Skip to main content

Application Security Engineer - Enterprise Engineering

**Summary:**

Meta's Enterprise Application Security team is seeking a passionate security engineer with a hacker mindset who derives purpose in life by identifying weaknesses and crafting creative solutions to eliminate those weaknesses at scale. We don't just identify and help fix security vulnerabilities - we go beyond by preventing security problems before they exist. You will be expected to operate at an expert technical level with developers and engineers across large organizations. You will be relied upon to provide application and infrastructure teams with security expertise necessary to build the secure enterprise that underpins Meta.

**Required Skills:**

Application Security Engineer - Enterprise Engineering Responsibilities:

1. Conceive, design, develop and improve industry-leading security tooling, automation and/or frameworks that enable enterprise teams at scale to deliver applications and services with appropriate security controls to meet evolving requirements for security and privacy

2. Identify and eliminate classes of security problems by shifting detection and prevention left into the development workflow

3. Provide just-in-time, actionable, technical security guidance to enterprise application and service teams through code reviews, penetration tests, adversarial testing, threat modeling, architecture design reviews, and other security activities

4. Identify and prioritize areas of improvement for security maturity across the enterprise

5. Ensure prioritization, resourcing, and timely delivery of work within a changing business environment

6. Collaborate with cross-functional teams to ensure security work is being prioritized and addressed

**Minimum Qualifications:**

Minimum Qualifications:

7. 4+ years work experience writing production-level code in Python, PHP, Java, Ruby, Go, Rust, C/C++, or similar language

8. 4+ years of work experience identifying and mitigating security issues in software (Python, PHP, Java, Ruby, Go, Rust, C/C++ or similar language) and knowledge of best practice secure code development

9. Experience in designing, analyzing and conducting threat model assessments of enterprise software and services

10. Experience fixing enterprise security problems across broad corporate boundaries using influence and relationships

11. Experience owning a particular component, feature or system

12. Proven communication skills and high attention to detail

**Preferred Qualifications:**

Preferred Qualifications:

13. B.S. or M.S. in Computer Science, Engineering, or related technical discipline, or equivalent experience

14. Experience in penetration testing or red team operations

15. Experience automating application security controls in large-scale enterprise environments

16. Experience writing software that enables or evaluates security controls in complex systems

17. Experience building and securing enterprise-scale software, services, and infrastructure

18. Broad knowledge of the security domain, which may include security investigations, incident management, digital forensics, offensive security, vulnerability management, application security, and other security disciplines

19. Contributions to the security community (public research, blogging, presentations, bug bounty, etc.)

**Public Compensation:**

$143,000/year to $208,000/year + bonus + equity + benefits

**Industry:** Internet

**Equal Opportunity:**

Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.

Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.


Similar jobs

Application Security Engineer - Enterprise Engineering

Full time
Oklahoma City, OK

Published on 08/27/2024

Share this job now