Senior Information Security Engineer, Product Security Engineering, Cloud

2 Weeks ago • 5-9 Years • Cyber Security

About the job

Summary

The Senior Information Security Engineer at Google's Product Security Engineering team within the Cloud CISO organization ensures all Cloud products are secure. Responsibilities include identifying and implementing security controls, performing security reviews and vulnerability research, developing secure protocols and systems, reviewing designs for vulnerabilities, and responding to vulnerabilities with mitigations and hardening. The role involves collaborating with software engineers, providing security guidance, and working across various software designs and technology stacks to maintain the highest security standards for Google's software and systems. This team focuses on improving the security of products by design and default, providing tools and frameworks, and upskilling embedded security leads.
Must have:
  • 5+ years coding experience
  • 5+ years security assessment experience
  • 5+ years security engineering experience
  • 1+ year team leadership or technical risk analysis
  • Security reviews, vulnerability research
Good to have:
  • 4 years data analysis, ethical hacking experience
  • Code review skills
  • Excellent communication skills
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.

Minimum qualifications:

  • Bachelor's degree or equivalent practical experience.
  • 5 years of coding experience in one or more general purpose languages.
  • 5 years of experience with security assessments, security design reviews, or threat modeling.
  • 5 years of experience with security engineering, computer and network security, and security protocols.
  • 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.

Preferred qualifications:

  • 4 years of experience in data analysis, hazard assessment, risk and fraud investigation, security vulnerabilities, or ethical hacking.
  • Ability to comprehend and review code in one or more general purpose languages.
  • Excellent communication skills, with the ability to influence others.

About the job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

Product Security Engineering is the team within the Cloud CISO organization responsible for helping ensure every product Cloud ships is as secure as it can be and increasing the assurance levels of security in the infrastructure underlying all our products. This team will also focus on increasing the capabilities of each product team to develop more secure products by design and by default, from patterns, tools and frameworks to increasing the skill level of embedded security leads. As a Senior Information Security Engineer, you will help to ensure that our software and systems are designed and implemented to the highest security standards. You will perform technical security assessments, code reviews and vulnerability testing to highlight risk, helping Google teams and partners to improve security, and work on a wide variety of software designs and technology stacks.

Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

Responsibilities

  • Identify security issues and implement and design security controls, tools, and services to improve security systems and processes.
  • Perform security reviews, research and reproduce vulnerabilities, design secure protocols and systems, and write tests and fuzzers.
  • Review and develop secure operational practices, and provide security guidance for engineers and support staff.
  • Review designs and look for vulnerabilities, both with one-time reviews and longer term engagements, surface vulnerability patterns, and design them out.
  • Look for vulnerabilities with techniques including reverse engineering, fuzzing, and static analysis. Respond to vulnerabilities with repos, mitigations, and hardening.
View Full Job Description

About The Company

A problem isn't truly solved until it's solved for all. Googlers build products that help create opportunities for everyone, whether down the street or across the globe. Bring your insight, imagination and a healthy disregard for the impossible. Bring everything that makes you unique. Together, we can build for everyone.

View All Jobs

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug