Security Engineer (Penetration Tester) - Security Assurance

5 Months ago • All levels • Cyber Security

Job Summary

Job Description

ByteDance's Security Assurance team seeks a talented Security Engineer (Penetration Tester) to strengthen their security posture. Responsibilities include designing and conducting penetration testing, identifying vulnerabilities, certifying systems, and collaborating with product teams to improve security practices. The ideal candidate will have a strong background in web application security, mobile app security, cloud security, and relevant programming languages. This role involves identifying and resolving security issues, conducting security reviews, and providing security engineering support.
Must have:
  • Background in Computer Science/Engineering or Information Systems
  • Strong knowledge in web application security, mobile app security, cloud security, and thick client security
  • Solid experience in coding with JavaScript (Node JS), Go, Python, Java, C++, or Rust
  • Good project management skills and teamwork
Good to have:
  • CTF player experience
  • CVEs (excluding vulnerabilities like XSS, CSRF in random CMS)
  • BugBounty experience with reputable statistics in HackerOne, BugCrowd etc.

Job Details

Responsibilities
About ByteDance Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content. Why Join Us Creation is the core of ByteDance's purpose. Our products are built to help imaginations thrive. This is doubly true of the teams that make our innovations possible. Together, we inspire creativity and enrich life - a mission we aim towards achieving every day. To us, every challenge, no matter how ambiguous, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always. At ByteDance, we create together and grow together. That's how we drive impact - for ourselves, our company, and the users we serve. Join us. About the Security Assurance Team at ByteDance The team is missioned to build infrastructures, platforms and technologies, as well as to support cross-functional teams to protect our users, products and infrastructures. In this team, you'll have a unique opportunity to have first-hand exposure to the strategy of the company in key security initiatives, especially in building scalable and secure-by-design systems and solutions. Our challenges are not your regular day-to-day technical problems; you'll be part of a team that's developing new solutions to new challenges of a kind not previously addressed by big tech. It's working fast, at scale, and we're making a difference. Responsibilities - Continuously design and conduct penetration testing to determine if infrastructure components, systems and applications meet confidentiality, integrity, authentication, availability, authorisation, and nonrepudiation standards in the staging/production environment. - Translate requirements into test plan, write and execute test scripts or codes in line with standards and procedures to determine vulnerability to attacks. - Certify infrastructure components, systems and applications that meet security standards. - To identify risks and actively take ownership to resolve any potential project issues. - Conduct technical security reviews for any new products and feature requirements. - Provide security engineering support to product teams to help identify potential security flaws in the early stages of SDLC. - Collaborate closely with other parts of the security team and product teams to design defense-in-depth controls that limit attackers' ability and improve our security postures. - Continuously conduct security research and strive to innovate.
Qualifications
- Background in Computer Science, Computer Engineering, Information Systems or other STEM disciplines. - Strong knowledge in some of these various disciplines: web application security, mobile app security, cloud security and thick client security. - Solid experience in writing and reviewing code in at least one of the following programming languages: JavaScript (Node JS), Go, Python, Java, C++, Rust. - Good project management skills and focused teamwork. Preferred Requirements - CTF players, live competitions and hacking events experience. - CVEs (excluding vulnerabilities such as XSS, CSRF in random CMS) are preferred. - BugBounty experience with reputable statistics in HackerOne, BugCrowd etc. ByteDance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At ByteDance, our mission is to inspire creativity and enrich life. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.

Similar Jobs

Epic Games - Senior Gameplay Systems Programmer, Fortnite

Epic Games

Cary, North Carolina, United States (On-Site)
2 Months ago
Dream Sports - Engineering Manager - Backend

Dream Sports

Mumbai, Maharashtra, India (On-Site)
1 Month ago
StoneX Group  Inc  - UAT Tester

StoneX Group Inc

Bengaluru, Karnataka, India (On-Site)
5 Months ago
ByteDance - Android Software Engineer (Web and Client) Intern

ByteDance

Singapore (On-Site)
6 Days ago
Velsera - Technical Lead, Engineering

Velsera

Pune, Maharashtra, India (Hybrid)
5 Months ago
PwC - IN_Senior Associate_Agile PM_Advisory Corporate_Advisory_Pune

PwC

Pune, Maharashtra, India (On-Site)
5 Months ago
ARHS - Cloud Engineer / Security and Compliance Specialist

ARHS

Brussels, Brussels, Belgium (Remote)
4 Months ago
PwC - Workday reporting Sr.

