National AI Awards 2025Discover AI's trailblazers! Join us to celebrate innovation and nominate industry leaders.

Nominate & Attend

Google Chronicle Developer - Remote

London
3 weeks ago
Create job alert

FDM is a global business and technology consultancy seeking a Senior Google Chronicle Developer to work for our client within the health sector. This is initially a 6-month contract with the potential to extend and will be a fully remote role.

Our client is seeking a Senior Google Chronicle Developer, who will be instrumental in building, managing, and optimising their Chronicle-based security monitoring and threat detection ecosystem. You will work closely with Security Operations (SecOps), DevOps, and Data Engineering teams to ensure they have reliable data ingestion, robust detection logic, and automated response playbooks that surface actionable insights and drive rapid incident response.

Responsibilities

  • Design, develop, and maintain Chronicle detections and playbooks across IT, application, and security domains, using YARA-L, EQL, and Chronicle Policy Engine

  • Onboard new data sources into Chronicle via forwarders (e.g., Chronicle Data Forwarder, Fluentd/Fluent Bit), APIs, and custom parsers

  • Build and optimise UDM pipelines (parsers & normalization)—create custom parsing rules, JSON or regex-based Normalized Event configurations, and ensure new log sources conform to the common schema

  • Develop scheduled hunts and automated workflows in Chronicle for threat hunting (e.g., abnormal DNS tunneling, lateral movement). Leverage EQL for complex queries and scheduled scans

  • Collaborate with SecOps and DevOps to integrate Chronicle alerts with SOAR platforms (e.g., Phantom, Demisto), enabling automated enrichment (TI, asset data) and response actions. Author playbooks that, for example, isolate compromised endpoints, block IPs, or escalate to ticketing systems

  • Drive improvements in log standardization and detection rule hygiene—audit existing YARA-L rules, tune conditions to reduce false positives/negatives, and retire stale detections

  • Act as Chronicle SME for architecture reviews, capacity planning, licensing, and best practices and advise on Chronicle’s ingestion pipeline scaling (back-pressure, sharding), health monitoring, and performance metrics (ingest latency, query response times)

  • Participate in incident investigations and postmortems, providing insights via Chronicle query analysis and retrospectives. Identify detection gaps and propose new rule or playbook enhancements

  • Mentor junior Chronicle engineers and analysts—lead brown-bag sessions on writing EQL hunts, building YARA-L rules, or configuring UDM transformations

    Requirements

  • Minimum of 4+ years’ hands-on experience with Google Chronicle (or equivalent SIEM/SecOps) development and administration

  • Expertise in Chronicle detection languages: YARA-L (rule authoring, tuning), EQL-style queries, and Chronicle Policy Engine

  • Solid experience onboarding data via Chronicle Data Forwarder, Fluentd/Fluent Bit, syslog, and RESTful APIs. Comfortable building custom parsing pipelines and mapping to UDM

  • Deep understanding of Chronicle’s UDM schema—ability to create or extend Normalized Events, parse nested JSON, extract fields via JSONPath/regex

  • Proficiency integrating Chronicle with SOAR platforms (e.g., Phantom, Demisto) via webhooks or Cloud Pub/Sub. Able to automate threat-intel enrichment, host quarantines, and ticket creation

  • Hands-on with GCP services (Pub/Sub, Cloud Functions, BigQuery) and cloud-native logging (Stackdriver/Cloud Logging, AWS CloudWatch). Comfortable with containerized deployments (Kubernetes, Docker)

  • Strong foundation in security operations—familiarity with threat intelligence feeds, MITRE ATT&CK, and intrusion detection concepts. Able to translate raw logs into actionable detections

  • Experience using Git, CI/CD pipelines (e.g., Cloud Build, Jenkins) to manage Chronicle rule repositories, automated testing of YARA-L against staging data, and staged rollouts

    Why join us

  • Career coaching, mentoring and access to upskilling throughout your entire FDM career

  • Assignments with global companies and opportunities to work abroad

  • Opportunity to re-skill and up-skill into new areas, develop non-linear career paths and build a skillset within your field

  • Annual leave, work-place pension and BAYE share scheme

    About FDM

    We are a business and technology consultancy and one of the UK's leading employers, recruiting the brightest talent to become the innovators of tomorrow. We have centres across Europe, North America and Asia-Pacific, and a global workforce of over 3,500 Consultants. FDM has shown exponential growth throughout the years, firmly establishing itself as an award-winning employer and is listed on the FTSE4Good Index.

