via LinkedIn
$123K - 176K a year
Analyze security events and perform malware triage and forensic analysis to support incident response.
Requires 4 years SOC or information security experience, malware triage skills, and scripting proficiency.
Individuals applying for this position will not be eligible for immigration sponsorship. This position is for the night shift (7:30pm - 7:30am ET). Applicants in the County of Los Angeles: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Applicants in San Francisco: Qualified applications with arrest or conviction records will be considered for employment in accordance with the San Francisco Fair Chance Ordinance for Employers and the California Fair Chance Act. The application window will be open until at least March 11, 2026. This opportunity will remain online based on business needs which may be before or after the specified date. Note: Google's hybrid workplace includes remote roles. By applying to this position you will have an opportunity to share your preferred working location from the following: Remote locations: California, USA; United States.Minimum qualifications: • Bachelor's degree in Cybersecurity, Information Technology, a related technical field, or equivalent practical experience. • 4 years of experience in a SOC environment or information security role. • Experience with malware triage (e.g., static and dynamic analysis) and script deobfuscation. Preferred qualifications: • Certifications in security, such as GCIH, GCFA, GCFR, or GREM. • Experience leading investigations or participating in response operations for high-severity events. • Proficiency with AI productivity tools to accelerate incident investigation reporting, or code/script development. • Proficiency in scripting (e.g., Python, JavaScript, PowerShell). About The Job Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone. The US base salary range for this full-time position is $123,000-$176,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process. Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more about benefits at Google . Responsibilities • Analyze real-time security events across endpoint, network, and cloud environments using a centralized analyst console and SIEM/Google Security Operations (SecOps) platform. • Execute basic static and dynamic analysis of suspicious files to determine capabilities. Identify benign patterns and write logic to suppress them. • Determine the severity, impact, and scope of security incidents and compromises. Isolate compromised hosts and stop lateral movement or ransomware propagation. • Contribute to the improvement of YARA-L rules and detection logic based on the changing threat landscape. Draft high-quality, technically accurate reports • Perform host and network forensic analysis to support incident response efforts, understanding attacker activity, and assessing customer impact. Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form .
This job posting was last updated on 3/6/2026