Stand out for this role — generate a tailored resume and cover letter in about a minute.
Google is seeking a Principal Engineer for Google Compute Platform Security to own the end-to-end security posture of GCE. You will lead across the control and data planes, architecting defenses, defining security strategy, and guiding hardware- and software-level isolation.
The role focuses on staying ahead of AI/LLM-enabled threats and advancing zero-trust architectures. You will influence global infrastructure security, collaborating with cross-organizational teams to secure hypervisors,
Share Principal Engineer, Google Compute Platform Security
Apply
Share Principal Engineer, Google Compute Platform Security
info_outline X In accordance with Washington state law, we are highlighting our comprehensive benefits package, which is available to all eligible US based employees. Benefits for this role include:
Note: By applying to this position you will have an opportunity to share your preferred working location from the following: Seattle, WA, USA; Kirkland, WA, USA; New York, NY, USA; Sunnyvale, CA, USA.
As Principal Engineer for GCE Platform Security, you will serve as the premier technical authority, executive architect, and overall owner for the end-to-end security posture of Google Compute Engine (GCE) - protecting the foundational global infrastructure that powers Google Cloud, Core Google services, and advanced AI research labs and mission-critical enterprise workloads.
In this high-impact strategic role, your leadership spans the complete architectural continuum between the distributed Control Plane and the foundational Data Plane. Across the control plane, you will architect robust, scalable defenses for multi-tenant orchestration, resource lifecycle management, zero-trust identity and access boundaries, supply-chain integrity, and high-assurance compliance for regulated and public-sector cloud environments. Across the node data plane, you will lead deep systems security architecture across hypervisors, virtual machine monitors (VMMs), host operating systems, kernel subsystems, and hardware-level isolation mechanisms.
Crucially, you will navigate a rapidly transforming threat landscape shaped by the emergence of agentic threat vectors enabled through advanced LLMs, where automated, AI-driven vulnerability discovery and exploit generation compress attacker timelines to machine speed. You will lead proactive defense-in-depth across the platform - mitigating hardware and microarchitectural CPU vulnerabilities (e.g., speculative execution, transient execution side-channels, and address space isolation), eliminating memory safety exploitation risks across the virtualization stack, and advancing host deprivileging and zero-trust host architectures.
Furthermore, you will advocate for next-generation virtualization security designs - leveraging custom silicon for isolation, establishing multi-domain security boundaries, and architecting secure runtime substrates for next-generation AI workloads, high-density sandboxed execution environments, and massive accelerator clusters.
Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
Individual pay is determined by factors including job-related skills, experience, and relevant education or training.
As Principal Engineer for GCE Platform Security, you will serve as the premier technical authority, executive architect, and overall owner for the end-to-end security posture of Google Compute Engine (GCE) - protecting the foundational global infrastructure that powers Google Cloud, Core Google services, and advanced AI research labs and mission-critical enterprise workloads.
In this high-impact strategic role, your leadership spans the complete architectural continuum between the distributed Control Plane and the foundational Data Plane. Across the control plane, you will architect robust, scalable defenses for multi-tenant orchestration, resource lifecycle management, zero-trust identity and access boundaries, supply-chain integrity, and high-assurance compliance for regulated and public-sector cloud environments, across the node data plane, you will lead deep systems security architecture across hypervisors, virtual machine monitors (VMMs), host operating systems, kernel subsystems, and hardware-level isolation mechanisms.
Crucially, you will navigate a rapidly transforming threat landscape shaped by the emergence of agentic threat vectors enabled through advanced LLMs, where automated, AI-driven vulnerability discovery and exploit generation compress attacker timelines to machine speed. You will lead proactive defense-in-depth across the platform - mitigating hardware and microarchitectural CPU vulnerabilities (e.g., speculative execution, transient execution side-channels, and address space isolation), eliminating memory safety exploitation risks across the virtualization stack, and advancing host deprivileging and zero-trust host architectures.
Furthermore, you will advocate for next-generation virtualization security designs - leveraging custom silicon for isolation, establishing multi-domain security boundaries, and architecting secure runtime substrates for next-generation AI workloads, high-density sandboxed execution environments, and massive accelerator clusters.
Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
Individual pay is determined by factors including job-related skills, experience, and relevant education or training.
US: $307000 - $427000 (USD) + 30% bonus target + equity + benefits
Learn more about benefits at Google .
Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy , Know your rights: workplace discrimination is illegal , Belonging at Google , and How we hire .
Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.
To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.
Equity is granted exclusively and discretionarily by Alphabet Inc. on the basis of an agreement concluded between you and Alphabet Inc. Alphabet Inc. is your sole contractual partner with respect to equity grants. GSU grants are not guaranteed, are discretionary, are subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc. stock plan, and your grant agreement. They have no impact on statutory payments. Current or past grants do not confer an acquired right.