Enable job alerts via email!

Google Chronicle Developer

FDM Group

Leeds

Remote

GBP 60,000 - 85,000

Full time

5 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a leading consultancy as a Senior Google Chronicle Developer, where you'll play a crucial role in optimizing security monitoring and threat detection. This fully remote role involves designing detections, integrating with teams, and mentoring others. Applicants should be experienced in Google Chronicle and skilled in detection languages, with an opportunity to impact a significant security ecosystem.

Benefits

Career coaching and mentoring
Assignments with global companies
Annual leave and workplace pension
BAYE share scheme

Qualifications

  • Minimum 4+ years' experience in Google Chronicle development and administration.
  • Proficiency in Chronicle detection languages and onboarding data.
  • Familiarity with threat intelligence feeds and intrusion detection concepts.

Responsibilities

  • Design, develop, and maintain Chronicle detections across IT and security domains.
  • Onboard new data sources into Chronicle and build UDM pipelines.
  • Collaborate with SecOps and DevOps for incident response and integration.

Skills

YARA-L
EQL
Security Operations
Fluentd
DevOps
Data Engineering
JSON
Regex
SOAR platforms
GCP services

Education

4+ years of experience with Google Chronicle
Expertise in SIEM/SecOps development
Deep understanding of UDM schema

Tools

Kubernetes
Docker
Cloud Pub/Sub
BigQuery

Job description

Join to apply for the Google Chronicle Developer role at FDM Group

3 days ago Be among the first 25 applicants

Join to apply for the Google Chronicle Developer role at FDM Group

This range is provided by FDM Group. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

Direct message the job poster from FDM Group

Senior Specialist Recruiter at FDM Group

FDM is a global business and technology consultancy seeking a Senior Google Chronicle Developer to work for our client within the health sector. This is initially a 6-month contract with the potential to extend and will be a fully remote role.

Our client is seeking a Senior Google Chronicle Developer, who will be instrumental in building, managing, and optimising their Chronicle-based security monitoring and threat detection ecosystem. You will work closely with Security Operations (SecOps), DevOps, and Data Engineering teams to ensure they have reliable data ingestion, robust detection logic, and automated response playbooks that surface actionable insights and drive rapid incident response.

Responsibilities

  • Design, develop, and maintain Chronicle detections and playbooks across IT, application, and security domains, using YARA-L, EQL, and Chronicle Policy Engine
  • Onboard new data sources into Chronicle via forwarders (e.g., Chronicle Data Forwarder, Fluentd/Fluent Bit), APIs, and custom parsers
  • Build and optimise UDM pipelines (parsers & normalization)—create custom parsing rules, JSON or regex-based Normalized Event configurations, and ensure new log sources conform to the common schema
  • Develop scheduled hunts and automated workflows in Chronicle for threat hunting (e.g., abnormal DNS tunneling, lateral movement). Leverage EQL for complex queries and scheduled scans
  • Collaborate with SecOps and DevOps to integrate Chronicle alerts with SOAR platforms (e.g., Phantom, Demisto), enabling automated enrichment (TI, asset data) and response actions. Author playbooks that, for example, isolate compromised endpoints, block IPs, or escalate to ticketing systems
  • Drive improvements in log standardization and detection rule hygiene—audit existing YARA-L rules, tune conditions to reduce false positives/negatives, and retire stale detections
  • Act as Chronicle SME for architecture reviews, capacity planning, licensing, and best practices and advise on Chronicle’s ingestion pipeline scaling (back-pressure, sharding), health monitoring, and performance metrics (ingest latency, query response times)
  • Participate in incident investigations and postmortems, providing insights via Chronicle query analysis and retrospectives. Identify detection gaps and propose new rule or playbook enhancements
  • Mentor junior Chronicle engineers and analysts—lead brown-bag sessions on writing EQL hunts, building YARA-L rules, or configuring UDM transformations

