Security Platform Engineer, UK Security Operations

Google
London, UK
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Bash Shell Cloud Computing Cloud Computing Security Cyber Security Computer Networks Intrusion Detection and Prevention Intrusion Detection Systems Python (Programming Language) Role-Based Access Control Prometheus Security Information and Event Management
+15 more
Private Cloud Environment Data Logging Scripting Cloud Platform System Istio Grafana SC Clearance Containerization Kubernetes Infrastructure Automation Frameworks Information Technology Linkerd (Service Mesh) Terraform Data Pipelines Devsecops

Job description

As a part of the UK Security Operations (SecOps) team in Google Public Sector, you will deliver, operate and secure private cloud services. You will aim to provide the flexibility, reliability, and scalability of public cloud for customers with exceptionally high security requirements that can only be met in a private cloud environment. You will deliver and operate these private cloud deployments for the most critical customers, helping scale, secure and maintain the deployment whilst working closely with Google product teams to continually improve our technology.

As a Security Platform Engineer, you will play a critical role in designing, building, and managing cloud-native security platforms with a strong emphasis on Kubernetes-based environments. You will be at the intersection of security and engineering, developing scalable tooling, automating security controls, and enabling robust detection and response capabilities across our cloud infrastructure. In this role, you will require deep technical expertise in cloud environments, Kubernetes security, and platform automation. You will work closely with Incident Response Engineers and platform teams to ensure that security is seamlessly integrated into our infrastructure and operational workflows. Your role will require participation in a rotating on-call schedule outside of core business hours and over the weekend to ensure security incidents can be swiftly resolved.

Responsibilities

  • Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP).
  • Develop and implement security monitoring and logging strategies.
  • Investigate and analyse security incidents, including identifying root causes, determining the scope of impact, and taking appropriate containment and remediation actions.
  • Perform forensic analysis to identify and investigate suspicious activity.
  • Automate security tasks and workflows to improve efficiency and effectiveness.

Requirements

Experience driving progress, solving problems, and mentoring more junior team members; deeper expertise and applied knowledge within relevant area.

info_outline

XMust be a British citizen to meet compliance and security clearance requirements. Office location can either be a satellite site in Wiltshire, or London. This is an on-site position, requiring a standard five day per week schedule in the office, * Bachelor’s degree in Computer Science, Information Security, a related field, or equivalent practical experience.

  • 5 years of experience in security engineering, DevSecOps, or platform engineering roles.
  • Experience with technical troubleshooting and scripting languages such as Python, Go, or Bash.
  • Experience with Kubernetes security, including workload isolation, Role-Based Access Control (RBAC), and network policies, containerisation, orchestration, and Kubernetes observability tools (e.g., Falco, Prometheus, Grafana).
  • Experience with infrastructure-as-code and configuration management tools (e.g., Terraform, Helm, ArgoCD).
  • Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance., * Certifications in Security (e.g., GSEC, CISSP, CISM, OSCP).
  • Experience with Kubernetes threat detection and anomaly detection.
  • Experience with service mesh security concepts (e.g., Istio, Linkerd) and workload identity.
  • Experience in detection engineering, logging pipeline development, or SIEM tuning in containerised environments.
  • Experience in contributing to security-focused open-source projects or internal security platform tooling.

About the company

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See alsoGoogle’s EEO Policy (https://www.google.com/about/careers/applications/eeo/) ,Know your rights: workplace discrimination is illegal (https://careers.google.com/jobs/dist/legal/EEOC_KnowYourRights_10_20.pdf) ,Belonging at Google (https://about.google/belonging/) , andHow we hire (https://careers.google.com/how-we-hire/) .

If you have a need that requires accommodation, please let us know by completing ourAccommodations for Applicants form (https://goo.gl/forms/aBt6Pu71i1kzpLHe2) .

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:53 min

Configuring dynamic proxy updates with Istio Pilot

Jan Mensch Jan Mensch · WWC Europe 2026

10:40 min

Visualizing Prometheus open metrics using custom Grafana dashboards

Stijn Polfliet · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all