Job Description
Minimum qualifications:
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
- 3 years of experience assessing and developing cybersecurity solutions and programs across security domains.
- 3 years of experience in delivering cyber outcomes, identifying mission risks, and devising solutions.
- Ability to communicate in English fluently to work with internal partners and customer teams.
- Ability to travel up to 30% of the time as needed.
Preferred qualifications:
- Experience performing AI Security Assessments, including SAST and DAST testing methodology.
- Experience implementing industry-leading practices around cyber risks and cloud security for clients’ cloud security frameworks using industry standards.
- Experience with software development life cycle, including identifying vulnerabilities within code.
- Knowledge of tools used in security event analysis, incident response, computer forensics, network and end-point architecture, or other security operational areas.
- Understanding of cyber defense operations to include the incident response, containment, and remediation process, cyber threat intelligence, or security architecture.
About the job
As a Mandiant Strategic Security Consultant, you will lead and support projects on behalf of clients that assess, test, or build their security programs. Project teams may range from 2 to 5 colleagues. Clients will range from start-up companies looking to supplement their security team to Fortune 100 companies that need fresh ideas to enhance their perspective on the security program. You will provide guidance and advice to the client on best practices and managing the risks for their security program.
In this role, you will serve as a trusted advisor to enterprise and government clients, helping them mature their security posture through intelligence-led, risk-based decision-making. You will deliver results that align with the client's needs and risk profiles, with a specific focus on AI adoption and security. You will develop roadmaps, recommendations, and infrastructure business strategies to drive enhancements of cloud security architecture, cyber defense center (CDC), and security operations center (SOC) technologies.
You will be involved in developing policies, procedures, and standards in line with industry best practices, as well as implementing logging and monitoring strategies across cloud and on-premises environments. You will identify and articulate AI security best practices such as AI landscape discovery, threat intelligence interpretation, IR readiness, and secure development—while identifying performance enhancement opportunities for CDC/SOC programs. Furthermore, you will work closely with clients to implement, maintain, and optimize solutions across various platforms and collaborate with cross-functional teams to develop effective cybersecurity controls and measures.
Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.Individual pay is determined by factors including job-related skills, experience, and relevant education or training.
Canada: $134000 - $138000 (CAD) + 15% bonus target + equity + benefits
Learn more about
benefits at Google
In this role, you will serve as a trusted advisor to enterprise and government clients, helping them mature their security posture through intelligence-led, risk-based decision-making. You will deliver results that align with the client's needs and risk profiles, with a specific focus on AI adoption and security. You will develop roadmaps, recommendations, and infrastructure business strategies to drive enhancements of cloud security architecture, cyber defense center (CDC), and security operations center (SOC) technologies.
You will be involved in developing policies, procedures, and standards in line with industry best practices, as well as implementing logging and monitoring strategies across cloud and on-premises environments. You will identify and articulate AI security best practices such as AI landscape discovery, threat intelligence interpretation, IR readiness, and secure development—while identifying performance enhancement opportunities for CDC/SOC programs. Furthermore, you will work closely with clients to implement, maintain, and optimize solutions across various platforms and collaborate with cross-functional teams to develop effective cybersecurity controls and measures.
Responsibilities
- Lead engagements using National Institute of Standards and Technology Artificial Intelligence Risk Management Framework (NIST AI RMF), ISO 42001, and Google Secure AI Framework (SAIF) to establish guardrails safeguarding enterprise AI adoption.
- Evaluate security via threat modeling and secure Machine Learning Operations (MLOps). Integrate Mandiant intelligence to enhance model-driven detection and safeguard against adversarial risks like prompt injection.
- Develop scalable strategies and infrastructure roadmaps for core Cyber Defense Center (CDC) and SOC technologies across multi-cloud environments.
- Optimize logging, telemetry, and detection strategies. Stress-test SOC/IR playbooks against real-world threat scenarios informed by frontline intelligence.
- Conduct comprehensive maturity assessments across people, processes, and technology controls while authoring runbooks to empower consulting teams.