Security Consultant, Security Transformation Services
- linkCopy link
- emailEmail a friend
Minimum qualifications:
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity or a related technical field, or equivalent practical experience.
- 5 years of experience in information security, with 3 years of experience in cloud security.
- Experience managing Wiz, or equivalent CSPM, across GCP or equivalent.
- Experience using Python.
Preferred qualifications:
- Experience with end-to-end attack lifecycle and TTPs (Tactics, Techniques, and Procedures).
- Experience supporting incident response efforts within cloud environments, specifically using CSPM data to provide context during an investigation.
- Understanding of zero trust, Identity and Access Management (IAM), and container security, with the ability to implement Center for Internet Security (CIS), National Institute of Standards and Technology (NIST), and Payment Card Industry Data Security Standard (PCI-DSS) frameworks.
- Ability to communicate technical risks to executives, manage projects, produce reports, draft approach papers, while creating custom dashboards to demonstrate security posture improvements.
About the job
Mandiant Security Transformation Services (STS) helps organizations build an effective security operations program that minimizes organizational risk and reduces the impact of security breaches.With targeted focus in on-prem and cloud architecture, our consultants work from initial assessment, on-site workshops to explore clients on-prem and cloud environment, configuration review of security controls, to detailed practical technical recommendations to harden the on-prem and cloud environment, enhance visibility and detection, and improve processes to reduce the risk of compromise.
Responsibilities
- Serve as the embedded subject matter expert, integrating multi-cloud environments into the Wiz platform to ensure comprehensive asset visibility and effective policy configuration.
- Collaborate with SOC and Cloud Engineering teams to define automated remediation responses, tune misconfiguration detection rules, and integrate Cloud security posture management (CSPM) alerts into existing SIEM, SOAR, and ticketing workflows.
- Configure and manage automated compliance checks against industry-standard frameworks (CIS Benchmarks, NIST, PCI-DSS, GDPR) and translate governance principles into technical rule sets.
- Conduct in-depth security posture reviews, delivering technical reports and executive dashboards that translate complex findings into actionable remediation steps.
- Travel up to 50% as required by client engagement.
Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google's Applicant and Candidate Privacy Policy.
Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy, Know your rights: workplace discrimination is illegal, Belonging at Google, and How we hire.
If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form.
Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.
To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.