March 30, 2025

Senior Security Engineer, Google Distributed Cloud, Compliance

Senior • On-site

$166,000 - $244,000/yr

Sunnyvale, CA

Minimum qualifications:

  • Bachelor's degree or equivalent practical experience.
  • 5 years of experience with security assessments or security design reviews or threat modeling.
  • 5 years of experience with security engineering, computer and network security and security protocols.
  • 5 years of coding experience in one or more general purpose languages.
  • 2 years of experience with security compliance.
  • 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.

Preferred qualifications:

  • 2 years of experience with Cloud Security.
  • Experience with security controls.

About the job

There's no such thing as a "safe system" - only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers. As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.

Google Distributed Cloud air-gapped is an offering designed as a converged hardware + software solution for customers who want the benefits of Google Cloud on premises. GDC-ag will include dedicated hardware, operating systems, selected first-party Google Cloud Platform (GCP) services, and third-party services. This enables a shorter (and more cost effective) time to market for customers and finally enables us to deliver SLA’s on reliability, scalability, performance and operations.

GDC-ag goals customers who want to use hyperscale Cloud to drive operational efficiency and business innovation/agility while also retaining some workloads on premises (or on a local third-party managed infrastructure) in tightly controlled environments due to regulations/policies and geopolitical reasons. To serve these workloads, customers want a managed offering that provides a consistent development and operational experience with GCP and extends into virtually any datacenter, co-location space, on-premises facility, and which is operated by the customer directly or by a service provider.Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

The US base salary range for this full-time position is $166,000-$244,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more about benefits at Google.

Responsibilities

  • Review requirements changes across relevant regulatory frameworks and technical standards and determine their applicability to Google Data Centers (GDC).
  • Identify opportunities for compliance process improvements, initiate and drive engineering projects for their implementation (monitoring solutions, audit tooling, reporting and alerting, generations and collection of audit evidence).
  • Perform design reviews and advise engineering and compliance teams on compliant and secure implementation options.
  • Develop an understanding of compliance requirements across many different compliance regimes: commercial, U.S. government, foreign governments, ISO, and more.
  • Support incident and vulnerability response in collaboration with other products and security team at Google.