Security Engineer, Google Threat Intelligence
Core
Produce threat intelligence focusing on serious threats to Google, products, and users, specializing in thwarting government-backed Advanced Persistent Threat (APT) actors.
Role type
Senior threat intelligence analyst (cybersecurity)
Builds
Threat intelligence reports and automated detection solutions for Google's security and abuse teams
Domain
Cybersecurity, Threat Intelligence, APT tracking
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
security assessments, security design reviews, threat modeling, security engineering, computer and network security, security protocols, coding in general purpose languages
Preferred skills
detection engineering, YARA, Snort/Suricata, EDR rule creation, Python, C/C++, scripting languages, reverse engineering, network fundamentals, lateral machine movement analysis, malware persistence mechanisms, covert channels, application security, user authentication, command and control techniques
Technologies
YARA, Snort, Suricata, EDR
Responsibilities
Identify, analyze, and document network signals, malware behaviors, and threat reports related to adversary TTPs; Provide clear, actionable, and structured intelligence to product and security teams; Own the analysis efforts of multiple threat actors and serve as a subject matter expert; Enhance analysis efficiency by conceiving and implementing automation opportunities and developing Proof-of-Concept code
Seniority
Senior, hands-on IC
