Principal Strategic Application Security Consultant, Mandiant, Google Cloud

Google LLC
United States
17 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$168,000.0 - $243,000.0
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Cloud Computing Cloud Computing Security Cyber Security Information Systems Python (Programming Language) Cloud Services Secure Coding Software Engineering Google Cloud Cloud Platform System Software Security
+3 more
Technical Debt Information Technology Devsecops

Job description

  • Utilize broad application security expertise to separately own, scope, and lead complex customer-facing engagements as a Principal Application Security Consultant, trusted project owner, and industry specialist.
  • Direct cross-functional teams to architect and drive scalable, measurable security risk reduction across application and cloud environments, leveraging investigative systems thinking and advanced security telemetry data for enterprise-level decision-making.
  • Influence and secure alignment with director and C-suite level stakeholders regarding macro risk priorities, security infrastructure transformations, and systemic technical debt reduction, driving change management initiatives and secure-by-design orchestration.
  • Oversee secure code reviews, mentor junior team members on mitigating complex or ambiguous vulnerabilities, and review project deliverables, leveraging advanced knowledge of modern development languages (e.g., Python, Java) while designing long-term product strategy to optimize organizational AppSec and DevSecOps maturity.

Requirements

Experience owning outcomes and decision making, solving ambiguous problems and influencing stakeholders; deep expertise in domain., * Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience.

  • 8 years of experience with application information security, infrastructure, software, or platforms within cloud services.
  • 8 years of experience with cybersecurity risk management, threat identification, or security solution development.
  • Ability to travel up to 30% of the time., * Certifications related to specific cloud platforms.
  • 4 years of experience Application development, leading application/software projects and customer relationships while working cross-functionally in a large organization.
  • Experience implementing industry-leading practices around cyber risks and cloud security for clients’ cloud security frameworks using industry standards.
  • Experience with cloud governance, with the ability to convey governance principles to cloud computing in terms of policies.
  • Excellent time and project management skills.

About the company

The Mandiant Strategic team helps clients reduce business risk by strengthening their cybersecurity programs. We streamline security efforts, prioritize risk mitigation, and drive continuous improvement across the entire security landscape. This includes application security (AppSec) and secure software development lifecycle (SDLC) practices. We support clients with incident response recovery, cyber program transformations, and comprehensive security assessments covering infrastructure, applications, and cloud environments.

As an Application Security Consultant, you will own a workstream, acting as a trusted advisor and driving client objectives. We’re a team combining cybersecurity expertise, agile principles, and project management to deliver impactful and lasting improvements to our external clients’ security posture. You will act as an executive customer-facing leader driving application security engagements for our enterprise clients.Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant’s cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry’s best security validation ensures that Mandiant knows more about today’s advanced threats than anyone.Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US: $168000 - $243000 (USD) + 20% bonus target + equity + benefits, Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See alsoGoogle’s EEO Policy (https://www.google.com/about/careers/applications/eeo/) ,Know your rights: workplace discrimination is illegal (https://careers.google.com/jobs/dist/legal/EEOC_KnowYourRights_10_20.pdf) ,Belonging at Google (https://about.google/belonging/) , andHow we hire (https://careers.google.com/how-we-hire/) .

If you have a need that requires accommodation, please let us know by completing ourAccommodations for Applicants form (https://goo.gl/forms/aBt6Pu71i1kzpLHe2) .

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:06 min

High-paying roles driven by Google Cloud certifications

Asrar Asrar · World Congress 2024

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

Videos

See all

Related articles

See all