Offensive Security Engineering Technical Lead, Device Security
Amsterdam, Netherlands
Minimum qualifications:
- Bachelor's degree in Cyber Security, Computer Science, a related technical field, or equivalent practical experience.
- Experience as a technical lead of a security team.
- Experience as a security engineer or researcher identifying vulnerabilities in device components and hardened attack surfaces using a combination of code and binary review, static and dynamic analysis.
Preferred qualifications:
- Master's degree or PhD in Computer Science with a specialty in security.
- Experience with operating systems and SoC microarchitectural attacks.
- Experience presenting novel security research at top conferences, and participating in Capture the Flag events (CTF), Vulnerability Rewards Programs (VRP), or security events.
- Knowledge of applied cryptography.
- Knowledge in areas such as microchip security, BootROM, bootloaders, TEE, Linux, or wireless communications, both from a hardware and a software perspective.
- Ability to write exploits for vulnerabilities on secured devices (e.g., Android, iOS, Linux or Windows based platforms) and assess the effect of security hardening efforts.
About the job
Security is at the core of Google's design and development process: it is built into the DNA of our products. The same is true of our offices. You're an expert who shares our seriousness about security and our commitment to confidentiality. You'll collaborate with our Facilities Management team to create innovative security strategies, investigate breaches and create risk assessment plans for the future. You believe that providing effective security doesn't come at the expense of customer service - you will be our bodyguard (and our long lost pal).
We collaborate with multiple product development teams on system design, hardening, code analysis, security testing, and other security assurance functions with the goal of minimizing the risk of abuse and increasing the cost of vulnerability exploitation. In addition, we are connected to the security community through our vulnerability rewards programs and conferences.
As an Offensive Security Technical Lead, you will contribute to the definition, planning, and execution of projects within our Device Security team. You will be responsible for the identification of novel attack vectors and the exploitation of vulnerabilities on the device stack of Made-by-Google products, including Pixel Phone and Pixel Watch. Our program’s scope covers system software and System-on-a-Chip (SoC) hardware components, wireless communications, Trusted Execution Environments (TEE), and other critical subsystems. You will influence the team’s goal, direction, and program structure, and help develop the team’s technical talent.The Google Pixel team focuses on designing and delivering the world's most helpful mobile experience. The team works on shaping the future of Pixel devices and services through some of the most advanced designs, techniques, products, and experiences in consumer electronics. This includes bringing together the best of Google’s artificial intelligence, software, and hardware to build global smartphones and create transformative experiences for users across the world.
Responsibilities
- Define our offensive security roadmap in collaboration with engineering peers and program managers balancing internally identified projects and project requests received from other teams.
- Conduct security research to discover novel attack vectors and vulnerabilities and demonstrate their exploitability.
- Create attack plans for collaborative projects (e.g., red-teaming), drive the engagements, and present results to internal and external audiences, as appropriate.
- Initiate collaboration initiatives with other organizations and external partners.
- Influence the team’s goals by aligning our program with technology and security trends in the industry and assist and mentor other offensive security engineers and contribute to their technical growth.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Android Artificial Intelligence Code analysis Computer Science Cryptography CTF Exploits iOS Linux Offensive security PhD Risk assessment SOC Vulnerabilities Windows
Perks/benefits: Conferences Team events
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Senior Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Information Security Specialist jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Cyber Security Specialist jobs
- Open Product Security Engineer jobs
- Open Cybersecurity Analyst jobs
- Open Security Specialist jobs
- Open Chief Information Security Officer jobs
- Open Staff Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Senior Information Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Consultant SOC / CERT H/F jobs
- Open IT Security Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open IT Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open Cybersecurity Specialist jobs
- Open Security Operations Analyst jobs
- Open Sr. Security Engineer jobs
- Open Security Consultant jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open Agile-related jobs
- Open Application security-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open ISO 27001-related jobs
- Open Threat intelligence-related jobs
- Open CISA-related jobs
- Open Analytics-related jobs
- Open IAM-related jobs
- Open Security assessment-related jobs
- Open Malware-related jobs
- Open Java-related jobs
- Open APIs-related jobs
- Open Security Clearance-related jobs
- Open Forensics-related jobs
- Open SaaS-related jobs
- Open CEH-related jobs
- Open EDR-related jobs
- Open IDS-related jobs
- Open DevOps-related jobs
- Open DoD-related jobs