Senior Security Engineer, Exploits, Google Threat Intelligence Group

Google

Deutschland

Hybrid

EUR 128.000 - 131.000

Vollzeit

Vor 2 Tagen
Sei unter den ersten Bewerbenden

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Google’s Threat Intelligence Group (GTIG) is seeking a Security Engineer to join the Exploits Mission. You will conduct in-depth threat research on attacker TTPs and malware, using Nirvana and mGraph to model activity and deliver actionable intelligence.

You will collaborate with GTIG and Google teams to develop countermeasures, mentor peers, and drive threat disruption while shaping security posture for users and developers worldwide.

Qualifikationen

  • Bachelor's degree in Computer Science, Cybersecurity, a related field, or equivalent practical experience.
  • 5 years of experience in threat intelligence, intrusion analysis, vulnerability researcher, or a similar security role.
  • Experience with threat intelligence platforms and tools (e.g., VirusTotal, SIEMs).

Aufgaben

  • Create and deploy detection signatures (autoqueries, Watchtower rules) to maintain visibility over threat actors and assist in closing security gaps.
  • Produce polished, high-quality technical intelligence documentation and actor profiles to deliver actionable insights to internal and external stakeholders.
  • Influence technical direction within your scope, mentor junior engineers, and collaborate with cross-functional Google teams to support threat disruption efforts. Collaborate with security engineers and product teams in designing innovative exploit mitigations.
  • Identify and execute opportunities for continuous improvement: analytic collection, process optimization, and automation.

Kenntnisse

Threat intelligence
Intrusion analysis
Vulnerability research
Android security
Chrome security
TTPs
Malware analysis
Reverse engineering
Python
GoogleSQL

Ausbildung

Bachelor's degree in Computer Science, Cybersecurity, a related field, or equivalent practical experience

Tools

VirusTotal
SIEMs

Jobbeschreibung

Note: By applying to this position you will have an opportunity to share your preferred working location from the following:

In-office locations: Zürich, Switzerland.
Remote location(s): Switzerland; Germany; United Kingdom.
Minimum qualifications
  • Bachelor's degree in Computer Science, Cybersecurity, a related field, or equivalent practical experience.
  • 5 years of experience in threat intelligence, intrusion analysis, vulnerability researcher, or a similar security role.
  • Experience with threat intelligence platforms and tools (e.g., VirusTotal, SIEMs).
Preferred qualifications
  • Knowledge of Android and Chrome security and internals.
  • Deep understanding of attacker Tactics, Techniques, and Procedures (TTPs).
  • Proven ability to lead complex threat research projects independently.
  • Strong analytical, problem-solving, and communication skills.
  • Skills in malware analysis, reverse engineering, or vulnerability analysis.
  • Proficiency in scripting or querying languages (e.g., Python, GoogleSQL).
About The Job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

Join the Google Threat Intelligence Group's (GTIG) Exploits Mission. The Exploits Mission focuses on protecting users from targeted exploitation, primarily from government-backed attackers and Commercial Surveillance Vendors (CSVs), through the detection, analysis, and ultimate prevention of vulnerabilities and exploits, with a special focus on 0-day attacks.

We provide timely, actionable intelligence and coordinate with internal and external partners to fix critical vulnerabilities and secure user devices.

As a Security Engineer on our team, you will conduct in-depth research on threat groups, their Tactics, Techniques, and Procedures (TTPs), and the malware they employ. You'll utilize Google's powerful internal intelligence platforms, Nirvana and mGraph, to model threat activity and generate actionable insights. This role involves close collaboration with various teams across GTIG and Google to develop and implement effective countermeasures, contributing directly to threat disruption and enhancing our collective security posture. We are looking for engineers passionate about threat research who can lead projects and mentor others.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

Germany: €128000 - €131000 (EUR) + 15% bonus target + equity + benefits

Responsibilities

Learn more about benefits at Google .

  • Create and deploy detection signatures (autoqueries, Watchtower rules) to maintain visibility over threat actors and assist in closing security gaps.
  • Produce polished, high-quality technical intelligence documentation and actor profiles to deliver actionable insights to internal and external stakeholders.
  • Influence technical direction within your scope, mentor junior engineers, and collaborate with cross-functional Google teams to support threat disruption efforts. Collaborate with security engineers and product teams in designing innovative exploit mitigations.
  • Identify and execute opportunities for continuous improvement: analytic collection, process optimization, and automation.

Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form .

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Customer Engineer, Security, Google Cloud Sales (English)
Customer Engineer, Security, Google Cloud Sales (English)

Google • Deutschland

Hybrid
EUR 112.000 - 114.000
Customer Engineer, Security, Google Cloud Sales (English)
Customer Engineer, Security, Google Cloud Sales (English)

Google • München

Hybrid
EUR 112.000 - 114.000
Equity
Data Center Security Manager (English, German)
Data Center Security Manager (English, German)

Google • Frankfurt

Vor Ort
EUR 104.000 - 106.000
Software Engineer III, Open Cloud Networking
Software Engineer III, Open Cloud Networking

Google • München

Hybrid
EUR 106.000 - 108.000
Data Center Security Manager (English, German)
Data Center Security Manager (English, German)

Google Inc. • Frankfurt

Vor Ort
EUR 104.000 - 106.000
Competitive compensation
Equity and benefits
Technical Program Manager, Assurance, Risk, and Compliance
Technical Program Manager, Assurance, Risk, and Compliance

Google Inc. • Frankfurt

Vor Ort
EUR 104.000 - 106.000
Technical Program Manager, Assurance, Risk, and Compliance
Technical Program Manager, Assurance, Risk, and Compliance

Google • Frankfurt

Vor Ort
EUR 104.000 - 106.000
Software Engineer II, Full Stack, Core Systems
Software Engineer II, Full Stack, Core Systems

Google • München

Vor Ort
EUR 86.000 - 88.000
Equity
Bonus target 15%
Benefits
Customer Engineer, Platform, Production Google Cloud, DACH (German)
Customer Engineer, Platform, Production Google Cloud, DACH (German)

Google • München

Vor Ort
EUR 112.000 - 114.000
Equity
Security Engineer (m/f/d)
Security Engineer (m/f/d)

Security Research Labs • Berlin

Hybrid
EUR 55.000 - 90.000
Gym discounts
Public transport pass
German lessons
+5