Platform Security Engineer
Track this application
Get Started FreeMatch score against your CV
Get Started FreeTailor your resume to this job
Get Started FreeAbout interviewing at Apple
One of tech's least standardized loops: you interview for a specific team, and every stage belongs to it. Recruiter/hiring-manager screen, one to three 45–60 minute Coderpad coding screens, a system design round shaped by Apple's reliability and privacy constraints, and a behavioral round — then a panel debrief. There is no central question bank; questions map to the team's real stack.
Read the full Apple interview process →Description
Summary
The Wallet & Payments Security Solutions team sits at the intersection of developer experience and customer trust, building the foundational security layer that every product in the Apple Pay portfolio depends on. We are a group of security engineers passionate about enabling fast, safe engineering at scale across a modern, Kubernetes-based multi-cloud platform. This role is an opportunity to shape secure-by-default practices across Apple Pay engineering organizations working on Payments, Transit, Access, & Identity products. If you're passionate about security and customer safety, we may have the job for you.Description
As a Platform Security Engineer on the Wallet & Payments Security Solutions team, you will design, build, and operate security application frameworks and solutions for a Kubernetes-based developer platform spanning multiple cloud providers. You will partner closely with platform and product engineering teams to embed security into every stage of the development lifecycle, ensuring guardrails never become friction. Your work will directly protect Apple customers and the engineers who build the products they rely on every day. Further, as part of this role, you will frequently collaborate with other security engineers and architects across Apple to identify, define and design security solutions which elevate overall security profile of Apple Services.Key Responsibilities
Develop internal frameworks, libraries, tools and processes that make the secure path the easiest path for every engineer on the platform Design and implement security frameworks, controls, tooling, and automation for a Kubernetes-based multi-cloud platform serving Wallet & Payments Engineering Champion secure-by-default infrastructure patterns and drive adoption of safe engineering practices across the organization without sacrificing developer velocity Partner with platform, product, and infrastructure engineering teams to identify security risks and deliver pragmatic mitigations at the architectural level Conduct threat modeling of new platform capabilities to incorporate security during early phases of platform development Respond to and lead resolution of incidents affecting the security of developer platform, conducting thorough post-incident reviews Work AI-forward by using coding agents and LLM-based tooling as a normal part of development, and own the correctness of what you ship regardless of what drafted it.Minimum Qualifications
Experience in platform security and/or software engineering experience in infrastructure and application development, or a closely related security engineering discipline Experience in Go, Kotlin/Java and Spring Framework. Ability to communicate thoughtfully and clearly, both verbally and in writing, to discuss complex technical concepts with diverse audiences, including global teams. Passion for developer enablement and building "security as a product" The tenacity and perseverance to drive a complex project all the way from conception to production.Preferred Qualifications
BS in Computer Science or equivalent experience/skills in application development and security. Prior experience contributing to or driving a secure-by-default platform initiative across a large engineering organization Experience with Identity and Access management frameworks Deep expertise in Kubernetes security, including RBAC, admission control, pod security standards, network policy, and workload identity Experience designing and implementing security controls across at least two major cloud providers and not just defining policies. Experience hardening containers and orchestration: image provenance, admission control, runtime and network policy, service mesh configuration, and clean isolation across micro services Experience with Supply Chain Security and optimizing Vulnerability management loop. Identity protocols and applied cryptography in practice: OAuth2, OIDC, JWT, SAML, mutual TLS, PKI, encryption and signing primitives. Fluency with coding agents and LLM-based development tooling, and judgment about when to trust their output.More engineering roles at Apple
Senior iOS Engineer - Creativity Apps
Apple·Zürich
Senior iOS Engineer - Creativity Apps
Apple·Berlin
Site Reliability Engineer (SRE), Observability, London
Apple·London
Internship - Software Engineering - Wireless Data Science New
Apple·Munich
Internship - Software Engineering - AI-Augmented Static Code AnalysisNew
Apple·Munich