Principal Engineer, Google Compute Platform Security
Google · United States · Posted 2026-08-31
Job description
Serve as the overall technical authority and executive owner for GCE Platform Security, defining and driving the multi-year security strategy across distributed global control planes and low-level node data planes. Formulate architectural and operational defenses to counter the rapid emergence of autonomous agentic threat vectors and LLM-assisted exploitation tools, establishing automated vulnerability discovery, proactive mitigation frameworks, and rapid incident response capabilities across the fleet. Architect robust, hardware-level defenses and isolation boundaries to eliminate and mitigate hardware CPU vulnerabilities, speculative execution side-channels, transient execution threats, and cross-tenant leakage Lead security defenses and privilege reduction across hypervisor technologies, virtual machine monitors (VMMs), host kernels, and low-level runtimes, implementing sandboxing and defense against virtualization escapes. Drive the architectural outlook for host security and isolation, advancing host deprivileging, zero-trust host architectures, hardware-assisted offloading of security and lifecycle functions.