Security Engineer, Wearables (RL)

The Meta Game, Inc.
Redmond, WA, United States
8 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$219,000.0 - $301,000.0
Working hours
Regular working hours
Job source

Tech stack

C (Programming Language) Artificial Intelligence Amazon Web Services C++ (Programming Language) Cyber Security Web Development Firmware Intrusion Detection and Prevention Python (Programming Language) Key Management Software Vulnerability Management Backend
+4 more
Information Technology Build Tools Wearables Service Stack

Job description

The Reality Labs Trust Security team secures Meta’s Reality Labs devices from factory to user, ensuring threat resilience and regulatory compliance across wearables, VR, and next-gen consumer electronics. We build and scale foundational security capabilities including cryptographic device provisioning, vulnerability management, and manufacturing security operations. The team works across diverse technology stacks (on-device firmware, backend infrastructure, AI automation) and collaborates with cross-functional partners to launch secure products at scale.We are looking for a Security Engineer to join the RL Trust Security team to own and drive the technical direction for securing Meta’s devices across their full lifecycle. Your work covers device manufacturing security, cryptographic provisioning, vulnerability management, and regulatory compliance (FDA, EU CRA) for products used by millions., 1. Influence and align the organization’s vision and strategy, while engaging our teams to develop and deliver specific, multi-year roadmaps, programs, and projects. Ensure prioritization, resourcing, and timely delivery of this work within a changing business environment

  1. Own the technical strategy for securing wearable device bring-up: provisioning cryptographic identities at factory sites, enabling security features through Meta’s Product Development Process (PDP), and ensuring only authorized devices can access Meta services

  2. Architect an agentic AI automation layer for vulnerability management that spans detection, triage, and remediation, across a large-scale multi-party codebase and thousands of third-party dependencies.

  3. Drive system design for SBOM (Software Bill of Materials) generation and end-to-end vulnerability lifecycle tooling that satisfies regulatory requirements including FDA pre-market cybersecurity guidance for connected devices and EU compliance obligations.

  4. Lead platform-level security improvements across a multi-product device portfolio, including cryptographic identity infrastructure modernization and DRM provisioning architecture upgrades

  5. Drive end-to-end security for manufacturing infrastructure: conduct threat modelling to prioritise risks, define infrastructure and cloud security controls and hardening standards, and establish detection and monitoring pipelines that provide continuous visibility into adversarial activity across factory locations.

  6. Partner with cross functional teams and contract manufacturing partners to drive alignment on security trade-offs and risk acceptance for device provisioning models.

  7. The work spans hardware cryptography, AI-native vulnerability remediation, and manufacturing security operations across Rust, C, C++, and Python. You will build systems that secure devices from silicon-level provisioning through end-of-life vulnerability patching.

Requirements

  1. Experience developing and delivering information on program status for leadership

  2. B.S. or M.S. Computer Science, Engineering, or related technical discipline, or equivalent experience

  3. Experience leading and managing complex cross-functional programs

  4. Experience with exploiting common security vulnerabilities, remediation frameworks, AWS, Threat Modelling, Threat Detection, Security Incident Handling, Infrastructure Hardening

  5. 10+ years experience dealing with security issues web programming languages, development practices, and common bug patterns

Preferred Qualifications:

Preferred Qualifications:

  1. Experience writing software that enables security processes

  2. Demonstrated ongoing AI skill development (e.g., prompt/context engineering, agent orchestration) and staying current with emerging AI technologies

  3. Experience adhering to and implementing responsible, ethical AI practices (e.g., risk assessment, bias mitigation, quality and accuracy reviews)

  4. Experience contributing to the security community (public research, blogging, presentations, etc.)

  5. Demonstrated ability to integrate AI tools to optimize/redesign workflows and drive measurable impact (e.g., efficiency gains, quality improvements)

  6. Experience with tools and technologies: Rust, C, C++, Python, cryptographic key management and provisioning (HSMs, device identity infrastructure), Code signing, secure boot, and device attestation and SBOM tooling for regulatory compliance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Structuring and scaling the backend engineering team

Stefan Lingler Stefan Lingler +1 · Coffee With Developers

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac · WWC 2021

3:07 min

Mainstreaming wearable AI and early adoption by disabled users

Artur Ortega · A11y + AI

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:12 min

Choosing TypeScript for complex backend applications

Maximilian Otto Maximilian Otto · WWC 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all