Mid

Google LLC

Riyadh

On-site

SAR 300,000 - 520,000

Full time

20 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Google LLC is seeking a highly skilled Mandiant Threat Intelligence Services integrator in Saudi Arabia. You will deliver Advanced Intelligence Access (AIA) deliverables, acting as an Integrator who partners closely with client teams and national security stakeholders.

You will work with CTI analysts to provide alert-driven reports, data analysis, and SOC support, often onsite several days per week as part of a broader Google Cloud security program.

Qualifications

  • Bachelor's degree or equivalent practical experience.
  • 5 years of CTI experience in government or military environments.
  • Experience describing and tracking advanced threats (APTs).
  • Experience in incident response and investigations.

Responsibilities

  • Understand CTI requirements and deployment opportunities to maximize defense.
  • Evaluate tools and best practices for tracking threats, TTPs and attacker trends.
  • Analyze customer data to identify threat activity and automate investigations.
  • Write intelligence reporting suitable for analysts and executives.
  • Support CTI integration into SIEM and TIP systems.

Skills

CTI experience
Incident response
Threat analysis
SOC operations

Education

Bachelor's degree

Tools

SIEM
TIP

Job description

X Due to national security requirements for this role, applications are strictly restricted toSaudi nationals. Applicants to this role must have work authorization in Saudi Arabia as this role is not eligible for work visa sponsorship

  • Bachelor's degree or equivalent practical experience.
  • 5 years of experience working in a government or military environment, leveraging and developing Cyber Threat Intelligence (CTI) for network, host and log analysis, to enable the detection and response to cyber threats.
  • Experience in leveraging CTI to describe, track and develop new intelligence on advanced persistent threats.
  • Experience in conducting or supporting incident response and investigations within enterprise environments.
Preferred qualifications:
  • Experience in SOC operations, threat hunting, detection engineering and SOC workflow optimization.
  • Understanding of core cyber security concepts, common enterprise IT infrastructure components, operating system internals and networking.
About the job

As a part of the MTIS Social Media Platform team, you will deliver Mandiant Threat Intelligence Services, including its key service known as Advanced Intelligence Access (AIA). You will provide the organization with access to a dedicated Mandiant Intelligence 'Integrator' who acts as an extension of the customer organization. Your team will work within the broader Mandiant Intelligence business and has experience supporting government and commercial sector customers, often working closely with national intelligence services, large government institutions, energy and finance. In this role, you will serve as an AIA Integrator, a highly skilled cyber threat analyst and consultant, backed by the entire organization's support, enablement, and capabilities. As a part of the AIA, you will offer various CTI analytical deliverables like alert-driven threat reports, threat data analysis, briefings, and support to SOC/Blue team functions. AIA Integrators aim to be tightly integrated with their client, working onsite a number of days per week. Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.

Responsibilities
  • Understand customers Cyber Threat Intelligence (CTI) requirements, identifying their needs and opportunities for deployment of CTI within their operations to have the greatest defensive impact.
  • Evaluate tools and best practices for tracking advanced threats, Tools, Techniques, and Procedures (TTPs) of attacker’s motivations, and industry and attacker trends.
  • Perform analysis of customer data, taking their bespoke sources to identify threat activity, or to build and automate investigative workflows.
  • Write intelligence reporting against customer requirements, appropriate for their intelligence analysts or executive leaders.
  • Support the integration of CTI into customer's security processes and technologies, including Security Information and Event Management (SIEM) and Threat Intelligence Platform (TIP) systems.

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy , Know your rights: workplace discrimination is illegal , Belonging at Google , and How we hire .

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Intelligence Consultant, Advanced Intelligence Access
Senior Intelligence Consultant, Advanced Intelligence Access

Google • Riyadh

On-site
SAR 300,000 - 520,000
Senior Cloud Security Architect, Mandiant, Cloud and Infrastructure
Senior Cloud Security Architect, Mandiant, Cloud and Infrastructure

Google • Saudi Arabia

On-site
SAR 350,000 - 500,000
Threat Intelligence Integrator – CTI & Incident Response
Threat Intelligence Integrator – CTI & Incident Response

Google LLC • Riyadh

On-site
SAR 300,000 - 520,000
Senior Threat Intelligence Consultant — Advanced Access
Senior Threat Intelligence Consultant — Advanced Access

Google • Riyadh

On-site
SAR 300,000 - 520,000
i3 Insider Risk Analyst - Dammam, Saudi Arabia
i3 Insider Risk Analyst - Dammam, Saudi Arabia

dtexsystems • Dammam

On-site
SAR 480,000 - 720,000
i3 Insider Risk Analyst - Dammam, Saudi Arabia
i3 Insider Risk Analyst - Dammam, Saudi Arabia

Dtex Systems Pty Ltd • Dammam

On-site
SAR 180,000 - 300,000
AI Tech Consultant Cybersecurity - Riyadh | BCG Platinion
AI Tech Consultant Cybersecurity - Riyadh | BCG Platinion

Boston Consulting Group (BCG) • Riyadh

On-site
SAR 150,000 - 200,000
Individual learning opportunities
Recognized certifications
Senior Cloud Security Architect - Zero Trust & IR (Remote)
Senior Cloud Security Architect - Zero Trust & IR (Remote)

Google • Saudi Arabia

Hybrid
SAR 350,000 - 500,000
Senior Threat Detection Engineer
Senior Threat Detection Engineer

COGNNA • Medina Province

On-site
SAR 180,000 - 320,000
ESOP program
Saudi Arabia Customer Success & Professional Services Red Team Specialist
Saudi Arabia Customer Success & Professional Services Red Team Specialist

Group-IB • Saudi Arabia

On-site
SAR 180,000 - 320,000