Offensive Security Engineer
Listed on 2026-02-07
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
Seattle, Washington, United States Software and Services
We are the Apple Services Engineering (ASE) Security Red Team. We focus on deep technical security review work of critical ASE services and infrastructure. These security reviews will be scoped and focused on review depth and quality. We are growing our team and looking an Offensive Security Engineer to lead deep reviews that identify meaningful security improvement opportunities. In this role, you will work closely with the security engineering, Info Sec, privacy, SRE, detection, and design review teams to keep Apple's services secure for our users.
You will identify security weaknesses, validate and design detection mechanisms, and provide actionable recommendations to enhance our security posture. You will go beyond simple to find risks and identify obscure and complex risks within complex services. You will collaborate with various architecture and engineering teams to continuously validate and improve our security controls and detection capabilities, with a strong focus on developing repeatable testing frameworks and metrics-driven security improvements.
If you love diving into complex and important systems, and driving the security of that system over time, we want to talk to you!
In this role, you will scope and lead focused security reviews on critical internet scale applications and supporting infrastructure. You will learn the services architecture and risk profile to build a scope that enables a meaningful security review.
Responsibilities- Responsible for the enumerating risks, planning reviews, and executing those reviews to identify vulnerabilities and improvement opportunities
- A technical expert in uncommon and obscure risks
- A technical expert in complex business logic risks that require a depth of understanding of the services and their architectures
- Ability to identify areas that are ripe for improvement and establish appropriate security goals
- Current on new security technologies, vulnerabilities, and methodologies
- Ability to develop proof of concept systems to automate security recommendations, vulnerability discovery, and process workflows
- 4+ years in an information security field or software engineering; 2 or more of those years conducting security reviews
- 2+ years of manually reviewing source code to assist in finding vulnerabilities
- Ability to adapt quickly to prioritization shifts and investigate unfamiliar technologies
- Extensive infrastructure, cloud, and application security experience
- Experience communicating risk to engineering and leadership teams
- Ability to reason about security of a large and complex application or infrastructure
- Experience going deep on complex systems for extended engagements
- 8+ years in an information security field; 4 or more of those years conducting security reviews
- Bachelors degree in Computer Science / Engineering or a related, with emphasis in security related fields (or equivalent experience)
- Experience constructing threat scenario narratives and building exploit chains
- Ability to reason about and influence software architecture for security
- Community contributions like public CVEs, bug bounty recognition, open source tools, blogs, talks etc.
Apple employees also have the opportunity to become an Apple shareholder through participation in Apple’s discretionary employee stock programs. Apple employees are eligible for discretionary restricted stock unit awards, and can purchase Apple stock at a discount if voluntarily participating in Apple’s Employee Stock Purchase Plan. You’ll also receive benefits including:
Comprehensive medical and dental coverage, retirement benefits, a range of discounted products and free services, and for formal education related to advancing your career at Apple, reimbursement for certain educational expenses — including tuition. Additionally, this role might be eligible for discretionary bonuses or commission payments as well as relocation. Learn more about Apple Benefits.
Note:
Apple benefit, compensation and employee stock programs are subject to eligibility requirements and other terms of the applicable plan or program.
Apple is an equal opportunity employer that is committed to inclusion and diversity. We seek to promote equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics. Learn more about your EEO rights as an applicant .
Apple accepts applications to this posting on an ongoing basis.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).