Google

Senior Security Engineer, External API Security

Google$174K — $253K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent practical experience
  • 5+ years in security assessments, design reviews, or threat modeling
  • 5+ years in security engineering and protocols
  • 5+ years coding in general-purpose languages
  • 1+ year leading technical teams or risk analysis in enterprise environments

Responsibilities

  • Develop AI-assisted API vulnerability scanning and automated launch checkers
  • Drive central remediation campaigns to address systemic vulnerabilities
  • Collaborate with infrastructure and product teams for secure API deployments
  • Build and maintain security policy enforcement and monitoring infrastructure
  • Analyze authorization bypass patterns and improve API access controls

Benefits

  • Comprehensive health, wellness, and retirement plans
  • Generous paid time off and leave policies
  • Opportunities for professional development and continuous learning
  • Access to Google's cutting-edge technology resources
  • Flexible work arrangements and remote work options
Full Job Description
Minimum qualifications:
  • Bachelor's degree or equivalent practical experience.
  • 5 years of experience with security assessments or security design reviews or threat modeling.
  • 5 years of experience with security engineering, computer and network security and security protocols.
  • 5 years of coding experience in one or more general purpose languages.
  • 1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.

Preferred qualifications:
  • Experience with agent-based artificial intelligence systems.
  • Experience in software security domains including secure coding practices, vulnerability analysis, or security architecture.
  • Experience designing, building, or securing web APIs and microservices.
  • Experience developing software with one or more general-purpose programming language including Go, Java, or Python.
  • Experience running automated code refactoring or programmatic remediation campaigns across systems.


About the job
The Information Security Engineering, Authorization (ISE Auth) team strives to eliminate product authorization vulnerabilities at Google, through a combination of designing and rolling out safe-by-default developer surfaces, agentic security scanning and targeted remediation projects.

Our API Security pillar focuses specifically on the risk of externally exploitable authorization weaknesses in internet-facing APIs.

As a Software Security Engineer in ISE Auth, you will protect user data and secure Google's public-facing API boundaries from authorization vulnerabilities. In this role, you will design secure-by-default frameworks, build advanced AI-assisted security scanning systems, and run central remediation campaigns like changes to eliminate risk at scale. You will robust access control capabilities across all Google products.

Individual pay is determined by factors including job-related skills, experience, and relevant education or training.

US: $174000 - $253000 (USD) 15% bonus target equity benefits

Learn more about benefits at Google .

Responsibilities
  • Develop and improve AI-assisted API vulnerability scanning systems, framework improvements, and automated launch checkers to proactively identify authorization bypasses.
  • Drive central remediation campaigns to remediate systemic vulnerability classes without putting undue churn onto product teams.
  • Collaborate with core infrastructure and product teams to establish secure-by-default API deployment architectures and to pragmatically reduce risk.
  • Build and maintain infrastructure and automation for security policy enforcement, monitoring, and regression prevention.
  • Analyze emerging authorization bypass patterns and evaluate agent-based AI systems to proactively harden API access controls.


Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google's Applicant and Candidate Privacy Policy .

About Google

Google is a multinational technology company that specializes in Internet-related services and products. These include online advertising technologies, search engine, cloud computing, software, and hardware. Google was founded in 1998 by Larry Page and Sergey Brin while they were Ph.D. students at Stanford University. The company has grown tremendously since then and has become one of the most valuable companies in the world. Google's mission is to organize the world's information and make it universally accessible and useful.
Learn more about Google
Size
156,500 employees
Market Cap
$1,115.4 billion
Industry
Net Income
$40.2 billion
Founded
1998
5 Year Trend
+23.3%
Revenue
$182.5 billion
NASDAQ

Similar Jobs

More Jobs at Google

More Information Technology Jobs

Find similar Senior Security Engineer, External API Security jobs: