Google logo

Senior Staff Security Researcher, Device Security Tech Lead

Google

About the Role

As a Senior Staff Security Researcher, Device Security Tech Lead at Google, you will be at the forefront of ensuring the security of Google's devices and services. You will lead technical engagements focused on identifying novel attack vectors and vulnerabilities, and developing exploits for on-device targets. Your role will involve setting the technical direction for vulnerability research and exploit development programs, covering a range of Made-by-Google device product lines including phones, tablets, wearables, and more.

Key Responsibilities

  • Develop risk-driven offensive security project roadmaps that balance new products under development and products that have already launched.
  • Lead offensive security engagements with participants from product teams, platform teams, and security assurance groups.
  • Conduct security research to discover novel attack vectors and vulnerabilities, and demonstrate their exploitability.
  • Collaborate with other offensive security teams at Google and with external partners.
  • Drive fundamental improvements to products and platforms to address exposure, risk threats, and vulnerability patterns.
  • Define the technical ideas of the offensive security program and mentor members of the offensive security team.

Minimum Qualifications

  • Master’s degree in computer science, engineering, or equivalent practical experience.
  • 10 years of experience as a security engineer or researcher in areas like microchip security, BootROM, bootloaders, TEE, Android, Linux kernel, or wireless communications.
  • 5 years of experience as a security engineer or research lead with an organizational or industry-building impact.

Preferred Qualifications

  • Experience as a finder of numerous CVEs, successful participation in Capture the Flag events (CTF), Vulnerability Rewards Programs (VRP), or security competitions such as Pwn2Own.
  • Experience in a leadership role, guiding and developing technical talent.
  • Experience presenting novel security research at conferences, being a keynote speaker, or giving industry-recognized security training.
  • Knowledge of software hardening technologies and an ability to identify deficiencies in them and recommend their proper use.

About Google

Google's mission is to organize the world's information and make it universally accessible and useful. Our Devices & Services team combines the best of Google AI, Software, and Hardware to create radically helpful experiences for users. We research, design, and develop new technologies and hardware to make our user's interaction with computing faster, seamless, and more powerful.

Compensation

The US base salary range for this full-time position is $237,000-$337,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training.

Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, or Veteran status.

Benefits
Extracted with AI

  • Bonus
  • Equity
  • Health Insurance
  • Paid Vacation

Similar jobs

Last update: 23 minutes ago

Google Cloud - Minnesota logo
Google Cloud - Minnesota

Senior Tech Lead, Product Security Engineering

Senior Tech Lead in Product Security Engineering at Google Cloud, focusing on system security, risk analysis, and team leadership.

Google Cloud - Minnesota logo
Google Cloud - Minnesota

Tech Lead, Product Security Engineering

Lead product security engineering at Google Cloud, ensuring secure product development and infrastructure security.

Semgrep logo
Semgrep

Security Researcher Intern

Join Semgrep as a Security Researcher Intern to gain hands-on experience in security research and engineering.

Google logo
Google

Senior Software Engineer, Google Cloud Computing

Join Google Cloud as a Senior Software Engineer to drive cloud platform innovations using Python, Java, and Angular.

Google logo
Google

Tech Lead, Software Engineering, ChromeOS Developer AI

Lead AI development for ChromeOS at Google, focusing on embedded systems, Android, and performance engineering.

Google logo
Google

Early Career Software Engineer

Join Google as an Early Career Software Engineer in Seattle, WA. Develop cutting-edge technologies across a variety of platforms.

Google logo
Google

Senior Software Engineer, Google Ads

Senior Software Engineer role at Google Ads, focusing on large scale systems and software development.

Lakera logo
Lakera

Lead Research Engineer - GenAI

Lead groundbreaking AI safety and security developments as a Lead Research Engineer at Lakera in San Francisco.

Google logo
Google

Software Developer II, Site Reliability Engineering, Google Cloud

Join Google Cloud as a Software Developer II in Site Reliability Engineering to build and run large-scale systems.

Google logo
Google

Software Engineer, Google Cloud AI

Join Google Cloud AI as a Software Engineer to develop next-gen technologies in AI, cloud computing, and more.

Meta logo
Meta

Security Engineering Manager, Investigations

Lead a team focused on child safety and human exploitation investigations at Meta, leveraging technology and innovative research.

Google logo
Google

Software Engineer, Gmail Android Development

Join Google as a Software Engineer for Gmail Android Development, focusing on innovative technologies and user experience.

Google logo
Google

Software Engineer III, Infrastructure, Android

Join Google as a Software Engineer III in Infrastructure, focusing on Android. Work on large-scale systems in San Jose, CA.

Google logo
Google

Senior Software Engineer, Full Stack

Join Google Ads as a Senior Software Engineer, Full Stack, to develop next-gen technologies. Requires 5+ years in software development.

Google logo
Google

Software Engineer AI/ML, Devices and Services

Join Google as a Software Engineer AI/ML to develop systems for devices like Pixel and Nest, enhancing supply chain processes.

Google logo
Google

Software Engineer, Infrastructure, Google Cloud Storage

Join Google as a Software Engineer in Infrastructure for Google Cloud Storage, focusing on distributed systems and data structures.

Microsoft logo
Microsoft

Software Engineer II - Hardware Security

Join Microsoft as a Software Engineer II focusing on hardware security, working remotely to innovate and secure billions of devices.

Google logo
Google

Staff Software Engineer, ChromeOS Developer AI

Staff Software Engineer role at Google, focusing on AI and ChromeOS development in Cracow, Poland.

Cisco logo
Cisco

Hardware Security Engineer

Join Cisco as a Hardware Security Engineer to drive security in product development and protect customer data.

Google Cloud - Minnesota logo
Google Cloud - Minnesota

Senior UX Engineer

Join Google as a Senior UX Engineer to create innovative, user-friendly products. Requires expertise in front-end development and UX design.

Google logo
Google

Software Engineer, Node Platform

Join Google as a Software Engineer on the Node Platform team, working with C++ and Go in New York.

Google logo
Google

Principal Software Engineer, Google Compute Engine Control Plane

Join Google as a Principal Software Engineer to lead GCE projects, focusing on cloud computing and AI/ML solutions.

Google Cloud - Minnesota logo
Google Cloud - Minnesota

Senior Software Engineer III, Front End - Google Workspace

Senior Software Engineer III specializing in Front End for Google Workspace in Raleigh, NC. Involves cutting-edge tech & innovation.

Meta logo
Meta

Security Engineering Manager, Investigations

Lead a team focused on investigating threats to user safety, with a focus on child safety and human exploitation at Meta.