Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
T
TikTok
Security Software Engineer, Insider Risk - Global Security Organization
Career Insights for Risk Engineer
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on California data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Risk Engineer is responsible for identifying, analyzing and minimizing risks often associated with construction or resource extraction projects. May work for insurance companies, or engineering firms.
$147,120 / year median in California
Job Description
Responsibilities The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates. Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us
- whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop
- GSO protects their data and privacy, so they can have a secure and trustworthy experience.
- Review critical services involved in Insider risk security incidents and work with RD teams to scope technical remediations and security posture improvements (e.g. re-architecting a manual operations workflow to remove the viewability of an API secret token)
- Help stakeholders identify relevant strategies for mitigating insider threats for users and the business.
- Maintain and support compliant data flows and automation access to allow for interoperability across various business regions.
- Directly contribute to technical projects via committing code, root cause analyses, code reviews, and architecture design.
- Work with cross functional teams globally to ensure alignment, collect feedback on automations, and deploy solutions to get cross functional adoption. Qualifications Minimum Qualification(s)
- Proficiency in at least one of the following: Python, Golang, Typescript
- Demonstrated experience with SQL
- Familiarity with application security principles
- Strong technical documentation and reporting skills
- Ability to handle confidential information with discretion Preferred Qualification(s)
- Bachelor's degree or industry equivalent work experience in Computer Science or Computer Engineering
- 3+ years of industry experience as an engineer
- Experience performing security production-readiness reviews and securing the software development lifecycle (SDLC)
- Knowledge of online deceptive and manipulative behavior. Knowledge of the signals of specific threat actors, their cross-platform tactics, and how they evolve or change over time.
- Working knowledge of cloud platforms (i.e. OCI, GCP, AWS, etc)
- Demonstrates excellent organizational, time management, and problem-solving skills
- Works well within time/budget constraints to solve problems or meet objectives
- Ability to communicate technical concepts to a broad range of technical and non-technical staff Job Information [For Pay Transparency] Compensation Description (annually) The base salary range for this position in the selected city is $162000
- $316800 annually.
Candidates:
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state, and local laws including the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Our company believes that criminal history may have a direct, adverse and negative relationship on the following job duties, potentially resulting in the withdrawal of the conditional offer of employment: 1. Interacting and occasionally having unsupervised contact with internal/external clients and/or colleagues; 2. Appropriately handling and managing confidential information including proprietary and trade secret information and access to information technology systems; and 3. Exercising sound judgment.Benefits
- Paid Time Off (PTO)
- Sick Leave
- 401(k) Plans
- Health Insurance