Leave us your email address and we'll send you all the new jobs according to your preferences.

Security Platform Engineer, Red Team, UK Security Operations

Posted 2 hours 38 minutes ago by Google Inc.

Permanent
Full Time
Public Sector Jobs
London, United Kingdom
Job Description
Security Platform Engineer, Red Team, UK Security Operations

Google • London, UK

Applicants must be a British citizen to meet compliance and security clearance requirements. The office location can be a satellite site in Wiltshire or London. This is an on site position, requiring office attendance five days per week.

Required Qualifications
  • Bachelor's degree in Computer Science, Information Security, a related field, or equivalent practical experience.
  • 5 years of experience in security engineering, offensive security (Red Team/Purple Team), or platform engineering roles.
  • Experience with infrastructure as code and GitOps (e.g., Terraform, Helm, ArgoCD) and cloud native security orchestration.
  • Experience with Kubernetes security (e.g., workload isolation, RBAC, network policies) and container orchestration.
  • Experience in scripting and development languages (e.g., Python, Go) for building custom security tooling, automation, and exploit PoCs.
  • Active, or ability to obtain, a Developed Vetting (DV) UK security clearance.
Preferred Qualifications
  • Advanced offensive security certifications (e.g., OSCP, OSEP, OSCE, GXPN).
  • Experience conducting full scope Red Team engagements and Purple Team exercises in cloud native environments.
  • Experience developing custom exploits, adversary emulation scenarios, or security automation frameworks for internal testing.
  • Knowledge of cloud native logging, monitoring, and SIEM integration for detecting sophisticated adversary tactics.
  • Understanding of Kubernetes attack surfaces, including container escapes, privilege escalation, and lateral movement techniques.
  • Current and active UK Developed Vetting (DV) Security Clearance.
About the Job

As part of the UK Security Operations (SecOps) team in Google Public Sector, you will deliver, operate, and secure private cloud services. Your aim is to provide the flexibility, reliability, and scalability of public cloud for customers with exceptionally high security requirements that can only be met in a private cloud environment. You will deliver and operate these private cloud deployments for the most critical customers, helping scale, secure, and maintain the deployment while working closely with Google product teams to continually improve our technology.

As a Red Team Engineer, you will play a critical role in designing, building, and managing cloud native security platforms with a strong emphasis on Kubernetes based environments. You will develop scalable tooling and automate security controls to enable Red Team activities, Purple Team exercises, and comprehensive attack path reviews. You will build and maintain the platforms necessary for developing and deploying PoC exploits and validations, ensuring detection and response capabilities across cloud infrastructure.

This engineering centric role requires deep technical expertise in cloud environments, Kubernetes security, and platform automation. You will work closely with Incident Response, Platform Engineering, and Security Architects to integrate security validation and defensive hardening into infrastructure and operational workflows. The role includes participation in a rotating on call schedule outside core business hours and weekends to support security incidents and critical operations.

Responsibilities
  • Design, develop, and maintain automation platforms and tooling required to execute Red Team operations, Purple Team exercises, and attack path reviews.
  • Create and deploy PoC exploits and validations to proactively test and harden cloud infrastructure security.
  • Collaborate with security engineering and platform teams to build scalable security validation frameworks that integrate into CI/CD pipelines.
  • Analyze complex cloud and Kubernetes architectures to identify and document potential attack vectors, mapping them against threat models to prioritize security improvements.
  • Support defensive hardening efforts by providing actionable insights and telemetry from security validation exercises, ensuring continuous improvement of detection and response capabilities.
EEO Statement

Google is an equal opportunity employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, expecting or parents to be, criminal histories consistent with legal requirements, or any other basis protected by law. See also Google's EEO Policy, Know your rights: workplace discrimination is illegal, Belonging at Google, and How we hire.

English proficiency is required for all roles unless stated otherwise in the job posting.

Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.

Equity is granted exclusively and discretionarily by Alphabet Inc. on the basis of an agreement concluded between you and Alphabet Inc. Alphabet Inc. is your sole contractual partner with respect to equity grants. GSU grants are not guaranteed, are discretionary, subject to approval by the Alphabet Inc. board of directors or its delegate, the terms of the relevant Alphabet Inc. stock plan, and your grant agreement. They have no impact on statutory payments. Current or past grants do not confer an acquired right.

Email this Job