Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program

Socket.dev

Sunnyvale (CA)

On-site

USD 174,000 - 252,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Google Cloud Security Engineering within the Cloud CISO organization is responsible for ensuring every product Cloud ships securely and for increasing the assurance levels of security in the infrastructure underlying all our products. As an Information Security Engineer, you will help design and implement software and systems to the highest security standards.

You will work with external security researchers from the Cloud Vulnerability Rewards Program (Cloud VRP) and perform technical security

Qualifications

  • Must have a Bachelor's degree or equivalent practical experience.
  • 5 years of experience with security engineering, computer and network security and security protocols.
  • 5 years of experience with security assessments, security design reviews, or threat modeling.
  • 5 years of coding experience in one or more general purpose languages.
  • 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.

Responsibilities

  • Conduct security assessments of Cloud security and vulnerability reports to assess risk and impact and ensure prompt and proper mitigations with key stakeholders.
  • Manage multiple cross-functional efforts and escalations simultaneously with engaged priorities.
  • Serve as the go-to person for broad security domains and understand the interplay of threats between systems and services.
  • Investigate impact to Google Cloud and its customers to determine if new detection or compromise notifications are necessary.
  • Demonstrate consistent ability to drive positive change in alignment with business objectives, and collaborate with teams to uplift overarching security capabilities.

Skills

Security engineering
Security protocols
Threat modeling
Coding in general purpose languages
Technical leadership

Education

Bachelor's degree or equivalent practical experience

Job description

Minimum qualifications:
  • Bachelor's degree or equivalent practical experience.
  • 5 years of experience with security engineering, computer and network security and security protocols.
  • 5 years of experience with security assessments, security design reviews, or threat modeling.
  • 5 years of coding experience in one or more general purpose languages.
  • 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.
Preferred qualifications:
  • 8 years of experience with vulnerability identification, assessment, and management.
  • Technical background with experience in security operations, systems administration, digital forensics, security engineering, vulnerability assessments, etc.
  • Ability to demonstrate composure and level-headedness during security escalations and lead teams towards timely resolution.
  • Leadership of various teams through ambiguous situations with influence without authority.
  • Demonstration of strong writing skills, and an ability to present to various types of audiences both external and internal.
  • Exceptional communication skills with a proven ability to articulate complex risks to stakeholders at all levels using a data-driven.
About the job:

There's no such thing as a "safe system" - only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers. As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.

Google Cloud Security Engineering within the Cloud CISO organization is responsible for ensuring every product Cloud ships securely and for increasing the assurance levels of security in the infrastructure underlying all our products. As an Information Security Engineer, you will help design and implement software and systems to the highest security standards. You will work with external security researchers from the Google Cloud Vulnerability Rewards Program (Cloud VRP) and perform technical security assessments, code reviews and vulnerability testing to highlight risk, helping Google teams and partners to improve security, and work on a wide variety of Cloud products, software designs, and technology stacks.

Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US: $174000 - $252000 (USD) + 15% bonus target + equity + benefits

Learn more about benefits at Google.

Responsibilities:
  • Conduct security assessments of Cloud security and vulnerability reports to assess risk and impact and ensure prompt and proper mitigations with key stakeholders.
  • Manage multiple cross-functional efforts and escalations simultaneously with engaged priorities. Solve complex technical problems that involve independent but interconnected components.
  • Serve as the go-to person for broad security domains and understand the interplay of threats between systems and services. Build and maintain strong relationships with stakeholders across Google, including legal, engineering, and communications teams.
  • Investigate impact to Google Cloud and its customers to determine if new detection or compromise notifications are necessary.
  • Demonstrate consistent ability to drive positive change in alignment with business objectives, and collaborate with teams to uplift overarching security capabilities. Demonstrate exceptional judgment in balancing security and business needs in owned areas, considering both risk and impact.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Engineer, Product Security Engineering, Cloud CISO
Staff Security Engineer, Product Security Engineering, Cloud CISO

Google • New York (NY)

On-site
USD 207,000 - 300,000
Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program
Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program

Google • Sunnyvale (CA)

On-site
USD 174,000 - 252,000
Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program
Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program

Google Inc. • Sunnyvale (CA)

On-site
USD 180,000 - 240,000
Staff Security Engineer, Product Security Engineering, Cloud CISO
Staff Security Engineer, Product Security Engineering, Cloud CISO

Google • United States

On-site
USD 207,000 - 300,000
Health insurance
Dental & vision coverage
401(k) with company match
+3
Staff Security Engineer, Product Security Engineering, Cloud CISO
Staff Security Engineer, Product Security Engineering, Cloud CISO

Google • Kirkland (WA)

On-site
USD 207,000 - 300,000
Health insurance
Dental insurance
Vision insurance
+8
Security Engineer II, Hybrid Cloud Guidelines
Security Engineer II, Hybrid Cloud Guidelines

Socket.dev • Seattle (WA)

On-site
USD 123,000 - 174,000
Staff Security Engineer, Network Security Engineering
Staff Security Engineer, Network Security Engineering

Google • United States

On-site
USD 207,000 - 301,000
Health, Dental, Vision, Life, Disaster
401(k) with company match
20 days vacation per year
+4
Senior Security Engineer, Product Security Engineering, Cloud CISO
Senior Security Engineer, Product Security Engineering, Cloud CISO

Google • United States

On-site
USD 174,000 - 253,000
Health, dental, vision, life
401(k) with company match
Paid time off
+1
Security Engineer II, Hybrid Cloud Guidelines
Security Engineer II, Hybrid Cloud Guidelines

Google • San Jose (CA)

On-site
USD 123,000 - 174,000
Staff Security Engineer, Product Security Engineering, Cloud CISO
Staff Security Engineer, Product Security Engineering, Cloud CISO

Google Inc. • New York (NY)

Hybrid
USD 207,000 - 300,000
Health & life insurance
401(k) with company match
Paid time off
+3