    Diversity and Inclusion

    FDM Group is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, colour, religion, sex, sexual orientation, national origin, age, disability, veteran status or any other status protected by federal, provincial or local laws

Related Jobs

View all jobs

Senior Security Operations Analyst

Google Cloud Data Engineer

Mobile Developer

GCP Data Engineer - London - £75k +bonus

Node.js Developer

Technical Lead/ Solutions Engineer

National AI Awards 2025

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

How to Present Cloud Computing Solutions to Non-Technical Audiences: A Public Speaking Guide for Job Seekers

In the fast-evolving world of cloud computing, technical know-how is only half the story. Today’s employers want candidates who can not only design scalable systems and deploy infrastructure, but also explain how and why cloud solutions matter to clients, managers, and stakeholders who don’t speak tech. This article is your step-by-step guide to mastering public speaking for cloud computing roles. Whether you're applying for a DevOps, cloud architect, infrastructure engineer, or cloud consultant role, you’ll learn how to structure your presentation, simplify complex ideas, design clear visuals, and communicate confidently in interviews and beyond.

Cloud Computing Jobs UK 2025: 50 Companies Hiring Now

Bookmark this guide – we refresh it every quarter so you always know who’s really expanding their cloud & platform teams. Cloud adoption in the UK shows no sign of slowing. Government’s “Cloud‑First” mandate, the VAT break for green data‑centre investment & a flurry of GenAI roll‑outs have kept demand for cloud skills running red‑hot throughout 2025. Employers from hyperscale providers to public‑sector bodies are scrambling for site‑reliability engineers (SREs), platform architects, DevOps specialists, security engineers, FinOps analysts & multicloud strategists – right now. Below you’ll find 50 organisations that have advertised UK‑based cloud‑computing vacancies or announced head‑count growth during the past eight weeks. They’re organised into five quick‑scan categories so you can jump straight to the kind of employer – & culture – that suits you. For every company you’ll see: Main UK hub Example recent vacancy Why it’s worth a look (tech stack, culture, mission) Search any employer on CloudComputingJobs.co.uk to view live roles, or set up a free alert so fresh openings drop straight in your inbox.

Return-to-Work Pathways: Relaunch Your Cloud Computing Career with Returnships, Flexible & Hybrid Roles

Re-entering the workforce after a career break can feel both exciting and daunting—especially in a fast-paced domain like cloud computing. Whether you paused your professional journey for parenting, caring responsibilities, or another life chapter, the UK’s cloud sector now offers a variety of return-to-work pathways. From structured returnships to flexible and hybrid roles, these programmes recognise the value of your transferable skills and lived experience. With tailored mentorship, targeted upskilling and supportive networks, you can confidently relaunch your cloud computing career. In this guide, you’ll learn how to: Grasp the current demand for cloud talent in the UK Leverage your organisational, communication and resilience skills in cloud contexts Overcome common re-entry challenges with practical solutions Refresh your technical knowledge through targeted learning Access returnship and re-entry programmes tailored to cloud computing Find roles that fit around family commitments—whether flexible, hybrid or full-time Balance your career relaunch with caring duties Master applications, interviews and networking specific to cloud Draw inspiration from real returner success stories Get answers to common questions in our FAQ section Whether you’re aiming to return as a cloud engineer, solutions architect, DevOps specialist or cloud project manager, this article will map out the steps and resources you need to reignite your cloud computing career.