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
6 Months ago
ByteDance - Senior Infrastructure Security Engineer, Security Assurance

ByteDance

Singapore (On-Site)
5 Months ago
Axinous - Technical Customer Success Manager

Axinous

Hong Kong (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Meta - Production Engineering

Meta

Bellevue, Washington, United States (On-Site)
4 Months ago
Trend Micro - Fullstack Development Engineer

Trend Micro

Manila, Metro Manila, Philippines (On-Site)
15 Years ago
Next Level Business Services - Java Developer (Full Time)

Next Level Business Services

Littleton, Colorado, United States (On-Site)
5 Months ago
Nagarro - Staff Engineer, Java

Nagarro

(On-Site)
5 Months ago
Meta - Software Engineer, Machine Learning

Meta

Mountain View, California, United States (On-Site)
4 Months ago
ByteDance - Software Development Engineer Graduate (Distributed NoSQL Database Systems)

ByteDance

Seattle, Washington, United States (On-Site)
6 Days ago
DEVOTEAM - Data Driven | MLOps Engineer

DEVOTEAM

Lisbon, Lisbon, Portugal (Remote)
5 Months ago
ByteDance - Research Scientist in Multimodal Graduate (Applied Machine Learning) - 2024 Start (PhD)

ByteDance

San Jose, California, United States (On-Site)
5 Months ago
The Walt Disney Company - Lead Software Engineer (Identity)

The Walt Disney Company

Seattle, Washington, United States (On-Site)
4 Months ago
ByteDance - Backend Software Engineer - Global E-Commerce Supply Chain Billing & Settlement

ByteDance

San Jose, California, United States (On-Site)
5 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Singapore

ByteDance - NLP Engineer Intern - 2025 Start

ByteDance

Singapore (On-Site)
5 Months ago
ByteDance - Tech Lead Manager - Fullstack-Customer Service Platform-SG

ByteDance

Singapore (On-Site)
5 Months ago
ByteDance - Project Manager - Global Mobility Services

ByteDance

Singapore (On-Site)
1 Week ago
ByteDance - Senior Backend Software Engineer, Trust and Safety

ByteDance

Singapore (On-Site)
5 Months ago
ByteDance - Cloud Technical Support

ByteDance

Singapore (On-Site)
1 Week ago
HoYoverse - CRM Lifecycle Manager

HoYoverse

Singapore (On-Site)
3 Weeks ago
The Walt Disney Company - Intern, Lifecycle & Retention, Disney+

The Walt Disney Company

Singapore, Singapore (On-Site)
1 Month ago
GoTo Group - Senior Manager Data Engineering

GoTo Group

Singapore (On-Site)
5 Months ago
Meta - Software Engineer, Machine Learning

Meta

Singapore (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ByteDance - Threat Intelligence Engineer, Security Assurance

ByteDance

Singapore (On-Site)
4 Months ago
Notion - Application Security Engineer

Notion

San Francisco, California, United States (On-Site)
5 Months ago
PwC - IN-Associate–ERP Controls- ITRA– Advisory – Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
5 Months ago
Playtika - Application Security Researcher

Playtika

Israel (On-Site)
5 Months ago
The Walt Disney Company - Senior Security Specialist, Information Security - Security Solution Architect

The Walt Disney Company

Orlando, Florida, United States (On-Site)
1 Month ago
Tencent - Security Software Engineer I

Tencent

Palo Alto, California, United States (On-Site)
3 Months ago
ION - Network Security Engineer

ION

Milan, Lombardy, Italy (Hybrid)
5 Months ago
The Walt Disney Company - Senior Security Specialist, Compliance

The Walt Disney Company

Burbank, California, United States (On-Site)
6 Days ago
Dream Games - Workplace Security Manager

Dream Games

İstanbul, Türkiye (On-Site)
1 Month ago
Xerox - Sr. Security Engineer, Product Security

Xerox

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Where imagination meets innovation, delivering limitless gaming experiences.

New York, New York, United States (On-Site)

Jakarta, Jakarta, Indonesia (On-Site)

San Jose, California, United States (On-Site)

San Jose, California, United States (On-Site)

Singapore (On-Site)

Taguig, Metro Manila, Philippines (On-Site)

View All Jobs

Get notified when new jobs are added by ByteDance

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug