Security Engineer - Security Risk Management
Track this application
Get Started FreeMatch score against your CV
Get Started FreeTailor your resume to this job
Get Started FreeAbout interviewing at Meta
Recruiter screen, a technical screen (60-minute asynchronous challenge or paired live coding), a short culture-fit questionnaire, then a virtual onsite of about four rounds: fast-paced coding with multiple problems per round, system design scoped to level, a lighter behavioral, and an AI-enabled coding round assessing how you work with a coding assistant.
Read the full Meta interview process →Description
About
The Meta Security team is responsible for improving the security posture of the software and services used throughout our company. Our work spans Facebook, Instagram, WhatsApp, Oculus, and all of the underlying systems and infrastructure that power these products behind the scenes. We are seeking a committed and experienced security engineer to join our Security Risk Management (SRM) team to help design and build solutions to: * Drive better understanding of security risk and enable investment decisions through automation, monitoring, and tracking of Meta’s security tools, systems, and controls * Enable security and software engineers to seamlessly respond to requests to prove effective design and operation of security capabilities * Increase maturity of security capabilities through control improvements and redesign
Responsibilities
- Work with a team of software, data, and security engineers that design, build, and own software solutions that scale high fidelity security risk contextualization, tracking, and reporting
- Understand and influence evolution of security capabilities across various domains to scale and automate: a) monitoring the effectiveness, and b) increasing the maturity of those capabilities
- Design and build solutions to scale managing and responding to risk management & compliance related requests
Minimum Qualifications
- Bachelor's degree in Computer Science, Information Security, or relevant field (or equivalent experience)
- 5+ years work experience securing enterprise-scale infrastructure software and services
- 3-5+ years programming experience with at least one of the following languages: Python, PHP, Ruby, or similar scripting languages
- Experience remediating infrastructure security gaps across broad corporate boundaries using influence and relationships
- Experience with security control automation/monitoring or “compliance as code” implementations
- Experience thinking critically and defending solutions with communication skills in a cross-functional setting to influence decision makers across all levels of technical background Demonstrated ability to integrate AI tools to optimize/redesign workflows and drive measurable impact (e.g., efficiency gains, quality improvements)
- Demonstrated ongoing AI skill development (e.g., prompt/context engineering, agent orchestration) and staying current with emerging AI technologies
- Networking and system administration experience of server (Linux, Windows) and client (Windows, macOS, Linux) operating systems
- Experience adhering to and implementing responsible, ethical AI practices (e.g., risk assessment, bias mitigation, quality and accuracy reviews)
- Experience with common risk & compliance program activities (e.g., controls, risk, policy management)
- Experience generating automated metrics to measure service and program effectiveness and consistency
- Experience influencing software engineers to build products meant to scale security solutions