Security Engineer, Hardware Security, Cloud CISO

3 Weeks ago • 2 Years + • Cyber Security

Job Summary

Job Description

The Security team at Google works to create and maintain the safest operating environment. Security Engineers monitor systems for attacks and work with software engineers to fix security flaws. This role, within the Off the Shelf (OTS) Hardware Security team, focuses on securing hardware/firmware used by Cloud products. Responsibilities include identifying critical hardware/firmware devices, performing in-depth security reviews, writing threat models and reports, presenting findings to leadership, informing vendors of vulnerabilities, partnering with vendors for mitigation, advocating for design changes, and collaborating on new attack scenarios and mitigation strategies. The team works to protect Google Cloud products, ensuring the upper layers of the stack can consider hardware/firmware trustworthy.
Must have:
  • Bachelor's degree in CS or related field
  • 2+ years Security experience
  • Reverse Engineering experience
  • Hardware System Architecture knowledge
  • Firmware experience
  • Threat modeling and reporting
  • Risk mitigation recommendations
  • Vendor collaboration
Good to have:
  • Hardware/firmware security experience
  • Offensive and defensive security understanding
  • Influence without authority
  • Excellent communication and documentation

Job Details

Minimum qualifications:

  • Bachelor's degree in Computer Science, a related field, or equivalent practical experience.
  • 2 years of experience in the Security field.
  • Experience in a Reverse Engineering role.
  • Experience with Hardware System Architecture.
  • Experience with Firmware.

Preferred qualifications:

  • Experience with hardware or firmware security.
  • Understanding of both offensive and defensive security methods.
  • Ability to influence others without authority.
  • Excellent communication and documentation skills.

About the job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

The Off the Shelf (OTS) Hardware Security team focuses on securing the off-the-shelf hardware/firmware used by Cloud products. We work with a wide range of other external vendors, internal teams, and industry bodies to protect devices against all hardware and firmware security threats.

OTS Hardware Security team cares deeply about protecting the hardware/firmware used by Google Cloud products so that the upper layers of the stack can consider it trustworthy.
Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

Responsibilities

  • Identify business critical hardware/firmware devices within Cloud for team review. Perform in-depth and holistic hardware and firmware security review of critical business devices (e.g., Hardware Security Modules, Servers, Switches, Solid State Drives).
  • Write detailed threat models and reports to support and augment reviews. Present the risk findings and risk mitigation recommendations to technical and organizational leadership across different organizations.
  • Inform vendors of the hardware and firmware vulnerabilities found in their devices. Partner with vendor and internal teams in order to effectively mitigate identified risks.
  • Partner with device vendors to advocate for necessary design changes to hardware and firmware. Design changes due to risk findings both internally and to the vendor.
  • Collaborate with team members to come up with new attack scenarios, mitigation, vendor collaboration strategies, and to ensure consistency in team approach and methodology.

Similar Jobs

Nordson Corporation - Project Manager

Nordson Corporation

Rubiera, Emilia-Romagna, Italy (On-Site)
3 Weeks ago
Oni - Sales Operations Coordinator

Oni

San Diego, California, United States (On-Site)
1 Month ago
Minecast - Senior Software Engineer - Full Stack - CyberGraph

Minecast

Bengaluru, Karnataka, India (Hybrid)
3 Weeks ago
Meet Elise - Talent Sourcer

Meet Elise

New York, New York, United States (On-Site)
1 Week ago
ByteDance - Ethics and Compliance Specialist (Training and Communications)

ByteDance

Singapore (On-Site)
1 Month ago
Axinous - Principal Professional Services Architect (Data Loss Prevention)

Axinous

Hyderabad, Telangana, India (Remote)
2 Months ago
ByteDance - Software Engineer Intern, Security Engineering

ByteDance

Singapore (On-Site)
1 Month ago
Google - Security Engineer, Endpoint Platforms Security, Core

Google

Hyderabad, Telangana, India (On-Site)
3 Weeks ago
Saviynt - Consultant, Professional Services, IAM/IGA

Saviynt

Bengaluru, Karnataka, India (Hybrid)
7 Months ago
Axinous - Technical Customer Success Manager

Axinous

Hong Kong (Remote)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

TransUnion - Company Secretary

TransUnion

Leeds, England, United Kingdom (Hybrid)
2 Weeks ago
Ilogos studios - Senior Data Analyst

