Minimum qualifications:
- Bachelor's degree or equivalent practical experience.
- 5 years of experience with security assessments or security design reviews or threat modeling.
- 5 years of experience with security engineering, computer and network security and security protocols.
- 5 years of coding experience in one or more general purpose languages.
- Active US Government Top Secret Security Clearance.
- Experience in Security information and event management (SIEM) event analysis, triage, and investigation.
- Experience in developing technical requirements for Security tooling, ensuring alignment with security objectives and project goals, and experience with agile development methodologies and collaboration tools.
- Experience providing technical guidance and support to analysts.
- Knowledge of security event management, leveraging common support systems (e.g. ServiceNow) to document and manage the lifecycle of an incident.
Want more jobs like this?
Get jobs in Gunnison, CO delivered to your inbox every week.
About the job
Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities.
In this role, you will deploy and manage security tools, develop monitoring strategies, and lead security incident investigations and forensic analysis in Google Cloud Platform (GCP) and Workspace. You'll actively participate in incident response and collaborate with team members to develop and maintain robust security practices and procedures.
Google Public Sector brings the magic of Google to the mission of government and education with solutions purpose-built for enterprises. We focus on helping United States public sector institutions accelerate their digital transformations, and we continue to make significant investments and grow our team to meet the complex needs of local, state and federal government and educational institutions.
Responsibilities
- Collaborate with internal SOC teams and customers to drive cloud security monitoring and incident response.
- Develop and mature incident response protocols tailored for cloud security events, minimizing impact and recovery time.
- Create and refine operational playbooks for cloud security investigations, threat hunting, and incident triage.
- Monitor and analyze cloud security telemetry from SIEM, CASB, CSPM, and other security tools to detect and respond to threats.
- Lead incident response efforts for cloud related security events, conducting thorough analysis and root cause investigations.