Security Platform Engineer, Google Cloud Public Sector
- linkCopy link
- emailEmail a friend
Minimum qualifications:
- Bachelor's degree in Computer Science, Information Security, a related field, or equivalent practical experience.
- 5 years of experience in security engineering, offensive security (Red Team/Purple Team), or platform engineering roles.
- Experience with infrastructure-as-code and GitOps (e.g., Terraform, Helm, ArgoCD) and cloud-native security orchestration.
- Experience with Kubernetes security (e.g., workload isolation, RBAC, network policies) and container orchestration.
- Experience in scripting and development languages (e.g., Python, Go) for building custom security tooling, automation, and exploit Proof-of-Concept (PoCs).
- Active, or the ability to obtain, a Developed Vetting (DV) UK security clearance.
Preferred qualifications:
- Advanced offensive security certifications (e.g., OSCP, OSEP, OSCE, GXPN).
- Experience in conducting full-scope Red Team engagements and Purple Team exercises in cloud-native environments.
- Experience developing custom exploits, adversary emulation scenarios, or security automation frameworks for internal testing.
- Knowledge of cloud-native logging, monitoring, and Security Information and Event Management (SIEM) integration for detecting sophisticated adversary tactics.
- Understanding of Kubernetes attack surfaces, including container escapes, privilege escalation, and lateral movement techniques.
- Current and active UK Developed Vetting (DV) Security Clearance.
About the job
As a part of the UK Security Operations (SecOps) team in Google Public Sector, you will deliver, operate and secure private cloud services. Your aim is to provide the flexibility, reliability, and scalability of public cloud for customers with exceptionally high security requirements that can only be met in a private cloud environment. You will deliver and operate these private cloud deployments for the most critical customers, helping scale, secure and maintain the deployment whilst working closely with Google product teams to continually improve our technology.Responsibilities
- Deploy, configure, and manage cloud security platform tools and technologies, including Security Information and Event Management (SIEM), Intrusion Detection/Prevention Systems (IDS/IPS), and Cloud Workload Protection Platforms (CWPP).
- Develop and implement security monitoring and logging strategies.
- Investigate and analyse security incidents, including identifying root causes, determining the scope of impact, and taking appropriate containment and remediation actions.
- Perform forensic analysis to identify and investigate suspicious activity.
- Automate security tasks and workflows to improve efficiency and effectiveness.
Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google's Applicant and Candidate Privacy Policy.
Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy, Know your rights: workplace discrimination is illegal, Belonging at Google, and How we hire.
If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form.
Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.
To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.
Equity is granted exclusively and discretionarily by Alphabet Inc. on the basis of an agreement concluded between you and Alphabet Inc. Alphabet Inc. is your sole contractual partner with respect to equity grants. GSU grants are not guaranteed, are discretionary, are subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc. stock plan, and your grant agreement. They have no impact on statutory payments. Current or past grants do not confer an acquired right.