Senior Security Engineer, Secure Use - Google
New York, NY
About the Job
Minimum qualifications:
- Bachelor's degree or equivalent practical experience.
- 5 years of experience with security assessments or security design reviews or threat modeling.
- 5 years of experience with security engineering, computer and network security and security protocols.
- 5 years of coding experience in one or more general purpose languages.
- 5 years of experience in Cloud Security.
- 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.
Preferred qualifications:
- Experience with infrastructure as code.
- Knowledge of cloud platforms such as Google Cloud Platform.
About the job
There's no such thing as a "safe system" - only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers. As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities.You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.
Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.Responsibilities
- Build tools to support the detection/remediation of systemic security issues across cloud products.
- Create a solution to detect changes in product code which will result in insecure customer outcomes and ensure products cannot launch in this state. Example: products must not create Security Command Center (SCC) findings with their default values.
- Provide oversight/advisory to cloud product teams to help the remediation of insecure defaults/practices.
- Create Google Cloud resources (best practice guides, diagrams, and Terraform scripts) to solve customer secure deployment challenges.
- Work with customers to intake/address security concerns and translate to solutions.