  • Design DR strategies for both GCP workloads and Apigee runtime planes.
  • Ensure multi-region, multi-zone resilience with defined RTO/RPO objectives.

Stakeholder Collaboration:

  • Work with business, product, and engineering teams to define API products and digital capabilities.
  • Clearly communicate architecture decisions and API strategies in Arabic and English.

Skills & Tools:

GCP Services:

  • Compute Engine, GKE, Cloud Run, Cloud Storage, BigQuery, Pub/Sub, VPC, IAM

API Management:

  • Strong hands-on experience with Apigee (Apigee X / Hybrid / OPDK)
  • API proxy development, policies, shared flows, traffic management
  • Developer portals (Drupal-based or integrated portals)
  • API monetization and analytics

Infrastructure as Code (IaC):

  • Terraform (including Apigee provisioning via Fast Fabric or equivalent)
  • Deployment Manager

DevOps & Automation:

  • Jenkins, GitOps, Cloud Build, Ansible
  • CI/CD pipelines for APIs and microservices
  • Kubernetes (GKE)

Security & Compliance:

  • IAM, VPC security, encryption (CMEK)
  • Apigee security policies (OAuth2, OIDC, threat protection)
  • Security Command Center, Advanced API Security

Data & Analytics:

  • BigQuery, Dataflow, Pub/Sub
  • API analytics and traffic insights via Apigee

Monitoring & Logging:

  • Cloud Logging, Cloud Monitoring, Stackdriver
  • API observability using Apigee analytics and logging integrations

Preferred Certifications:

  • Google Professional Cloud Architect
  • Google Associate Cloud Engineer
  • Google Cloud Security Engineer
  • Apigee Certification (API Engineer / API Architect) – Highly Preferred