refresh

Trending Companies

Trending

Jobs

JobsTikTok

Security Engineer - Application/Product Security

TikTok

Security Engineer - Application/Product Security

TikTok

Sydney, Australia

·

On-site

·

Full-time

·

1mo ago

Benefits & Perks

Flexible work arrangements

Professional development budget

Parental leave

Team events and activities

Comprehensive health, dental, and vision insurance

Flexible Hours

Learning

Parental Leave

Healthcare

Required Skills

Python

JavaScript

PostgreSQL

About the Team

The team is missioned to build infrastructures, platforms and technologies, as well as to support cross-functional teams to protect our users, products and infrastructures. In this team you'll have a unique opportunity to have first-hand exposure to the strategy of the company in key security initiatives, especially in building scalable and secure-by-design systems and solutions. Our challenges are not your regular day-to-day technical problems; you'll be part of a team that's developing new solutions to new challenges of a kind not previously addressed by big tech. It's working fast, at scale, and we're making a difference.

Responsibilities

  • Perform penetrations tests and security assessments to identify vulnerabilities and business-logic failures in core product ecosystems.
  • Design and develop security tooling to identify vulnerabilities and optimise the product security review process.
  • Perform architecture and design reviews to ensure that our applications are implemented to the highest security and privacy standards, thus maintaining and enhancing user trust.
  • Work closely with software engineering teams to provide security guidance and co-design complex production systems.
  • Assess vulnerability impact by creating exploits for n-day vulnerabilities and performing variant analysis across our codebases.

Minimum Qualifications

  • Bachelor's Degree or above in Computer Science or related specialization.
  • Hands-on security engineering experience such as penetration testing, source code review, design review, threat modeling, security mitigation development, or security tooling development.
  • Strong ability to communicate and collaborate with business partners.
  • Solid experience in writing and reviewing code in at least two of the following programming languages: Kotlin, Swift, TypeScript, Go, or Python.
  • Advanced knowledge and understanding in various disciplines: web application security, mobile app security, network security, operating system internals and hardening, applied cryptography, cloud computing. You're expected to be an expert in at least one of these areas.
  • Strong problem-solving skills and excellent debugging / troubleshooting skills.

Preferred Qualifications

  • CTF players, live competitions and hacking events experience.
  • CVEs such as remote code execution are preferred.
  • Bug Bounty experience with reputable statistics in Hacker One, Bug Crowd etc.

Total Views

0

Apply Clicks

0

Mock Applicants

0

Scraps

0

About TikTok

TikTok

TikTok

Late Stage

A short-form video entertainment app and social network platform

10,001+

Employees

Los Angeles

Headquarters

$220B

Valuation

Reviews

3.1

3 reviews

Work Life Balance

1.5

Compensation

2.0

Culture

1.2

Career

1.8

Management

1.0

5%

Recommend to a Friend

Pros

Limited positive feedback available

Company size allows for potential opportunities

Technology platform experience

Cons

Mass layoffs and poor handling of terminations

Unprofessional management and HR behavior

Exposure to traumatic content without adequate support

Salary Ranges

52 data points

Senior/L5

Senior/L5 · Access Assurance Lead

1 reports

$331,500

total / year

Base

$255,000

Stock

-

Bonus

-

$331,500

$331,500

Interview Experience

4 interviews

Difficulty

3.5

/ 5

Duration

21-35 weeks

Experience

Positive 0%

Neutral 25%

Negative 75%

Interview Process

1

Application Review

2

Recruiter Screen

3

Online Assessment

4

Technical Phone Screen

5

Onsite/Virtual Interviews

6

Team Matching

7

Offer

Common Questions

Coding/Algorithm

System Design

Behavioral/STAR

Technical Knowledge

Data Structures