- Career Center Home
- Search Jobs
- Associate Security Analyst, Agentic Security Operations
Results
Job Details
Explore Location
Google
Texas, United States
(on-site)
Posted
2 days ago
Google
Texas, United States
(on-site)
Job Type
Full-Time
Associate Security Analyst, Agentic Security Operations
The insights provided are generated by AI and may contain inaccuracies. Please independently verify any critical information before relying on it.
Associate Security Analyst, Agentic Security Operations
The insights provided are generated by AI and may contain inaccuracies. Please independently verify any critical information before relying on it.
Description
Minimum qualifications:- Bachelor's degree in Computer Science, a related technical field (e.g. Cyber Security, Information Technology) or equivalent practical experience.
- Experience utilizing generative AI security assistants, security copilots, or AI-infused query builders to search Security Information and Event Management (SIEM) telemetry, summarize incidents, or accelerate analysis workflows.
- Experience with Endpoint Detection and Response (EDR) tools (such as Crowdstrike Falcon or SentinelOne Singularity, specifically utilizing AI or heuristic modules), Network Detection and Response (NDR) and Next-Generation Firewall (NGFW) tools (such as Corelight, Palo Alto, Vectra, or Trellix NX), or SIEM platforms (such as Google Security Operations, Splunk, or QRadar).
Preferred qualifications:
- 4 years of experience in a SOC environment, a specialized Information Security role.
- Experience leading investigations/participating in response operations for high-severity events.
- Proficiency with AI prompting techniques (prompt engineering) tailored for cyber security use cases, such as extracting indicators of compromise (IOCs) from unstructured threat reports or automating the generation of YARA-L/Sigma rules.
- Proficiency in scripting with experience connecting to AI model APIs to parse data, automate repetitive tasks, or build tools.
- Understanding of the risks associated with using Generative AI in security contexts, including data privacy/leakage concerns, model hallucination management, and prompt injection concepts.
About the jobIn this specialized role, you will be at the intersection of frontline defense and artificial intelligence. As an Associate Security Analyst in Agentic Security Operations, you will leverage generative AI and AI-infused tools to augment, accelerate, and scale security defense workflows. You will move beyond traditional alert verification to perform high-velocity, deep-dive investigations driven by next-generation security technology.Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.Individual pay is determined by factors including job-related skills, experience, and relevant education or training.
US: $102000 - $145000 (USD) 15% bonus target bonus equity benefits
Learn more about benefits at Google.
Responsibilities
- Analyze real-time security events across endpoint, network, and cloud environments, integrate AI-infused alert summarization platforms to rapidly categorize and prioritize high-severity alerts.
- Leverage generative AI security assistants (such as Google Security Operations Gemini) to translate natural language threat hypotheses into advanced detection queries (YARA-L), accelerating threat hunting and triage.
- Conduct host and network forensic analysis to support incident response efforts, applying AI analytics to correlate disparate signals, understand attacker activity, and assess customer impact.
- Execute basic static and dynamic analysis of suspicious files, utilize AI-driven code explainers and de-obfuscation models to identify malicious capabilities rapidly (e.g., identifying GOOTLOADER JavaScript or CORNFLAKE.V3 backdoors).
- Isolate compromised hosts and stop lateral movement or ransomware propagation using both manual controls and AI-driven automated response playbooks.
${qualifications}${responsibilities}
Requisition #: 102706940278121158
pca3lyuhf
Job ID: 84694560
Jobs You May Like
Community Intel Unavailable
Details for Texas, United States are unavailable at this time.
Loading...