Requirements

  • Minimum of 4+ years’ hands-on experience with Google Chronicle (or equivalent SIEM/SecOps) development and administration
  • Expertise in Chronicle detection languages: YARA-L (rule authoring, tuning), EQL-style queries, and Chronicle Policy Engine
  • Solid experience onboarding data via Chronicle Data Forwarder, Fluentd/Fluent Bit, syslog, and RESTful APIs. Comfortable building custom parsing pipelines and mapping to UDM
  • Deep understanding of Chronicle’s UDM schema—ability to create or extend Normalized Events, parse nested JSON, extract fields via JSONPath/regex
  • Proficiency integrating Chronicle with SOAR platforms (e.g., Phantom, Demisto) via webhooks or Cloud Pub/Sub. Able to automate threat-intel enrichment, host quarantines, and ticket creation
  • Hands-on with GCP services (Pub/Sub, Cloud Functions, BigQuery) and cloud-native logging (Stackdriver/Cloud Logging, AWS CloudWatch). Comfortable with containerized deployments (Kubernetes, Docker)
  • Strong foundation in security operations—familiarity with threat intelligence feeds, MITRE ATT&CK, and intrusion detection concepts. Able to translate raw logs into actionable detections
  • Experience using Git, CI/CD pipelines (e.g., Cloud Build, Jenkins) to manage Chronicle rule repositories, automated testing of YARA-L against staging data, and staged rollouts
  • Career coaching, mentoring and access to upskilling throughout your entire FDM career
  • Assignments with global companies and opportunities to work abroad
  • Opportunity to re-skill and up-skill into new areas, develop non-linear career paths and build a skillset within your field
  • Annual leave, work-place pension and BAYE share scheme

About FDM

We are a business and technology consultancy and one of the UK's leading employers, recruiting the brightest talent to become the innovators of tomorrow. We have centres across Europe, North America and Asia-Pacific, and a global workforce of over 3,500 Consultants. FDM has shown exponential growth throughout the years, firmly establishing itself as an award-winning employer and is listed on the FTSE4Good Index.

Diversity and Inclusion

FDM Group is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, colour, religion, sex, sexual orientation, national origin, age, disability, veteran status or any other status protected by federal, provincial or local laws.

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Contract
Job function
  • Job function
    Engineering and Information Technology
  • Industries
    Information Technology & Services, Public Health, and Hospitals and Health Care

Referrals increase your chances of interviewing at FDM Group by 2x

Get notified about new Software Engineer jobs in Leeds, England, United Kingdom.

Frontend software engineer (React) - Europe Remote

Leeds, England, United Kingdom $35,000.00-$40,000.00 1 week ago

Leeds, England, United Kingdom 12 hours ago

Leeds, England, United Kingdom 4 days ago

Leeds, England, United Kingdom 12 hours ago

Leeds, England, United Kingdom 12 hours ago

Leeds, England, United Kingdom 12 hours ago

AI Quality Engineer- Python or Java (UK Remote)

Leeds, England, United Kingdom 3 days ago

Senior Java Software Engineer (UK Remote)

Leeds, England, United Kingdom 2 days ago

Remote Senior Frontend Developer (m/w/d) - Vaadin/ GWT (Google Web Toolkit)/Apache Wicket

Leeds, England, United Kingdom 3 weeks ago

Senior Fullstack/Backend Software Developer
Software Development Coach - Flexible (Domain-Driven Design, TDD + Others)

Leeds, England, United Kingdom 4 weeks ago

Senior Full Stack Engineer - MultiLoc (Remote - United Kingdom)

Leeds, England, United Kingdom 2 days ago

Software Engineering Coach (GenAI + LLMs)

Leeds, England, United Kingdom 1 month ago

Bradford, England, United Kingdom 13 hours ago

Leeds, England, United Kingdom 5 days ago

Leeds, England, United Kingdom 4 days ago

Leeds, England, United Kingdom 13 hours ago

Senior Machine Learning Scientist (UK Remote)

Leeds, England, United Kingdom 6 days ago

Leeds, England, United Kingdom 5 days ago

Senior Consultant (Architecture and Engineering)

West Yorkshire, England, United Kingdom 3 weeks ago

Leeds, England, United Kingdom 5 days ago

Leeds, England, United Kingdom 5 days ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.