This job is closed

We regret to inform you that the job you were interested in has been closed. Although this specific position is no longer available, we encourage you to continue exploring other opportunities on our job board.

Tiktokposted 8 months ago
$116,000 - $250,000/Yr
Full-time - Mid Level
New York, NY
Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services

About the position

TikTok is the leading destination for short-form mobile video, and our mission is to inspire creativity and bring joy. U.S. Data Security (USDS) is a subsidiary of TikTok in the U.S., created to enhance focus and governance on our data protection policies and content assurance protocols to ensure the safety of U.S. users. The USDS team is dedicated to providing oversight and protection of the TikTok platform and U.S. user data, allowing millions of Americans to use TikTok for learning, earning, self-expression, and entertainment. The teams within USDS include Trust & Safety, Security & Privacy, Engineering, User & Product Ops, Corporate Functions, and more, all working together to fulfill this commitment. The USDS Offensive Security and Privacy team serves as the Independent Testing and Validation pillar for USDS. This team conducts cyber threat simulations within the TikTok USDS environment to proactively identify vulnerabilities, misconfigurations, and defense gaps. By analyzing the organization's attack surface, which encompasses products, applications, controls, appliances, and infrastructure, the team aims to emulate adversaries and equip the organization against emerging threats. This involves improving identification, detection, protection, response, and remediation capabilities. The Platform Engineer role is crucial as it collaborates cross-functionally with all teams within the Offensive Security and Privacy pillar. The engineer will enable, operationalize, maintain, and automate day-to-day work, tools, applications, platforms, and processes from a technical standpoint. Candidates should possess a fundamental understanding of various security domains, excellent problem-solving skills, development capabilities, attention to detail, and a willingness to thrive in a fast-paced environment. The organization follows a hybrid work schedule, requiring employees to work in the office three days a week, with the possibility of changes based on management direction.

Responsibilities

  • Develop and maintain scalable and secure platform infrastructure for Offensive Security tools, applications accounts and platforms.
  • Implement and manage infrastructure and cloud services, ensuring high availability, fault tolerance and security best practices.
  • Utilize Infrastructure as Code (IaC) tools such as Terraform, Ansible, or CloudFormation for automation.
  • Design and automate CI/CD pipelines to streamline secure code & exploit development and deployment processes.
  • Collaborate with cross-functional teams to identify and mitigate security threats, and maintain security posture of platforms/tools/infrastructure.
  • Implement security measures, including firewalls, segmentation, encryption, and intrusion detection systems.
  • Collaborate with peers to schedule regular security assessments and vulnerability testing on team owned assets.
  • Work with XFN peers to implement solutions to process large data sets being produced as part of testing, streamlining of processes e.g., exploit approval, testing notification etc.

Requirements

  • Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field.
  • Experience in platform engineering, DevOps, DevSecOps, and/or infrastructure automation roles.
  • Proficiency with cloud platforms such as OCI, AWS, Google Cloud, and Azure.
  • Experience with Infrastructure as Code tools like Terraform, Ansible, or CloudFormation.
  • Strong knowledge of containerization technologies like Docker and Kubernetes.
  • Proficiency in development or scripting languages e.g., Python, Bash, Go.
  • Experience with CI/CD tools like Jenkins, GitLab CI, or CircleCI.

Nice-to-haves

  • Security Testing Experience or maintaining infrastructure and platforms for offensive security testing teams.
  • Relevant certifications such as AWS Certified Solutions Architect, Certified Kubernetes Administrator (CKA), or Offensive Security Certified Professional (OSCP).
  • Experience with serverless architectures and microservices.
  • Familiarity with security tools e.g., Nessus, Metasploit, Burp, or Wireshark.
  • Knowledge of advanced security concepts such as zero-trust architecture and threat modeling.
  • Experience in a high-availability, large-scale production environment.
  • Experience with automated security testing and compliance monitoring.
  • Strong understanding of security best practices and protocols, system administrator experience in Linux and Windows.

Benefits

  • 100% premium coverage for employee medical insurance, approximately 75% premium coverage for dependents, and a Health Savings Account (HSA) with a company match.
  • Dental, Vision, Short/Long term Disability, Basic Life, Voluntary Life and AD&D insurance plans.
  • Flexible Spending Account (FSA) options like Health Care, Limited Purpose and Dependent Care.
  • 10 paid holidays per year plus 17 days of Paid Personal Time Off (PPTO) (prorated upon hire and increased by tenure) and 10 paid sick days per year.
  • 12 weeks of paid Parental leave and 8 weeks of paid Supplemental Disability.
  • Mental and emotional health benefits through EAP and Lyra.
  • 401K company match, gym and cellphone service reimbursements.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service