Staff Security Engineer, Security Research

Google

Town of Montana (WI)

On-site

USD 207,000 - 300,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Google's Security Research team seeks a Staff Security Engineer to advance vulnerability research, exploit development, and secure software across platforms. Based in San Jose, CA, you will collaborate with software and network security engineers to identify and mitigate high‑impact risks.

You will own complex incidents, publish findings, and drive defenses with scalable tooling. Must have 8+ years in security design, assessments, threat modeling, and coding in general‑purpose languages.

Qualifications

  • Bachelor's degree or equivalent practical experience.
  • 8 years of security assessments, design reviews or threat modeling.
  • 8 years of security engineering, computer and network security.
  • 8 years of coding in one or more general purpose languages.
  • 3 years of leading teams in a technical capacity or technical risk analysis.

Responsibilities

  • Conduct vulnerability research and exploit development, specifically in iOS, MacOS and XNU.
  • Create tools and infrastructure that enables the team to scale up our research efforts.
  • Engage the wider defensive community by publishing your results.
  • Work with other security engineers on the analysis of, and response to vulnerabilities reported by other parties.

Skills

Security assessments
Security design reviews
Threat modeling
Security engineering
Coding experience
Team leadership

Education

Bachelor's degree or equivalent practical experience

Job description

Staff Security Engineer, Security Research

Location: San Jose, CA, USA

Experience Level: Advanced

Minimum qualifications:

  • Bachelor's degree or equivalent practical experience.
  • 8 years of experience with security assessments or security design reviews or threat modeling.
  • 8 years of experience with security engineering, computer and network security and security protocols.
  • 8 years of coding experience in one or more general purpose languages.
  • 3 years of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.

Preferred qualifications:

  • A track record of excellent published security research.
  • The ability to demonstrate significant depth of understanding in one or more vulnerability research security fields.

About the job

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

There's no such thing as a safe system, only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers.

As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities. You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.

We build tooling to scale security research and create new methodologies for discovering high impact security vulnerabilities. We also use in-house exploit development to provide relevant and actionable guidance for long-term defenses and mitigations, and engage in non-technical work such as driving improvements to industry security processes and best practices.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US Salary Range: $207,000 - $300,000 (USD) + 20% bonus target + equity + benefits

Responsibilities

  • Conduct vulnerability research and exploit development, specifically in (but not limited to) iOS, MacOS and XNU.
  • Create tools and infrastructure that enables the team to scale up our research efforts.
  • Engage the wider defensive community by publishing your results.
  • Work with other security engineers on the analysis of, and response to vulnerabilities reported by other parties.

Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google's Applicant and Candidate Privacy Policy.

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy , Know your rights: workplace discrimination is illegal , Belonging at Google , and How we hire.

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

Equity is granted exclusively and discretionarily by Alphabet Inc. on the basis of an agreement concluded between you and Alphabet Inc. Alphabet Inc. is your sole contractual partner with respect to equity grants. GSU grants are not guaranteed, are discretionary, are subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc. stock plan, and your grant agreement. They have no impact on statutory payments. Current or past grants do not confer an acquired right.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer, Security Research
Senior Security Engineer, Security Research

Google • Town of Montana (WI)

On-site
USD 207,000 - 300,000
Staff Security Engineer, Security Research
Staff Security Engineer, Security Research

Google Inc. • San Jose (CA)

On-site
USD 207,000 - 300,000
Google benefits
Senior Security Engineer, Security Research
Senior Security Engineer, Security Research

Google Inc. • San Jose (CA)

On-site
USD 207,000 - 300,000
Senior Security Engineer, Network Security Engineering
Senior Security Engineer, Network Security Engineering

Google • United States

On-site
USD 174,000 - 252,000
Health Insurance
Dental Insurance
Vision Insurance
+8
Security Engineering Manager, Silicon Software
Security Engineering Manager, Silicon Software

Google Inc. • Mountain View (CA)

On-site
USD 207,000 - 300,000
Equity
Bonus target
Senior Security Engineer, Digital Forensics
Senior Security Engineer, Digital Forensics

Google • New York (NY)

On-site
USD 174,000 - 252,000
Security Engineer, Android Product Security
Security Engineer, Android Product Security

Google • Ionia (NY)

On-site
USD 147,000 - 210,000
Senior Security Engineer, National Security, Google Public Sector
Senior Security Engineer, National Security, Google Public Sector

Google Inc. • Dayton (OH)

On-site
USD 174,000 - 252,000
Equity
Bonus target
Senior Security Engineer, Access Security
Senior Security Engineer, Access Security

Google • Ionia (NY)

On-site
USD 174,000 - 253,000
Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program
Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program

Google • Sunnyvale (CA)

On-site
USD 174,000 - 252,000