Google

Cloud Abuse Security Engineer

Google Zurich, Zurich, Switzerland

Software Development · 10,001+ employees

2 d ago
security Mid (2-5 yrs) Full-time Switzerland
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The role involves researching and developing high-fidelity detection techniques to mitigate abusive activities like botnets and DDoS attacks within Google Cloud. You will also hunt for threats, respond to security incidents, and manage tools for processing abuse reports and threat intelligence.

What they look for

Cloud security Network security Intrusion detection Threat intelligence Threat detection Adversity tactics Logging Networking Internet protocols Malicious traffic analysis Host forensics Memory forensics DDoS mitigation Botnet detection Telemetry analysis

Requirements

Candidates must have a bachelor's degree and at least 2 years of experience in cloud security, network security, or threat detection. Proficiency in defensive security frameworks, networking protocols, and analyzing malicious traffic is required.

Full description

Minimum qualifications:

  • Bachelor's degree or equivalent practical experience.
  • 2 years of experience working in one or more of the following areas: cloud security research, network security, intrusion detection system, threat intelligence, or threat detection.
  • Experience working with defensive security concepts such as adversity tactics and techniques, frameworks, and logging.
  • Experience with networking, core internet protocols, and analyzing malicious network traffic.

Preferred qualifications:

  • Experience with host/memory based forensics and detections.
  • Very strong communication and documentation skills.

About the job:

Our Security team works to create and maintain the safest operating environment for Google's users and developers. Security Engineers work with network equipment and actively monitor our systems for attacks and intrusions. In this role, you will also work with software engineers to proactively identify and fix security flaws and vulnerabilities. Cloud CISO is responsible for ensuring that every Google Cloud product ships as secure as it can be. Cloud CISO owns and drives the product security strategy for Google Cloud. We work with almost every aspect of Google’s infrastructure and on solving truly planet scale infrastructure security problems that have societal level impacts. The Cloud Abuse Security Engineering (CASE) team, within Cloud CISO, safeguards Google, its customers, users, and the internet from threats originating within Google Cloud.

Responsibilities:

  • Research new detection techniques to prevent and mitigate abusive activities such as outbound security attacks, botnets, DDoS, and other malicious behaviors that violate GCP’s Terms of Service.
  • Develop high-fidelity detections to identify malicious activity based on raw network and host-level telemetry.
  • Hunt for threats/abusers and respond proactively.
  • Create, develop, and manage tools to collect and process abuse reports and threat intelligence data.

Similar roles