Security Engineer, Hardware Security, Cloud CISO

1 Month ago • 2 Years + • Cyber Security

Job Summary

Job Description

The Security team at Google works to create and maintain the safest operating environment. Security Engineers monitor systems for attacks and work with software engineers to fix security flaws. This role, within the Off the Shelf (OTS) Hardware Security team, focuses on securing hardware/firmware used by Cloud products. Responsibilities include identifying critical hardware/firmware devices, performing in-depth security reviews, writing threat models and reports, presenting findings to leadership, informing vendors of vulnerabilities, partnering with vendors for mitigation, advocating for design changes, and collaborating on new attack scenarios and mitigation strategies. The team works to protect Google Cloud products, ensuring the upper layers of the stack can consider hardware/firmware trustworthy.
Must have:
  • Bachelor's degree in CS or related field
  • 2+ years Security experience
  • Reverse Engineering experience
  • Hardware System Architecture knowledge
  • Firmware experience
  • Threat modeling and reporting
  • Risk mitigation recommendations
  • Vendor collaboration
Good to have:
  • Hardware/firmware security experience
  • Offensive and defensive security understanding
  • Influence without authority
  • Excellent communication and documentation

Job Details

Minimum qualifications:

  • Bachelor's degree in Computer Science, a related field, or equivalent practical experience.
  • 2 years of experience in the Security field.
  • Experience in a Reverse Engineering role.
  • Experience with Hardware System Architecture.
  • Experience with Firmware.

Preferred qualifications:

  • Experience with hardware or firmware security.
  • Understanding of both offensive and defensive security methods.
  • Ability to influence others without authority.
  • Excellent communication and documentation skills.

About the job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

The Off the Shelf (OTS) Hardware Security team focuses on securing the off-the-shelf hardware/firmware used by Cloud products. We work with a wide range of other external vendors, internal teams, and industry bodies to protect devices against all hardware and firmware security threats.

OTS Hardware Security team cares deeply about protecting the hardware/firmware used by Google Cloud products so that the upper layers of the stack can consider it trustworthy.
Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

Responsibilities

  • Identify business critical hardware/firmware devices within Cloud for team review. Perform in-depth and holistic hardware and firmware security review of critical business devices (e.g., Hardware Security Modules, Servers, Switches, Solid State Drives).
  • Write detailed threat models and reports to support and augment reviews. Present the risk findings and risk mitigation recommendations to technical and organizational leadership across different organizations.
  • Inform vendors of the hardware and firmware vulnerabilities found in their devices. Partner with vendor and internal teams in order to effectively mitigate identified risks.
  • Partner with device vendors to advocate for necessary design changes to hardware and firmware. Design changes due to risk findings both internally and to the vendor.
  • Collaborate with team members to come up with new attack scenarios, mitigation, vendor collaboration strategies, and to ensure consistency in team approach and methodology.

Similar Jobs

Varonis Internal - R&D Escalation Engineer

Varonis Internal

Cork, County Cork, Ireland (On-Site)
4 Years ago
Gigamon - Sales Engineer

Gigamon

Orange, California, United States (On-Site)
3 Months ago
Epic Games - Senior Data Analyst, Game Platform

Epic Games

(On-Site)
5 Months ago
Mashgin - Deployment Engineer - Texas

Mashgin

Austin, Texas, United States (Remote)
7 Months ago
Visa - Implementation Analyst

Visa

Ashburn, Virginia, United States (Hybrid)
2 Weeks ago
Windranger Labs - Security Engineer

Windranger Labs

Apac, Northern Region, Uganda (Remote)
2 Months ago
Tencent - Security Operations - PUBG Mobile

Tencent

Shenzhen, Guangdong Province, China (On-Site)
3 Months ago
bytedance - Senior Software Engineer - Network Security

bytedance

San Jose, California, United States (On-Site)
2 Months ago
plarium - SecOps Engineer

plarium

Lviv, Lviv Oblast, Ukraine (Remote)
1 Month ago
NVIDIA - Senior Networking Security Research Architect

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Bluevine India - Sr. ML Engineer (Python developer)

Bluevine India

Bengaluru, Karnataka, India (Hybrid)
2 Weeks ago
CyberArk - Principal Account Executive, Machine Identity

