热门公司

招聘

职位TikTok

Security Engineer - Application/Product Security

TikTok

Security Engineer - Application/Product Security

TikTok

Sydney, Australia

·

On-site

·

Full-time

·

2mo ago

福利待遇

Flexible Hours

Learning

Parental Leave

Healthcare

必备技能

Python

JavaScript

PostgreSQL

About the Team

The team is missioned to build infrastructures, platforms and technologies, as well as to support cross-functional teams to protect our users, products and infrastructures. In this team you'll have a unique opportunity to have first-hand exposure to the strategy of the company in key security initiatives, especially in building scalable and secure-by-design systems and solutions. Our challenges are not your regular day-to-day technical problems; you'll be part of a team that's developing new solutions to new challenges of a kind not previously addressed by big tech. It's working fast, at scale, and we're making a difference.

Responsibilities

  • Perform penetrations tests and security assessments to identify vulnerabilities and business-logic failures in core product ecosystems.
  • Design and develop security tooling to identify vulnerabilities and optimise the product security review process.
  • Perform architecture and design reviews to ensure that our applications are implemented to the highest security and privacy standards, thus maintaining and enhancing user trust.
  • Work closely with software engineering teams to provide security guidance and co-design complex production systems.
  • Assess vulnerability impact by creating exploits for n-day vulnerabilities and performing variant analysis across our codebases.

Minimum Qualifications

  • Bachelor's Degree or above in Computer Science or related specialization.
  • Hands-on security engineering experience such as penetration testing, source code review, design review, threat modeling, security mitigation development, or security tooling development.
  • Strong ability to communicate and collaborate with business partners.
  • Solid experience in writing and reviewing code in at least two of the following programming languages: Kotlin, Swift, TypeScript, Go, or Python.
  • Advanced knowledge and understanding in various disciplines: web application security, mobile app security, network security, operating system internals and hardening, applied cryptography, cloud computing. You're expected to be an expert in at least one of these areas.
  • Strong problem-solving skills and excellent debugging / troubleshooting skills.

Preferred Qualifications

  • CTF players, live competitions and hacking events experience.
  • CVEs such as remote code execution are preferred.
  • Bug Bounty experience with reputable statistics in Hacker One, Bug Crowd etc.

总浏览量

0

申请点击数

0

模拟申请者数

0

收藏

0

关于TikTok

TikTok

TikTok

Late Stage

A short-form video entertainment app and social network platform

10,001+

员工数

Los Angeles

总部位置

$220B

企业估值

评价

3.8

10条评价

工作生活平衡

2.8

薪酬

3.7

企业文化

4.1

职业发展

3.2

管理层

2.9

68%

推荐给朋友

优点

Great team dynamics and support

Innovative and creative culture

Good learning opportunities

缺点

Work-life balance challenges

Fast-paced and stressful environment

High expectations and tight deadlines

薪资范围

49个数据点

Senior/L5

Senior/L5 · ACCESS ASSURANCE LEAD USDS

1份报告

$331,500

年薪总额

基本工资

$255,000

股票

-

奖金

-

$331,500

$331,500

面试经验

2次面试

难度

4.0

/ 5

时长

21-35周

体验

正面 0%

中性 0%

负面 100%

面试流程

1

Application Review

2

Recruiter Screen

3

Online Assessment

4

Behavioral Interview

5

Final Round

6

Offer

常见问题

Coding/Algorithm

Behavioral/STAR

Technical Knowledge

Culture Fit