Note: By applying to this position you will have an opportunity to share your preferred working location from the following: Seattle, WA, USA; Austin, TX, USA; Washington D.C., DC, USA.
Minimum qualifications:
- Bachelor's degree or equivalent practical experience.
- 2 years of experience with security assessments or security design reviews or threat modeling.
- 2 years of experience with security engineering, computer and network security and security protocols.
- 2 years of coding experience in one or more general purpose languages.
Preferred qualifications:
- Experience with writing Python code in production environments.
- Experience working with external parties or in a publicly-facing role.
- Experience with Generative AI or similar AI/ML systems.
- Experience working with product teams to remediate identified issues.
- Experience working in bug bounties.
- Excellent problem-solving and critical thinking skills with attention to detail in an ever-changing environment.
About the job
There's no such thing as a "safe system" - only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers. As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities.You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.
The Vulnerability Rewards Program (VRP) team is responsible for assessing VRP reports, interacting with researchers and product teams, deciding on rewards for reporters, and managing coordinated disclosure of vulnerabilities.
The US base salary range for this full-time position is $136,000-$200,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more aboutbenefits at Google.
Responsibilities
- Manage the day-to-day operations of the Abuse VRP, including triaging incoming reports, ensuring timely assessments, and driving resolutions in collaboration with product teams.
- Foster communication between researchers and product teams, facilitating seamless collaboration and timely vulnerability remediation.
- Evaluate reported vulnerabilities, considering their severity, impact, and exploitability, to determine appropriate rewards in accordance with program guidelines.
- Engage with the VRP community and contribute to cross-team initiatives to enhance the bug bounty experience for all reporters.
- Improve Abuse VRP operations and tooling by refining processes based on operational insights and developing new features to streamline workflows and enhance efficiency.
Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See alsoGoogle's EEO Policy andEEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing ourAccommodations for Applicants form.