Security Engineer, AIS at Apple
London, England, United Kingdom -
Full Time


Start Date

Immediate

Expiry Date

03 Aug, 26

Salary

0.0

Posted On

05 May, 26

Experience

2 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Offensive Security, Automation, Penetration Testing, Threat Modeling, Secure Architecture Design, Go, Swift, Adversary Simulation, Cloud Security, Vulnerability Chaining, Risk Communication, Detection Validation

Industry

Computers and Electronics Manufacturing

Description
The Adversary Simulation Program (ASP) is a branch of Information Security responsible for emulating real-world adversaries through offensive security engagements and automation. We build and operate the frameworks and tooling that power our engagements and extend detection and response capabilities across Apple. We are seeking a Security Engineer with a passion for offensive security and automation to conduct adversary simulations, execute offensive security engagements, and build the tooling that makes those efforts scalable and repeatable. DESCRIPTION As a Security Engineer on this team, your work will split between hands-on offensive security engagements and building the automation that makes those engagements scale. On any given week you might be scoping an adversary simulation against a production service, writing Go code to automate parts of the engagement lifecycle, or translating your findings into clear remediation guidance for engineering teams. You will think like an attacker - planning intrusion paths, chaining vulnerabilities, and testing defences - while also partnering with detection and response teams to close the gaps you uncover. This is a role where you build what you use: the frameworks, tooling, and workflows you develop directly power the engagements you run, and your work shapes how the organisation identifies and responds to real-world threats. MINIMUM QUALIFICATIONS Experience in a security engineer, security consultant, penetration tester, or similar role Expertise in threat modeling, secure architecture design, and reviewing complex systems Strong capability in penetration testing applications, infrastructure, cloud environments and Goland Experience communicating risk to engineering and leadership teams PREFERRED QUALIFICATIONS Bachelor's degree in Computer Science or related field (or equivalent experience) Relevant certifications (e.g., OSCP, OSWE, OSMR) Experience with CTFs, bug bounty programs, or published research Community contributions like public CVEs, open source tools, blogs, or talks Experience constructing adversary scenario narratives and building exploit chains Experience with adversary simulation frameworks or detection validation tooling Experience with Swift
Responsibilities
Conduct adversary simulations and offensive security engagements to emulate real-world threats. Develop scalable automation frameworks and tooling to enhance detection and response capabilities across the organization.
Loading...