Back to Jobs
G

Security Engineer, Insider and Technology Risk

GooglePosted 1 day ago
Full TimeMid
LocationNew York, New York, United States
Work ArrangementOn-Site
Salary Range$147,000 – $211,000 / year
Experience2-5 years

Job Description

Minimum qualifications:

  • Bachelor's degree or equivalent practical experience.
  • 2 years of experience with security assessments or security design reviews or threat modeling.
  • 2 years of experience with security engineering, computer and network security and security protocols.
  • 2 years of coding experience in one or more general purpose languages.

Preferred qualifications:

  • 5 years of experience in engineering, cybersecurity, technology risk, or security-related roles.
  • Experience in the operationalization or development of scalable solutions and structure within a complex environment.
  • Strong critical thinking and problem-solving skills, with the ability to connect technical or security details to broader risk implications.
  • Strong communication and collaboration skills, with the ability to clearly explain risks and mitigation strategies to technical and non-technical stakeholders.
  • Proficiency in security engineering, cybersecurity principles, problem solving, and analytical/quantitative methods.
  • Comfortable dealing with ambiguity and delivering results in challenging situations.

About the job:

There's no such thing as a "safe system" - only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers. As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.

The Risk and Compliance Programs team is part of the Cloud CISO organization, driving high priority risk management efforts through formalized programs, including insider and technology risk. We are responsible for managing and creating consistent analysis, assessments, controls, and strategies to reduce insider and technology risk across Cloud. Our team is collaborative, innovative, and passionate about security.

Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

The US base salary range for this full-time position is $147,000-$211,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more about benefits at Google.

Responsibilities:

  • Serve as an advisor to Cloud leadership for guidance on insider risk-related questions. Evaluate the security and risk of complex, interconnected products, systems, and services, and drive mitigation and remediation efforts for systemic problems.
  • Apply engineering and technical best practices to design and implement controls, tools, or processes required to solve security problems. Apply principles from information security and risk management domains (e.g., access management, detection and response, system resilience, vulnerability management) to protect systems and data. 
  • Partner with engineering organizations to identify, develop, document, and test controls for design and operating effectiveness, in coordination with the Cloud CISO controls team.
  • Establish and sustain relationships with Cloud CISO and engineering stakeholders at operational and senior leadership levels.
About the Company
G
Google
13 open positions
View all jobs →