← Back to jobs

Senior Security Engineer, Google Threat Intelligence Group Threat Analyst

Skills

authenticationautomationcloudcppcybersecurityedrgcpnetwork securityproof of conceptpythonreverse engineeringPythonC++GCP

Description

Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.
  • Identify, analyze, and document network signals, malware behaviors, and threat reports related to trends and developments in adversary tactics, techniques, and procedures (TTPs).
  • Provide clear, actionable, and structured intelligence to product and security teams. Assist in ensuring corporate and production systems are safeguarded.
  • Own the analysis efforts of multiple threat actors, and serve as a subject matter expert on how those actors might impact Google and our users.
  • Enhance analysis efficiency by conceiving and implementing automation opportunities, developing proof-of-concept code, and collaborating with stakeholders to deploy solutions.
  • Be capable of quickly identifying personal and team priorities, and able to work on assignments with minimal supervision while maintaining quality and deadlines.

Minimum qualifications:

  • Bachelor's degree or equivalent practical experience.
  • 5 years of experience with security assessments or security design reviews or threat modeling.
  • 5 years of experience with security engineering, computer and network security and security protocols.
  • 5 years of coding experience in one or more general purpose languages.
  • 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.

Preferred qualifications:

  • 2 years of experience in a threat intelligence, incident response, security operations center, or highly related analyst role.
  • Experience in detection engineering with YARA, Snort/Suricata, EDR rule creation.
  • Experience in Python, C/C++, or scripting languages.
  • Experience in reverse engineering.
  • Strong understanding of network fundamentals, techniques for lateral machine movement, malware persistence mechanisms, covert channels, application security and user authentication, command and control techniques.
  • Strong communication and documentation skills.

Get similar jobs in Switzerland by email

We'll email you when new jobs similar to this one appear.

Similar jobs

Explore more Security Engineer jobs in Switzerland.

No similar openings right now. Refine your search or create an alert above.