Cyber Defence Analyst, Mandiant

Google
UK
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Languages
English, French

Tech stack

Artificial Intelligence Bioinformatics CompTIA Network+ CompTIA Security+ Cyber Security Information Systems Linux Networking Hardware Python (Programming Language) Windows PowerShell Security Information and Event Management Scripting
+7 more
Google Cloud Cyber Threat Analysis GWAPT Information Technology Cybercrime Cyber Warfare Cisco

Job description

As a Mandiant Strategic Security Consultant, you will lead and support projects on behalf of clients that assess, test, or build their security programs. Project teams may range from 2 to 5 colleagues. Clients will range from start-up companies looking to supplement their security team to companies that need fresh ideas to enhance their perspective on the security program. You will provide guidance and advice to clients on best practices and managing the risks for their security program.

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant’s cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry’s best security validation ensures that Mandiant knows more about today’s advanced threats than anyone., * Identify challenges in customer cyber defence centers and formulate strategies for improvement, plan implementation of improvements, and execute/oversee plans to completion.

  • Conduct real-time analysis using SIEM, endpoint, and networking based technologies with a focus on identifying security events and false positives.
  • Advise on CDC, CSIRT, and SOC Management activities.
  • Research and leverage cybersecurity intelligence sources, attacker techniques, containment methodologies, and remediation processes to improve Security Operations Center (SOC) incident detection and response capabilities.
  • Engage and collaborate with client stakeholders and other groups within the customer environment to drive resolution for security issues.

Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google’s Applicant and Candidate Privacy Policy.

Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google’s EEO Policy, Know your rights: workplace discrimination is illegal, Belonging at Google, and How we hire.

If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form.

Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.

To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.

Requirements

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
  • 3 years of experience assessing and developing cybersecurity solutions and programs across security domains.
  • 3 years of experience in SOC analyst, malware research, threat hunting or similar roles, working with EDR and SIEM technologies., * Certification in one or more of the following: CompTIA Security+, CompTIA Network+, ISC2 (CISSP), SANS-GIAC certification (GSEC, GCIH, GCED, GCFA, GCIA, GNFA, GPEN, GWAPT), CISCO (CCNA), EC-Council (CEH, LPT).
  • Knowledge of scripting languages (i.e. PowerShell and Python).
  • Understanding of security controls for common platforms and devices, including operating systems, Linux and network equipment.
  • Ability to engage and collaborate with client stakeholders and other groups within the customer environment to drive resolution for security issues.
  • Ability to communicate in French fluently as this is a client facing role.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on theguardian.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all