The posting
In most instances, this position requires in-person interviews as part of the hiring process.
Minimum qualifications:
- Bachelor's degree or equivalent practical experience.
- 2 years of experience working in one or more of the following areas: cloud security research, network security, intrusion detection system, threat intelligence, or threat detection.
- Experience working with defensive security concepts such as adversity tactics and techniques, frameworks, and logging.
- Experience with networking, core internet protocols, and analyzing malicious network traffic.
Preferred qualifications:
- Experience with host/memory based forensics and detections.
- Very strong communication and documentation skills.
About the job
Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.
Cloud CISO is responsible for ensuring that every Google Cloud product ships as secure as it can be. Cloud CISO owns and drives the product security strategy for Google Cloud. We work with almost every aspect of Google’s infrastructure and on solving truly planet scale infrastructure security problems that have societal level impacts. The Cloud Abuse Security Engineering (CASE) team, within Cloud CISO, safeguards Google, its customers, users, and the internet from threats originating within Google Cloud.
Responsibilities
- Research new detection techniques to prevent and mitigate abusive activities such as outbound security attacks, botnets, DDoS, and other malicious behaviors that violate GCP’s Terms of Service.
- Develop high-fidelity detections to identify malicious activity based on raw network and host-level telemetry.
- Hunt for threats/abusers and respond proactively.
- Create, develop, and manage tools to collect and process abuse reports and threat intelligence data.



