
Specialist, Google Security
- Toronto, ON
- Permanent
- Full-time
defense-in-depth strategy, in accordance with TMX regulations and policy. This includes robust security for our cloud environments,
especially Google Workspace and Google Cloud Platform (GCP).
Reporting to the Senior Manager of Security Operations, we're seeking a highly motivated and experienced Senior Google Security Analyst to
join our team. Your primary focus will be on ensuring the robust security of Google Workspace, though you'll also apply your expertise to our
growing Google Cloud Platform (GCP) footprint and ChromeOS devices. This is a pivotal role where you'll proactively identify threats,
respond to incidents, and continuously enhance our security posture across the entire Google ecosystem.Key Responsibilities:
Leading Google Workspace Security: As the SOC and ISO expert, you'll administer, optimize, and review all security aspects
within Google Workspace, including Google Mail, Google Drive, Google Docs, etc.... Initiatives such as designing and
implementing Data Loss Prevention (DLP), managing sophisticated access controls like context-aware policies, enhancing
phishing / malware / fraud protection, and performing proactive audit log analysis. You'll also help to develop and enforce
robust security policies and configurations specifically for Workspace usage.ChromeOS Device Security: You will be responsible for creating, maintaining, and enforcing security policies and
configurations for ChromeOS devices. This includes device enrollment, access controls, data protection, and secure browser
settings. You'll also lead the integration and management of third-party security tools (e.g., EDR, SIEM, CASB) with a
ChromeOS fleet to enhance endpoint detection and response capabilities.Securing Google Cloud Platform (GCP): You'll design, implement, and manage security controls within GCP, leveraging native
services like IAM, VPC Service Controls, and Security Command Center, as well as various third-party security tools. Your
work will involve conducting security assessments, reviewing findings and applying security configurations for efficiency and
consistency.Security Operations & Incident Response: You'll be actively involved in monitoring security logs and alerts from both Google
Workspace and GCP, utilizing our SIEM / SOAR platforms. This includes taking part in incident investigations, refining our
response playbooks, and performing proactive threat hunting across our Google ecosystem to identify emerging risks.Risk Management & Collaboration: You'll identify and assess security vulnerabilities across both Google Workspace and GCP,
collaborating closely with development, operations, and IT teams to prioritize and remediate risks effectively. Staying current
with the latest cloud security trends will be key to embedding security best practices throughout our cloud infrastructure.What You'll Bring:
Must-Haves:
- Bachelor's degree in Computer Science, Information Security, or a related field; or equivalent practical experience.
engineering.
3+ years of hands-on experience and deep expertise in Google Workspace security administration and best practices
(formerly G Suite).
- Strong practical experience securing Google Cloud Platform (GCP) environments.
- Experience with ChromeOS device management and security, including policy creation and third-party security integrations.
scanners, and network security controls.
- Experience with scripting languages (e.g., Python, Bash) for automation and security tool development.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work both independently and as a vital part of a collaborative team.
Relevant certifications such as:
- Google Workspace Administrator or Google Cloud Professional Cloud Security Engineer
- CISSP, CCSP
- GSEC, GCIH, GCIA
- Experience with container security (Docker, Kubernetes) in GCP.
- Familiarity with compliance frameworks (e.g., ISO 27001, SOC 2, HIPAA, PCI DSS).