Security Engineer
Role details
Job location
Tech stack
Job description
Do you want first crack at new Apple Pay products? Come help them be more secure by breaking them first!
Join our Apple Pay Security Engineering team and help us deliver the safest and best user-experience. We work on Payments, Transit, Access, & Identity, across hardware, software, and server. If you're passionate about digital security and customer safety, we may have the job for you., You're a security engineer at heart: a pentester who breaks hardware, software, and services to find what others miss. You use AI to move faster and improve the tooling as you go: not shipping product features but building the Skills, Agents, and workflows that make our security testing sharper. Above all, you can disagree with the AI, prove it wrong, and make it better instead of rubber-stamping its results.
Requirements
- Drive and agency: You know how to use tools to learn new areas, experiment, and develop security issue discovery capabilities. You're curios and interested in learning new areas. You have a sense of ownership and pride in improving the environment.
- Security engineering foundation: You've threat modeled hardware and/or software designs, determining where attacks would come from and what protections exist in a design. You've performed hands-on security testing (pentesting, negative testing, or equivalent). You're skilled at security code reviews.
- AI/agentic fluency: You have hands-on experience using agentic/LLM-based coding tools. You're able to build and refine Skills, Agents and AI workflows, not just operate them. You're able to independently verify or refute a finding rather than accept it at face value
Preferred Qualifications
- Superior problem solving and debugging skills
- Understanding of the use of various cryptographic algorithms (RSA, AES, SHA, etc.)
- Able to clearly communicate across many teams (Can you nicely tell the developer that they have a bug?)
- Ability to propose new designs and architectural improvements (Can you redesign what you just broke?)
- Experience either shipping software or integrating security into every stage of the software lifecycle.