CyberArk

France (Hybrid)
1 Month ago
Nintendo - Embedded Engineer, Display (NTD)

Nintendo

Redmond, Washington, United States (On-Site)
1 Year ago
bytedance - Network Engineer, High Performance GPU Network Direction

bytedance

Seattle, Washington, United States (On-Site)
5 Days ago
Coupa - Instructional Designer, Technical Curriculum

Coupa

Bogota, Colombia (Hybrid)
1 Month ago
black bird interactive - RTS C++ Software Engineer

black bird interactive

Vancouver, British Columbia, Canada (Hybrid)
3 Weeks ago
PwC - Financial Sector Cyber Security Strategy Manager

PwC

Amsterdam, North Holland, Netherlands (Hybrid)
5 Months ago
Reddit - Client Account Executive, Mid-Market (AppDev)

Reddit

San Francisco, California, United States (On-Site)
3 Weeks ago
NVIDIA - Research Scientist, Circuits

NVIDIA

Taipei City, Taiwan (On-Site)
4 Months ago
diligent coorperation - Salesforce Solutions Architect

diligent coorperation

New York, United States (On-Site)
4 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Zürich, Zurich, Switzerland

PwC - Manager / Senior Manager –Technology Strategy & Transformation Consulting

PwC

Zürich, Zurich, Switzerland (On-Site)
8 Months ago
Philips - Field Clinical Scientist

Philips

Horgen, Zurich, Switzerland (On-Site)
1 Year ago
PwC - Director in Life Sciences Quality Management

PwC

Zürich, Zurich, Switzerland (On-Site)
8 Months ago
PwC - Manager - Insurance Consulting (P&C Retail & Commercial)

PwC

Zürich, Zurich, Switzerland (On-Site)
8 Months ago
PwC - Auditor - Treasury and Commodity Trading

PwC

Geneva, Geneva, Switzerland (On-Site)
8 Months ago
Sika AG - Operations (PLANT) Controller

Sika AG

Romanshorn, Thurgau, Switzerland (On-Site)
3 Weeks ago
Tesla - HR Operations Payroll Specialist - Switzerland & Austria

Tesla

Zug, Zug, Switzerland (On-Site)
4 Months ago
Tesla - Service Manager

Tesla

Landquart, Grisons, Switzerland (On-Site)
4 Months ago
Tesla - Automotive Mechatronics Technician

Tesla

Cham, Zug, Switzerland (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Google - Senior Security Engineer, Enterprise Infrastructure Protection

Google

Sydney, New South Wales, Australia (On-Site)
1 Month ago
Nexon - Associate Security Engineer

Nexon

El Segundo, California, United States (Hybrid)
1 Month ago
Canva - Security Engineering Manager - Vulnerability Management, Application Security

Canva

Surry Hills, New South Wales, Australia (Remote)
1 Month ago
PwC - Cybersecurity Threat & Vulnerability | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
7 Months ago
PwC - Manager / Senior Manager Cyber Technology and Transformation

PwC

Zürich, Zurich, Switzerland (On-Site)
8 Months ago
Google - Software Engineer III, Security/Privacy, Google Cloud Security and Privacy

Google

Kirkland, Washington, United States (On-Site)
1 Month ago
PwC - Technologie & Operation Intern

PwC

Pointe-Noire, Kouilou, Republic Of The Congo (On-Site)
7 Months ago
Crunchyroll - Principal Technical Product Manager - Application Security

Crunchyroll

Los Angeles, California, United States (On-Site)
3 Months ago
Crunchyroll - Principal Technical Product Manager - Application Security

Crunchyroll

San Francisco, California, United States (On-Site)
3 Months ago
PwC - Application Security Manager

PwC

Makati, Metro Manila, Philippines (On-Site)
8 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Massachusetts, United States (Remote)

Regensburg, Bavaria, Germany (Remote)

Lanham, Maryland, United States (On-Site)

Toronto, Ontario, Canada (On-Site)

London, England, United Kingdom (On-Site)

Romania (On-Site)

Taipei City, Taiwan (On-Site)

Kirkland, Washington, United States (On-Site)

Sunnyvale, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Google

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug