Responsibilities
TikTok is the leading destination for short-form mobile video. At TikTok, our mission is to inspire creativity and bring joy. TikTok's global headquarters are in Los Angeles and Singapore, and its offices include New York, London, Dublin, Paris, Berlin, Dubai, Jakarta, Seoul, and Tokyo.
Why Join Us
Creation is the core of TikTok's purpose. Our products are built to help imaginations thrive. This is doubly true of the teams that make our innovations possible. Together, we inspire creativity and enrich life - a mission we aim towards achieving every day. To us, every challenge, no matter how ambiguous, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always. At TikTok, we create together and grow together. That's how we drive impact-for ourselves, our company, and the users we serve. Join us.
About the Team
The team's mission is to build secure infrastructure, platforms and technologies, as well as to support cross-functional teams to protect our users, products and infrastructure. In this team you'll have a unique opportunity to have first-hand exposure to the strategy of the company in key security initiatives, especially in building scalable and secure-by-design systems and solutions. Our challenges are not your regular day-to-day technical problems; you'll be part of a team that's developing new solutions to new challenges of a kind not previously addressed by big tech. It's working fast, at scale, and we're making a difference.
Responsibilities:
- Conduct vulnerability research of the most critical systems of core product ecosystems such as TikTok, TikTok LIVE, Lemon8, and others.
- Perform variant analysis of vulnerabilities, identify underlying patterns, and design mitigations that could address whole classes of attack vectors.
- Collaborate closely with other parts of the security team and product teams to design defense-in-depth controls that limit attackers' ability and improve our security posture.
- Monitor and analyze emerging cyber threats, vulnerabilities, and exploits relevant to our infrastructure and products.
- Bring insight into all aspects of modern security issues to our products and rapidly developing prototypes for mitigations.
Qualifications
Minimum Qualifications:
- Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, or other relevant majors.
- 3+ years of experience in ethical hacking, vulnerability research, product security, exploit development, penetration testing, or being a member of a red team.
- Advanced knowledge and understanding in at least one of the following disciplines: web application security, mobile app security, network security, operating system internals and hardening, applied cryptography, cloud computing.
- Strong problem-solving skills and excellent debugging / troubleshooting skills.
TikTok is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At TikTok, our mission is to inspire creativity and bring joy. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.