Application Security Engineer - Enterprise Engineering
Onsite
New York City, NY, United States
New York City, NY, United States
Posted 22 days ago
Job Details
Meta's Enterprise Engineering Application Security team is seeking a passionate security engineer with a hacker mindset who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be expected to operate at an expert technical level with developers and engineers across large organizations. You will be relied upon to provide engineering and product teams with the web, mobile, or native-code security expertise necessary to build great products. Come help us make life hard for the bad guys. Application Security Engineer - Enterprise Engineering Responsibilities:
- Engaging with our teams to design, develop, and deliver applications that meet evolving requirements for security and privacy. Ensure direction, prioritization, and timely delivery of this work within a changing business environment.
- Automated Analysis and Secure Frameworks: build and deploy automation (static and dynamic analysis) and frameworks with software engineers that enable Meta to operate with appropriate security controls across all of our products and services.
- Engineer Guidance: provide detailed technical guidance and education to developers that help prevent the introduction of vulnerabilities. Develop guidance based on output from static analysis platforms, vulnerability analysis tools, posture management tools, and other security assurance activities.
- Security Reviews: perform periodic manual design and implementation reviews of products and services that make up the Meta ecosystem, including tools built in Python, containerized applications, web based services. Design methods for automating manual reviews to scale services to our internal customers.
- 8+ years of experience identifying and mitigating security issues in software (python, ruby, Java). Knowledge of best practice secure code development
- Experience leading and managing complex cross-functional security programs.
- Experience with exploiting common security vulnerabilities in software.
- Experience writing software that enables or evaluates security control in complex systems
- 3+ years of experience in penetration testing or red team operations
- Experience automating security controls in cloud environments (e.g. AWS, GCP, Azure)
- Contributions to the security community (public research, blogging, presentations, bug bounty, etc.)
Learn more about Meta
Help us maintain the quality of jobs posted on PowerToFly. Let us know if this job is closed.
Mission
We're connecting diverse talent to big career moves. Meeting people who boost your career is hard - yet networking is key to growth and economic empowerment. We’re here to support you - within your current workplace or somewhere new. Upskill, join daily virtual events, apply to roles (it’s free!).
Are you hiring? Join our platform for diversifiying your team