SecJobs
RoleSuite
CompaniesRemoteAboutMethodologyContactPrivacy
Updated 2026-06-12 22:00 UTC·© 2025–2026 RoleSuite
← Back to listings

Security Engineer, Third Party Security Diligence

Google · Singapore

There's no such thing as a "safe system" - only safer systems. Our Security team works to create and maintain the safest operating environment for Google's users and developers. As a Security Engineer, you help protect network boundaries, keep computer systems and network devices hardened against attacks and provide security services to protect highly sensitive data like passwords and customer information. Security Engineers work directly with network equipment and actively monitor our systems for attacks and intrusions. You also work with software engineers to proactively identify and fix security flaws and vulnerabilities.

You use your industry experience to own and drive the resolution of complex security incidents, policy questions and technical security issues.

SPMA (Security and Privacy for Mergers, Acquisitions and Alphabet) team’s mandate is focused on reducing Acquisitions, third-party and Cloud risk to Google and Alphabet.

SPMA executes on its mandate through three key verticals:

  • Mergers, Acquisitions and Alphabets (M&A): Effectively and safely raise the security bar for Google’s Off Google entities (Acquisitions and Bets); helping companies navigate Google’s security landscape and processes, thereby safely and securely integrating/divesting/separating them.
  • Alphabet Use of Cloud (AUC): Manage and minimize risk from Alphabet’s use of public clouds (GCP).
  • Third-party/Vendor Security Diligence (3PSD): Ensure effective governance and minimize risk from Alphabet’s use of third-party vendors.
This role sits within the Third Party/Vendor Security Diligence (3PSD) vertical, focusing on third-party security. Alphabet’s Third Party Security Diligence program ensures security of our third-party engagements, and is part of a broader third-party risk management ecosystem.

The Core team builds the technical foundation behind Google’s flagship products. We are owners and advocates for the underlying design elements, developer platforms, product components, and infrastructure at Google. These are the essential building blocks for excellent, safe, and coherent experiences for our users and drive the pace of innovation for every developer. We look across Google’s products to build central solutions, break down technical barriers and strengthen existing systems. As the Core team, we have a mandate and a unique opportunity to impact important technical decisions across the company.

Minimum qualifications:

  • Bachelor's degree or equivalent practical experience.
  • 2 years of experience with security assessments or security design reviews or threat modeling.
  • 2 years of experience with security engineering, computer and network security and security protocols.
  • 2 years of experience coding in one or more general purpose languages (e.g., Python, SQL, C, C++, Java, Go).

Preferred qualifications:

  • Demonstrated experience and strong background in relevant enterprise security domains, particularly in threat modeling, security assessments, authentication and access controls, SaaS security, cloud security and data protection.
  • Experience with security engineering, security architecture or consulting.
  • Proven ability to independently produce high-quality engineering artifacts (e.g., design docs, code reviews, or risk assessments) that require minimal revision.
  • Ability to drive and deliver risk reduction outcomes with high autonomy and limited oversight.
  • Excellent verbal and written communication skills.

Security pay context

Based on 1,634 disclosed Security salaries on RoleSuite, the role pays a median of $142K/year, with most offers between $114K and $183K (10th–90th percentile: $95K–$216K).

See the full Security salary breakdown →
Apply →

Other roles at Google

  • Head of Measurement Foundations, InternationalDublin, Ireland
  • Security and AI Sales Specialist, SMB, Google Cloud (English, Japanese)Tokyo, Japan
  • Product Account Manager (English, Portuguese)São Paulo, State of São Paulo, Brazil
  • Designer, Creative LabNew York, NY, USA
  • Global Analytics and AI Strategic Partner Development ManagerKirkland, WA, USA
  • Validation Engineering Manager, Google CloudPapillion, NE, USA
  • Software Engineering Manager, API HubBengaluru, Karnataka, India
  • Software Engineer, TPU Software Systems, CloudSunnyvale, CA, USA
  • Product Manager II, Infrastructure, Google CloudKirkland, WA, USA
  • Software Engineering Manager II, Infrastructure, Google Cloud Security and PrivacySan Francisco, CA, USA

More Security roles

  • Senior Security Analyst - SOC/CTIEBANX · Curitiba | On-site
  • Senior Application Security Engineer (Remote)Brex · United States
  • Distinguished Engineer, End-to-End Security ArchitectGraphcore · Austin, Texas, United States; US - Milpitas
  • Security AnalystEquipmentsharecom · Columbia, MO (Headquarters)
  • VP, Security EngineerGalaxy Digital · New York, NY
  • Senior Security Engineer (Cyber Resiliency)Chainguard · Canada - Remote
  • Cyber Security GTM LeaderDatabricks · Central - United States
  • Physical Security Systems Architect Project ManagerJobgether · US
  • Principal Information Security EngineerJobgether · US
  • Senior Security Engineer (Cyber Resiliency)Chainguard · United States - Remote