Application Security Engineer - Enterprise Engineering - Meta
Fremont, CA
About the Job
Meta's Enterprise Application Security team is seeking a passionate security engineer with a hacker mindset who derives purpose in life by identifying weaknesses and crafting creative solutions to eliminate those weaknesses at scale. We don't just identify and help fix security vulnerabilities - we go beyond by preventing security problems before they exist. You will be expected to operate at an expert technical level with developers and engineers across large organizations. You will be relied upon to provide application and infrastructure teams with security expertise necessary to build the secure enterprise that underpins Meta.
RESPONSIBILITIES
Application Security Engineer - Enterprise Engineering Responsibilities:
MINIMUM QUALIFICATIONS
Minimum Qualifications:
PREFERRED QUALIFICATIONS
Preferred Qualifications:
RESPONSIBILITIES
Application Security Engineer - Enterprise Engineering Responsibilities:
- Conceive, design, develop and improve industry-leading security tooling, automation and/or frameworks that enable enterprise teams at scale to deliver applications and services with appropriate security controls to meet evolving requirements for security and privacy
- Identify and eliminate classes of security problems by shifting detection and prevention left into the development workflow
- Provide just-in-time, actionable, technical security guidance to enterprise application and service teams through code reviews, penetration tests, adversarial testing, threat modeling, architecture design reviews, and other security activities
- Ensure prioritization, resourcing, and timely delivery of work within a changing business environment
- Collaborate with cross-functional teams to ensure security work is being prioritized and addressed
MINIMUM QUALIFICATIONS
Minimum Qualifications:
- 4+ years work experience writing production-level code in Python, PHP, Java, Ruby, Go, Rust, C/C++, or similar language
- Work experience identifying and mitigating security issues in software (Python, PHP, Java, Ruby, Go, Rust, C/C++ or similar language), or conducting threat model assessments of enterprise software and services, or performing penetration tests of enterprise applications and systems
- Experience owning a particular project, component, feature or system
- Proven communication skills and high attention to detail
PREFERRED QUALIFICATIONS
Preferred Qualifications:
- B.S. or M.S. in Computer Science, Engineering, or related technical discipline, or equivalent experience
- Experience automating application security controls in large-scale enterprise environments
- Experience writing software that enables or evaluates security controls in complex systems
- Experience building and securing enterprise-scale software, services, and infrastructure
- Knowledge of various security domains, which may include security investigations, incident management, digital forensics, offensive security, vulnerability management, application security, and other security disciplines
- Contributions to the security community (public research, blogging, presentations, bug bounty, etc.)
Source : Meta