Please submit your resume in English - we can only consider applications submitted in this language.
Only applications of candidates with Mexican citizenship will be evaluated for this role in compliance with the provisions of Article 7 of the Federal Labor Law.
Note: By applying to this position you will have an opportunity to share your preferred working location from the following:
In-office locations: Mexico City, CDMX, Mexico.
Remote location(s): Mexico.
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience.
- 5 years of experience in information security and engineering with cloud-based infrastructure environments.
- 5 years of experience designing, evaluating, or leading enterprise security architecture programs and managing delivery teams.
- 5 years of experience with enterprise security controls, network engineering concepts, and identity management frameworks.
- 4 years of experience with identity and access management with tech stacks (e.g., Active Directory, GCP, Entra ID, Palo Alto, Cisco), enterprise architecture and cloud architecture with a cloud platform.
- Relevant industry certifications (e.g., CISSP, CCSP, Google Cloud Certified Professional Cloud Security Engineer, or equivalent).
- Experience in incident response remediation or disaster recovery.
- Experience with threat modeling methodologies (e.g., STRIDE, PASTA) and application security perimeters.
- Proven experience managing project lifecycles, establishing scope boundaries, tracking engineering milestones, and delivering complex client reports on time.
- Direct experience building or securing AI/ML pipelines, utilizing AI security frameworks (e.g., OWASP Top 10 for LLMs, NIST AI RMF), or configuring secure cloud AI environments.
- Strong experience securing multi-cloud environments (e.g., GCP) and reviewing Infrastructure as Code (IaC) templates.
Mandiant’s Security Transformation Services (STS) team helps organizations build an effective security operations program that minimizes organizational risk and reduces the impact of security breaches. By utilizing the latest industry standards and combining experience and knowledge gained from Mandiant Incident Response, Intelligence and Managed Defense practices, we are able to help clients contain security events, harden their environments, and transform their security programs. STS Advisors act as the organization's primary remediation leader both during and after a cyber security incident.
In this role, you will be responsible for driving remediation efforts by developing, coordinating, and executing the eradication, recovery, and remediation plan in parallel with active incident response. You will partner with key stakeholders, including the IR team, IT operations, business units, and legal, to ensure that containment, eradication, and recovery actions are unified, efficient, and aligned with business priorities. You will be responsible for helping clients effectively prepare to mitigate, and respond to cyber security threats. You will identify enterprise security requirements and provide guidance to enterprise initiatives. You will serve as technical support for security tools and assist with security tool implementation and integration into the customer environment. You will also provide guidance on the development of containment and remediation plans for cyber security incidents.
In addition, you will be the technical advocate for information security requirements and provide information of the security domain. You will execute on both strategic and tactical plans, including direct engagement and delivery in technical matters. You will articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors.
Part of Google Cloud, Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. Mandiant's cybersecurity expertise has earned the trust of security professionals and company executives around the world. Our unique combination of renowned frontline experience responding to some of the most complex breaches, nation-state grade threat intelligence, machine intelligence, and the industry's best security validation ensures that Mandiant knows more about today's advanced threats than anyone.
- Act as the primary engagement manager for security architecture reviews and design projects. Meticulously define project requirements, manage scope, track schedules, and coordinate deliverables to ensure highly successful project execution.
- Review, assess, and design secure enterprise-wide architectures across on-premises, cloud, and hybrid environments. Provide advanced technical guidance on network segmentation, identity perimeters, and infrastructure hardening.
- Evaluate and advise on the secure deployment of modern workloads, specifically focusing on cloud-native ecosystems and the secure integration of Artificial Intelligence (AI) platforms and pipelines.
- Apply advanced security concepts to perform threat modeling on complex systems, identifying design flaws and providing actionable, structural recommendations to mitigate risk.
- Collaborate with and advise executive organizational and technical stakeholders, translating complex architectural risks into clear, strategic guidance to inform executive decision-making.
Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also Google's EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know by completing our Accommodations for Applicants form.