Senior Security Engineer, Cloud Red Team, Cloud CISO

Google
Zürich, Switzerland
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
CHF 253K

Job location

Zürich, Switzerland

Tech stack

Artificial Intelligence
Software System Penetration Testing
Bash
Cloud Computing
Cloud Database
Networking Hardware
Python
Cloud Services
Red Team (Cyber Security)
Cloud Platform System
Software Security
Build Tools
Devsecops
Vulnerability Analysis
Go
Programming Languages

Job description

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

As a part of the Product Security Engineering team within the Cloud CISO organization, you will be responsible for helping ensure every product in Cloud is as secure as it can be, and increasing the security in the infrastructure underlying all our products.

As a part of the Cloud Red Team, your mission is to evaluate our ability to detect and respond to known and unknown threats by simulating real-world adversaries that aim to compromise and persist in Cloud's infrastructure. In short: Hack Cloud to make hacking Cloud harder.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US: $174000 - $253000 (USD) + 15% bonus target + equity + benefits, * Define and maintain the roadmap for one of the programs within Cloud Red Team, while collaborating within a highly-skilled team to plan and execute attacks against Cloud's products, services, and infrastructure.

  • Build tools and infrastructure to support attacker goals, while identifying vulnerabilities and attack vectors across Cloud services, configurations, and related technologies.
  • Participate in threat modeling exercises to identify potential attack paths and weaknesses in Cloud architectures and deployments.
  • Design realistic and relevant attack scenarios based on current threat intelligence and the specific Cloud environment being assessed.
  • Create reports that capture the insights gained during an attack and present them to a variety of audiences.

Requirements

Experience driving progress, solving problems, and mentoring more junior team members; deeper expertise and applied knowledge within relevant area., * Bachelor's degree or equivalent practical experience.

  • 5 years of experience in a technical security role (e.g., security engineering, security research, DevSecOps, or incident response).
  • Experience with vulnerability assessments and vulnerability exploitation.
  • Experience in security and ethical hacking., * 3 years of offensive security experience (red teaming, vulnerability research, pen testing, etc - not just running tools) in Cloud environment.
  • Experience with Artificial Intelligence.
  • Ability to develop custom exploits, modify existing exploits, and bypass security controls.
  • Fluency in programming languages relevant to security and cloud automation (e.g., Python, Go, Bash).
  • Being able to clearly and concisely articulate complex technical findings, risks, and remediation strategies to both technical and non-technical audiences, both verbally and in writing.

About the company

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See alsoGoogle's EEO Policy (https://www.google.com/about/careers/applications/eeo/) ,Know your rights: workplace discrimination is illegal (https://careers.google.com/jobs/dist/legal/EEOC_KnowYourRights_10_20.pdf) ,Belonging at Google (https://about.google/belonging/) , andHow we hire (https://careers.google.com/how-we-hire/) . If you have a need that requires accommodation, please let us know by completing ourAccommodations for Applicants form (https://goo.gl/forms/aBt6Pu71i1kzpLHe2) . Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting. To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.

Apply for this position