Google

Application Security Consultant - Google Cloud, Mandiant Consulting

Google

Riyadh, Riyadh Province, Saudi Arabia · Full Time

Be the first to apply

Experience
3+ yrs
Salary
Openings
1
Posted
12 小时前
Work mode
In office
Education
Bachelor's degree in Cybersecurity or equivalent
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About the Role

As an Application Security Consultant at Google Cloud, Mandiant Consulting, you will provide expert cybersecurity advisory and hands-on support to clients, helping them prepare for and counteract potential cyber threats. In this role, you will leverage your knowledge of operating systems, networks, cloud services, and computer science fundamentals applied to security challenges across various environments.

You will engage in complex client projects such as forensic investigations, threat hunting, incident response, malware analysis, and penetration testing of networks, applications, and devices by simulating cutting-edge attack techniques. Serving as a trusted security authority, you will present intricate technical concepts clearly to executives, business leaders, and technical teams while leading multi-disciplinary engagements.

Primary Responsibilities

  • Perform in-depth security evaluations on web, API, and mobile applications by identifying, exploiting, and validating security flaws using recognized industry practices such as OWASP WSTG, API Security Top 10, and MASTG.
  • Identify critical vulnerabilities and develop capabilities to weaponize these findings effectively.
  • Enhance team effectiveness by developing security tools, researching new offensive techniques, integrating threat intelligence, and sharing knowledge through internal presentations.
  • Prepare detailed and accurate technical and executive reports and serve as a trusted consultant for senior leaders including C-level executives.
  • Contribute to scoping of upcoming engagements, lead teams throughout project lifecycles, and mentor junior staff.

Minimum Qualifications

  • Bachelor’s degree specializing in Cybersecurity with an emphasis on offensive security, or equivalent practical experience.
  • At least 3 years of documented experience in three or more security domains such as web/mobile/API security assessments, red team operations, EDR evasion, exploit development, cloud security, social engineering, scripting, or tool creation.
  • Proven ability to deliver presentations and reports tailored to both technical audiences and executive stakeholders.
  • Strong understanding of operating system security across various platforms including Linux.

Preferred Qualifications

  • Hold certifications in application security such as BSCP, OSWE, eWPTX, eMAPT, 8ksec CMSE, or related SANS courses.
  • Experience creating custom security tools and proficiency in programming languages like Python, C#, C/C++, Rust, Nim, or equivalents.
  • Skilled in conducting security evaluations of web applications, APIs, and mobile platforms (iOS and Android) according to industry standards such as OWASP WSTG, ASVS, Top 10 lists, and MASVS/MASTG.
  • Hands-on experience with penetration testing tools including Burp Suite Professional, associated extensions, Postman, nuclei, ffuf, and sqlmap.

Additional Information

Candidates applying to this position will have an opportunity to select their preferred working location from Dubai, UAE; Doha, Qatar; or Riyadh, Saudi Arabia.

Google is committed to fostering a workplace with equality and diversity, providing opportunities regardless of race, gender, religion, citizenship, or disability status. They also accommodate applicants needing special provisions.

Minimum education

Bachelor's Degree

How they work

Communication Teamwork & Collaboration Problem Solving Leadership
🤖
Online · instant AI help