Security Engineer, Android Product Security

Google

Kirkland (WA)

On-site

USD 147,000 - 210,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Google in Kirkland, WA, is seeking a Security Engineer for the Android Product Security Engineering (APSE) team. You will drive AI-powered security projects and lead VRP initiatives to defend billions of Android devices worldwide.

This role focuses on building AI/LLM-driven security tooling, triaging vulnerabilities, and collaborating with product teams to deploy robust mitigations. A strong Android security foundation and coding experience are essential.

Qualifications

  • Bachelor's degree or equivalent practical experience.
  • 2 years of experience with security assessments, penetration testing, or vulnerability research on the Android platform or Android applications.
  • 2 years of experience with security engineering, computer and network security and security protocols.
  • 2 years of coding experience in one or more general purpose languages.

Responsibilities

  • Build cross-functional AI and Large Language Model (LLM) tooling to scale advanced vulnerability research, defensive engineering, and mitigation strategies across the organization.
  • Participate in the Android and Device VRP program in analyzing and triaging incoming Vulnerabilities, working with cross-functional teams for vulnerability management and tool building, while proactively incorporating AI/LLMs into our VRP pipeline to improve efficiency.
  • Conduct deep-dive security research into Android vulnerabilities and threat vectors, converting VRP reports into prioritized platform mitigation solutions and partner with Product/Feature teams to land them.
  • Embed security by design through providing expert product security consultation and conducting comprehensive security design reviews for new Android features.

Skills

Android security testing
Security engineering
Vulnerability research
General purpose programming
AI/LLM tooling

Education

Bachelor's degree or equivalent

Job description

In accordance with Washington state law, we are highlighting our comprehensive benefits package, which is available to all eligible US based employees. Benefits for this role include:

  • Health, dental, vision, life, disability insurance
  • Retirement Benefits: 401(k) with company match
  • Paid Time Off: 20 days of vacation per year, accruing at a rate of 6.15 hours per pay period for the first five years of employment
  • Sick Time: 40 hours/year (increased to 69 hours/year for Seattle) including 5 discretionary sick days per instance
  • Maternity Leave (Short-Term Disability + Baby Bonding): 28-30 weeks
  • Baby Bonding Leave: 18 weeks
  • Holidays: 13 paid days per year

Note: By applying to this position you will have an opportunity to share your preferred working location from the following: New York, NY, USA; Kirkland, WA, USA.

Minimum qualifications
  • Bachelor's degree or equivalent practical experience.
  • 2 years of experience with security assessments, penetration testing, or vulnerability research on the Android platform or Android applications.
  • 2 years of experience with security engineering, computer and network security and security protocols.
  • 2 years of coding experience in one or more general purpose languages.
Preferred qualifications
  • Experience designing and building LLM-based agentic workflows, frameworks, or automation tools specifically targeted at vulnerability research and remediation.
  • Direct experience participating in, triaging, or receiving rewards from high-impact Vulnerability Reward Programs (VRPs).
  • Experience in Android platform security research, as demonstrated by public CVEs, published whitepapers, or presentations at reputable security conferences (e.g., DEF CON, etc.).
  • Familiarity with Artificial Intelligence (AI) and Large Language Model (LLM) concepts, with a demonstrated interest in applying them to security domains.
  • Foundational understanding of the Android operating system architecture, security model, and common attack surfaces.
About The Job

In this role, you will join the Android Product Security Engineering (APSE) a cross-functional team tasked with ensuring Android is the most secure and defended operating system in the world, protecting the entire ecosystem of three billion devices. You will achieve this by collaborating with internal partners across Android Security, Development, and Partner Engineering, as well as stakeholders outside of Android such as Chrome, and engage with a vast network of external partners, including SoC manufacturers and telecom carriers. You will secure this ecosystem by leading the industry-defining Android Vulnerability Reward Program (VRP) and pioneering AI-driven security engineering projects to drive advanced vulnerability research and mitigation at scale.

As a Security Engineer, you will play a pivotal role in enhancing the Android ecosystem's security posture, focusing heavily on driving AI-powered security innovation alongside operational vulnerability response.

In this role, you will build AI/LLM-driven Security Engineering projects, rather than just streamlining existing pipelines, build and deploy cross-functional AI tooling designed to proactively scale in-depth Android vulnerability research and automate complex mitigation strategies, as these tools require deep domain expertise to build effectively, the engineer is expected to have a strong, foundational understanding of Android threat vectors and attack surfaces.

You will actively participate in the Android Vulnerability Reward Program (VRP) by participating in the triage rotations and engaging with the external researcher community. You will apply platform expertise to conduct comprehensive security research, respond to vulnerabilities in both pre-release and in-market Android products, and partner directly with feature teams to implement robust mitigation solutions.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US: $147000 - $210000 (USD) + 15% bonus target + equity + benefits

Responsibilities
  • Build cross-functional AI and Large Language Model (LLM) tooling to scale advanced vulnerability research, defensive engineering, and mitigation strategies across the organization.
  • Participate in the Android and Device VRP program in analyzing and triaging incoming Vulnerabilities, working with cross-functional teams for vulnerability management and tool building, while proactively incorporating AI/LLMs into our VRP pipeline to improve efficiency.
  • Conduct deep-dive security research into Android vulnerabilities and threat vectors, converting VRP reports into prioritized platform mitigation solutions and partner with Product/Feature teams to land them.
  • Embed security by design through providing expert product security consultation and conducting comprehensive security design reviews for new Android features.

Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer, Android Product Security
Security Engineer, Android Product Security

Google • New York (NY)

On-site
USD 147,000 - 211,000
Security Engineer, Android Product Security
Security Engineer, Android Product Security

Google • Ionia (NY)

On-site
USD 147,000 - 210,000
Staff Security Engineer Manager
Staff Security Engineer Manager

Google • New York (NY)

On-site
USD 207,000 - 301,000
Health insurance
Dental insurance
Vision insurance
+8
Staff Security Engineer Manager
Staff Security Engineer Manager

Google • Kirkland (WA)

On-site
USD 207,000 - 301,000
Health insurance
Retirement plan
PTO 20 days
+4
Senior Security Engineer, Android Anti-Malware
Senior Security Engineer, Android Anti-Malware

Google Inc. • Kirkland (WA)

On-site
USD 174,000 - 252,000
Health insurance
401(k) with company match
Paid time off: 20 days
Staff Security Engineer, Product Security Engineering, Cloud CISO
Staff Security Engineer, Product Security Engineering, Cloud CISO

Google • Kirkland (WA)

On-site
USD 207,000 - 300,000
Health insurance
Dental insurance
Vision insurance
+8
Senior Security Engineer, Security Research
Senior Security Engineer, Security Research

Google Inc. • San Jose (CA)

On-site
USD 207,000 - 300,000
Senior Staff Software Engineer, Reliability and Application Security, Cloud Security
Senior Staff Software Engineer, Reliability and Application Security, Cloud Security

Google • Kirkland (WA)

On-site
USD 262,000 - 364,000
401(k) with company match
Paid time off
Sick time benefits
+3
Senior Security Engineer, Security Research
Senior Security Engineer, Security Research

Google • Town of Montana (WI)

On-site
USD 207,000 - 300,000
Senior Staff Software Engineer, Reliability and Application Security, Cloud Security
Senior Staff Software Engineer, Reliability and Application Security, Cloud Security

Google • Sunnyvale (CA)

On-site
USD 262,000 - 364,000
Health insurance
Retirement benefits (401(k) with match
Paid time off 20 days/year
+4