Information Security Engineer (Chrome) - Mountain View
The area: Engineering
Simply put, Google engineers make computers do amazing things. Populated by extraordinarily creative, motivated and talented people, our Engineering team gets excited by developing new applications that really make a difference and are used by millions of people. We're driven by Google's mission to organize the world's information and make it universally accessible and useful. If you seek to tackle such challenges as building a highly scalable computing infrastructure, novel storage systems, innovative user experiences or the next big application that will change the world, then this might be a perfect fit for you.
The role: Information Security Engineer (Chrome)
As an Information Security Engineer working on Google's Chrome technology, you will help us ensure that our related software and infrastructure is designed and implemented with best security practices in mind. You will be performing security audits, risk analysis, application-level vulnerability testing and security code-reviews on a wide variety of Google's products. You will also work closely with Google's Software Engineers to enhance our application security posture. Top candidate will be experts in analyzing software designs and implementations from a security perspective and be able to discover subtle security issues that appear under unexpected threat scenarios.
Responsibilities:
* Perform code audits, black box testing and security design review of diverse Google products and services. * Design and develop tools and technologies to enhance the security of applications and services. * Provide security consultancy and advice to product teams - helping them achieve their design and release objectives. * Conduct security vulnerability research in areas relevant to Google.
Requirements:
* BS in Computer Science or equivalent experience is required; an MSCS is preferred. * At least 4 years of experience in application-level vulnerability testing and code-level security auditing. * A strong foundation in and in-depth technical knowledge of security engineering, computer and network security, authentication, security protocols and applied cryptography. * Extensive experience in web-application security. * Experience with the web security model and web technologies and protocols such as HTTP, HTML and Javascript. * Significant development experience in C++ or Java. * Excellent interpersonal and communication skills.