Senior Information Security Engineer, Cloud CISO, Vulnerability Rewards Program
Google · United States · Posted 2026-08-21
Job description
Conduct security assessments of Cloud security and vulnerability reports to assess risk and impact and ensure prompt and proper mitigations with key stakeholders. Manage multiple cross-functional efforts and escalations simultaneously with engaged priorities. Solve complex technical problems that involve independent but interconnected components. Serve as the go-to person for broad security domains and understand the interplay of threats between systems and services. Build and maintain strong relationships with stakeholders across Google, including legal, engineering, and communications teams. Investigate impact to Google Cloud and its customers to determine if new detection or compromise notifications are necessary. Demonstrate consistent ability to drive positive change in alignment with business objectives, and collaborate with teams to uplift overarching security capabilities. Demonstrate exceptional judgment in balancing security and business needs in owned areas, considering both risk and impact. Minimum Qualifications: Bachelor's degree or equivalent practical experience. 5 years of experience with security engineering, computer and network security and security protocols. 5 years of experience with security assessments, security design reviews, or threat modeling. 5 years of coding experience in one or more general purpose languages. 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment. Preferred Qualifications: 8 years of experience with vulnerability identification, assessment, and management. Technical background with experience in security operations, systems administration, digital forensics, security engineering, vulnerability assessments, etc. Ability to demonstrate composure and level-headedness during security escalations and lead teams towards timely resolution. Leadership of various teams through ambiguous situations with influence without authority. Demonstration of strong writing skills, and an ability to present to various types of audiences both external and internal. Exceptional communication skills with a proven ability to articulate complex risks to stakeholders at all levels using a data-driven.