info_outline
X
This posting is for a new vacancy.
Google utilizes AI tools to assist in assessing candidates in our hiring processes.
Note: By applying to this position you will have an opportunity to share your preferred working location from the following:
Toronto, ON, Canada; Ottawa, ON, Canada; Montreal, QC, Canada.
Minimum qualifications: - Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience.
- 5 years of experience in detection engineering, SIEM/SOAR administration, or Security Operations Centre (SOC) operations.
- Experience developing detections, automated response playbooks, and custom scripts (e.g., Python, Bash).
- Experience with AI-augmented SOC workflows, agentic security, or using LLMs to automate security operations.
- Experience integrating distributed systems via Cloud APIs or REST.
- Ability to travel up to 30% of the time. as needed.
Preferred qualifications: - Experience engineering and deploying detection and response content within modern SIEM solutions (e.g., SecOps, Elastic, Sentinel, Splunk, Cortex XSIAM).
- Experience building MCP servers and seamlessly integrating complex distributed systems via Cloud APIs.
- Experience with Python engineering and designing multi-agent systems, RAG pipelines, and LLM tool-calling.
- Experience in client-facing consulting and communication.
- Familiarity with AI evaluation frameworks, production guardrails, and Google Cloud's AI ecosystem.
- Background in cybersecurity operations (SOC, Incident Response, or Detection Engineering) utilizing SIEM and SOAR platforms.
About the jobAs a Security Consultant, you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to cyber security threats. Security Consultants have an understanding of computer science, operating system functionality and networking, cloud services, corporate network environments and how to apply this knowledge to cyber security threats.
As a Security Consultant, you could work on engagements including assisting clients in navigating technically complex and high-profile incidents, performing forensic analysis, threat hunting, and malware triage. You may also test client networks, applications and devices by emulating the latest techniques to help them defend against threats, and will be the technical advocate for information security requirements and provide an in-depth understanding of the information security domain. You will also articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors and successfully lead complex engagements alongside cross functional teams.
As a Senior Consultant, you will design and develop agentic capabilities within clients Security Operations Centers (SOCs). Collaborating with client developers and analysts, you will translate security operations workflows into reliable AI-augmented systems, implementing agentic capabilities into client environments.This role is designed for technical professionals focused on emerging technologies and protecting clients from cybersecurity risks.
Individual pay is determined by factors including job-related skills, experience, and relevant education or training.
Canada: $166000 - $170000 (CAD) 15% bonus target equity benefits
Learn more about benefits at Google .
Responsibilities - Analyze customer Security Operations performance and workflows to identify operational issues and areas that could be measurably improved through the implementation of technology.
- Propose innovative AI and automation strategies that optimize overall defense capabilities. Develop robust internal AI solutions, prompt pipelines, and MCP connectors to seamlessly integrate intelligent agents with core enterprise security platforms including SIEM and SOAR solutions.
- Design, build, and maintain an internal library of agentic solutions and reusable skills that transform manual security operations into efficient, automated and semi-automated workflows.
- Design and integrate AI-augmented detection use case life-cycles, agentic response playbooks, and machine-speed threat hunting procedures.
- Operationalize advanced Security Orchestration, Automation, and Response (SOAR) capabilities, including the integration of connectors for automated case management.