Logo
Apple

Security Engineer, Ad Platforms

Apple, Austin, Texas, us, 78716


Security Engineer, Ad Platforms

Austin,Texas,United States

Software and Services

At Apple, we work every single day to build products that enrich people’s lives. Our Advertising Platforms group makes it possible for people around the world to easily access informative and visionary content on their devices while helping publishers and developers promote and monetize their work. Our technology makes advertising possible on the App Store, Apple News, Stocks, and Apple TV. We help developers and marketers of all sizes drive app discovery across the App Store. Our display ads on Apple News and Stocks let advertisers promote their products alongside trusted content from the world’s best journalists. Sponsorship integrations and experiences in live sports on Apple TV help advertisers connect with passionate fans. Everything we do is with the unwavering commitment to privacy you expect from Apple. Because when advertising is done right, it benefits everyone!

Description

We're seeking a Security Engineer whose passionate about protecting critical infrastructure and services. As a Security engineer, you'll collaborate with engineering leaders, developers, quality engineers, and security teams to secure Ad Platforms’ applications and services, present and future. You can expect to assess the risk landscape for products, and drive risk mitigation. You'll work with partner teams on security tools, penetration testing and security testing methodologies to keep Ad Platforms services secured. You'll also experience a rapidly evolving technology & threat landscape, and contribute to the education of teams on compliance activities throughout the development lifecycle. You should expect to be exposed to a broad range of systems, including web applications, big data, distributed processing, and virtualized environments. Responsibilities include: - Conduct security reviews of the service stack, including apps built on cloud and emerging technologies - Build new security tooling and services to support developers at scale - Perform security tests on new apps, products, and features before release - Review source code for potential security issues - Design and automate security test cases, to check for vulnerabilities or broken/missing security controls - Provide specific risk assessment & remediation guidelines for developers & business owners - Triage & review findings from security tools, including static & dynamic scanners - Research latest security best practices, trends, threats & vulnerabilities and technology frameworks - Document and share security guidelines for common security issues, remediation guidance, and security baselines - Work with developers to provide and mentor them on secure development practices - Develop tools & exploits to support security testing - Write automations to streamline common tasks, tests, workflows, etc.

Minimum Qualifications

2+ years of relevant experience in Information Security

Working experience in a scripting language (e.g., Python, Bash, Go).

Experience writing production level code in Java or Javascript

Knowledge of development and integration tools and technologies (e.g. CI/CD)

Working experience in securing applications in cloud (i.e. Docker, Kubernetes)

Familiarity with common security tools i.e. SAST or DAST

Familiarity with core networking concepts (firewalls, load balancers, etc)

Familiarity with cryptography

Prior experience in web application development including security threats, exploits, prevention (Injection, platform hardening, etc)

Ability to triage, reproduce, and recommend remediations for vulnerabilities

Excellent communication and interpersonal skills

Bachelor's in Information System Security, Cybersecurity, Computer Science etc.

Key Qualifications

Preferred Qualifications

Passion for understanding and researching vulnerabilities and exploitation techniques

Master's in Information System Security, Cybersecurity, Computer Science etc.

Education & Experience

Additional Requirements

Apple is an equal opportunity employer that is committed to inclusion and diversity. We take affirmative action to ensure equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics.Learn more about your EEO rights as an applicant. (https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf)

Apple Footer

Apple is an equal opportunity employer that is committed to inclusion and diversity. We take affirmative action to ensure equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics. Learn more about your EEO rights as an applicant (Opens in a new window) .

Apple will not discriminate or retaliate against applicants who inquire about, disclose, or discuss their compensation or that of other applicants. United States Department of Labor. Learn more (Opens in a new window) .

Apple will consider for employment all qualified applicants with criminal histories in a manner consistent with applicable law. If you’re applying for a position in San Francisco, review the San Francisco Fair Chance Ordinance guidelines (opens in a new window) applicable in your area.

Apple participates in the E-Verify program in certain locations as required by law. Learn more about the E-Verify program (Opens in a new window) .

Apple is committed to working with and providing reasonable accommodation to applicants with physical and mental disabilities. Reasonable Accommodation and Drug Free Workplace policy Learn more (Opens in a new window) .

Apple is a drug-free workplace. Reasonable Accommodation and Drug Free Workplace policy Learn more (Opens in a new window) .