Associate Security Analyst, Mandiant Threat Defense
- linkCopy link
- emailEmail a friend
Remote locations: Utah, USA; United States.
Minimum qualifications:
- Bachelor's degree in Cybersecurity, Information Technology, a related technical field, or equivalent practical experience.
- 2 years of experience in a SOC environment or information security role.
- Experience with one or more EDR tools (e.g., Trellix HX, etc.) or NDR tools (e.g., Trellix NX, etc.).
- Experience with malware triage (static and dynamic analysis) or script de-obfuscation.
Preferred qualifications:
- Security certifications such as GCIH, GCFA, GCFR, or GREM.
- 4 years of experience in a SOC environment or a specialized Information Security role.
- Experience leading investigations or participating in response operations for high-severity events.
- Experience in customer service, including the ability to clearly communicate technical findings to stakeholders.
- Proficiency in scripting (e.g., Python, JavaScript, PowerShell).
- Proficiency with AI productivity tools to accelerate incident investigation reporting, or code/script development.
About the job
In this role, your standard working hours will be 9 a.m. - 5 p.m. PT, Monday through Friday.
Responsibilities
- Analyze real-time security events across endpoint, network, and cloud environments using a centralized analyst console and SIEM/Google SecOps platform. Execute basic static and dynamic analysis of suspicious files to determine capabilities.
- Perform host and network forensic analysis to support incident response efforts, understand attacker activity, and assess customer impact.
- Determine the severity, impact, and scope of security incidents and compromises. Isolate compromised hosts and stop lateral movement or ransomware propagation.
- Identify benign patterns (e.g., breach simulations, authorized admin activity) and write logic to suppress them, freeing up the team to focus on threats.
- Contribute to the improvement of YARA-L rules and detection logic based on the changing Threat Landscape.
Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google's Applicant and Candidate Privacy Policy.
Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy, Know your rights: workplace discrimination is illegal, Belonging at Google, and How we hire.
If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form.
Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.
To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.