← Back to all jobs

Software Engineer, External API Security

Google · United States · Posted 2026-08-12

Apply on the company site →

Job description

Develop and improve AI-assisted API vulnerability scanning systems, framework improvements, and automated launch checkers to proactively identify authorization bypasses. Drive central remediation campaigns to remediate systemic vulnerability classes without putting undue churn onto product teams. Collaborate with core infrastructure and product teams to establish secure-by-default API deployment architectures and to pragmatically reduce risk. Build and maintain infrastructure and automation for security policy enforcement, monitoring, and regression prevention. Analyze emerging authorization bypass patterns and evaluate agent-based AI systems to proactively harden API access controls. Minimum Qualifications: Bachelor's degree or equivalent practical experience. 2 years of experience with software development in one or more programming languages, or 1 year of experience with an advanced degree. 2 years of experience building software for security (e.g., vulnerability analysis, identity and access management). Preferred Qualifications: Experience with agent-based artificial intelligence systems. Experience in software security domains including secure coding practices, vulnerability analysis, or security architecture. Experience designing, building, or securing web APIs and microservices. Experience developing software with one or more general-purpose programming language including Go, Java, or Python. Experience running automated code refactoring or programmatic remediation campaigns across systems.