Ilogos studios

Estonia (Remote)
1 Month ago
Canva - IP & Partnerships Lead, Japan

Canva

Tokyo, Japan (Remote)
2 Months ago
SmartBear - Solutions Engineer

SmartBear

Galway, County Galway, Ireland (On-Site)
1 Week ago
PENN Interactive - Regional Director of Player Development - Northeast

PENN Interactive

Philadelphia, Pennsylvania, United States (Hybrid)
3 Months ago
Guardian - Claims Strategy Lead, Individual Markets

Guardian

Pittsfield, Massachusetts, United States (Hybrid)
1 Week ago
Beyond Sports  - Video Content Creator

Beyond Sports

Alkmaar, North Holland, Netherlands (On-Site)
1 Month ago
Playtika - FP&A Specialist

Playtika

Israel (On-Site)
1 Month ago
ISS Stoxx - ESG Ratings Analyst - Technology, Media and Telecom Sector

ISS Stoxx

Mumbai, Maharashtra, India (On-Site)
3 Weeks ago
Scout - Engineer, Braking Design Release

Scout

Novi, Michigan, United States (On-Site)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Zürich, Zurich, Switzerland

Haleon - HR Business Partner Nyon Site

Haleon

Nyon, Vaud, Switzerland (On-Site)
1 Week ago
Microsoft - Research Scientist

Microsoft

Zürich, Zurich, Switzerland (On-Site)
1 Month ago
PwC - Manager / Senior Manager –Technology Strategy & Transformation Consulting

PwC

Zürich, Zurich, Switzerland (On-Site)
7 Months ago
Toku - International Payroll Lead/Analyst (Switzerland)

Toku

Switzerland (Remote)
4 Months ago
Sonar Source - Enterprise Expansion Representative - DACH

Sonar Source

Geneva, Geneva, Switzerland (On-Site)
7 Months ago
Thales - System Integration & Test Engineer

Thales

Bern, Canton Of Bern, Switzerland (Hybrid)
3 Weeks ago
sika ag - Operations (PLANT) Controller

sika ag

Romanshorn, Thurgau, Switzerland (On-Site)
3 Days ago
Google - Software Engineering Manager II, Site Reliability Engineering

Google

Zürich, Zurich, Switzerland (On-Site)
1 Month ago
IMC - Middle Office Specialist

IMC

Zug, Zug, Switzerland (On-Site)
2 Days ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ByteDance - Senior Software Engineer, Global Payment Security

ByteDance

San Jose, California, United States (On-Site)
6 Months ago
Google - Senior Embedded Engineer, Security/Privacy, Pixel

Google

Warsaw, Masovian Voivodeship, Poland (On-Site)
1 Month ago
Don't Nod - Cybersecurity Internship

Don't Nod

Paris, Île-de-France, France (On-Site)
2 Months ago
Axinous - Customer Success Engineer

Axinous

Tokyo, Japan (Remote)
6 Months ago
SmileGate - Security Vulnerability Diagnosis Specialist

SmileGate

Seongnam-si, Gyeonggi-do, South Korea (On-Site)
3 Months ago
Google - Operations Analyst, Pre-Sales Operations

Google

Singapore (On-Site)
3 Weeks ago
PwC - Azure Senior Cloud Architect | Alliances, Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
7 Months ago
ByteDance - Privacy and Security Manager - Information System -Singapore

ByteDance

Singapore (On-Site)
5 Months ago
N-iX - Senior Cybersecurity Engineer

N-iX

(Remote)
1 Month ago
ByteDance - Senior Technology Internal Auditor (Global Technology Audit)

ByteDance

Singapore (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

A problem isn't truly solved until it's solved for all. Googlers build products that help create opportunities for everyone, whether down the street or across the globe. Bring your insight, imagination and a healthy disregard for the impossible. Bring everything that makes you unique. Together, we can build for everyone.

London, England, United Kingdom (On-Site)

Fremont, California, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

Reston, Virginia, United States (On-Site)

Sunnyvale, California, United States (On-Site)

Reston, Virginia, United States (On-Site)

Hyderabad, Telangana, India (On-Site)

View All Jobs

Get notified when new jobs are added by Google

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug