Offensive Security Engineer, Hardware/Firmware, Cloud CISO

Google Cloud accelerates organizations' digital transformation by leveraging cutting-edge technology and tools.
$136,000 - $200,000
Security
Mid-Level Software Engineer
In-Person
5,000+ Employees
2+ years of experience
Cybersecurity · Cloud

Description For Offensive Security Engineer, Hardware/Firmware, Cloud CISO

Google Cloud is seeking an Offensive Security Engineer specializing in Hardware/Firmware security for their Cloud CISO organization. This role is part of the Product Security Engineering (PSE) team, specifically within the Off-The-Shelf Hardware Security team. The mission is to protect the world's devices against all hardware and firmware security threats.

As an Offensive Security Engineer, you'll be responsible for ensuring the security of hardware and firmware used in Google Cloud products. Your work will involve conducting security assessments, performing hardware and firmware security reviews, and collaborating with vendors to improve device security.

Key responsibilities include:

  • Identifying and reviewing critical hardware/firmware devices
  • Conducting security assessments on various devices (e.g., HSMs, Servers, Switches, SSDs)
  • Presenting risk findings and mitigation recommendations to leadership
  • Informing vendors about hardware and firmware vulnerabilities
  • Collaborating with device vendors to advocate for necessary security improvements

The ideal candidate should have a strong background in security engineering, with experience in hardware and firmware security. You should be comfortable with coding, security protocols, and have the ability to perform security assessments and threat modeling.

Google Cloud offers a competitive salary range of $136,000-$200,000, plus bonus, equity, and benefits. This is an excellent opportunity to work on cutting-edge security challenges and contribute to protecting Google Cloud's infrastructure and customers worldwide.

Join Google Cloud and be part of a team that's dedicated to creating safer systems and protecting against hardware and firmware security threats in the ever-evolving landscape of cloud technology.

Last updated 2 months ago

Responsibilities For Offensive Security Engineer, Hardware/Firmware, Cloud CISO

  • Scope out and identify business critical hardware/firmware devices within Cloud for team review
  • Perform hardware and firmware security review of critical business devices (e.g., HSMs, Servers, Switches, SSDs)
  • Present and campaign the risk findings and risk mitigation recommendations to technical and organizational leadership across different organizations
  • Inform vendors of the hardware and firmware vulnerabilities found in their devices
  • Partner and collaborate with device vendors via regular meetings and emails in order to advocate for necessary design changes to hardware and firmware for long-term improvements

Requirements For Offensive Security Engineer, Hardware/Firmware, Cloud CISO

Python
Java
  • Bachelor's degree or equivalent practical experience
  • 2 years of experience with security assessments or security design reviews or threat modeling
  • 2 years of experience with security engineering, computer and network security and security protocols
  • 2 years of coding experience in one or more general purpose languages
  • Experience with hardware and firmware security

Benefits For Offensive Security Engineer, Hardware/Firmware, Cloud CISO

Equity
Medical Insurance
  • Equity
  • Medical Insurance
  • Bonus

Interested in this job?

Jobs Related To Google Offensive Security Engineer, Hardware/Firmware, Cloud CISO

Technical Program Manager II, Security, CISO

Technical Program Manager position at Google focusing on security and risk management in the Cloud CISO organization.

Regional Operations Manager, Trust and Safety Compute (Vietnamese, English)

Lead Trust and Safety operations for Google Play and Android in APAC region, managing policy implementation and cross-functional collaboration.

Data Center Security Manager

Lead data center security operations at Google, managing vendors, implementing security policies, and protecting critical infrastructure in Berlin.

Technical Program Manager II, Compliance, CISO

Technical Program Manager II position at Google Cloud focusing on compliance and security, managing cross-functional projects and driving security initiatives.

Regional Operations Manager, Trust & Safety, Compute

Lead Trust & Safety operations for Google Play, managing policy issues, driving initiatives, and ensuring platform integrity while working with critical developers and cross-functional teams.