Apple · 2 months ago
Lead Penetration Tester & Security Engineer
Apple is a place where extraordinary people gather to do their best work. As a highly skilled individual with broad experience in evaluating security risk areas from multiple perspectives, you are passionate about executing projects and proposing thoughtful and practical solutions as recommendations.
AppsArtificial Intelligence (AI)BroadcastingDigital EntertainmentFoundational AIMedia and EntertainmentMobile DevicesOperating SystemsTVWearables
Responsibilities
Conduct penetration tests and security assessment engagements from start to finish
Leverage offensive security expertise to identify vulnerabilities, exploit weaknesses, and evaluate the design and effectiveness of security controls across applications, infrastructure, and cloud environments
Play a critical role in shaping our audit plan by identifying areas of emerging risk and strengthening the organization’s control environment
Qualification
Required
5+ years of experience in penetration testing, red teaming, or offensive security roles, with exposure to audit or compliance functions preferred
Bachelor's degree in Computer Science, Engineering, Cybersecurity, or related discipline; equivalent hands-on experience considered
Preferred
Ability to get things done, experience in delivering end-to-end projects timely with a high degree of quality
Proven ability to work well on a team, as well as independently, with limited supervision
Self-starter, exceptionally curious, can navigate ambiguity and challenges consistently, adapts well to change, and enjoys working in a dynamic environment
Highly collaborative. You possess a strong ability to work collaboratively as a member of the team and with cross-functional partners on detail oriented projects
Effective at seeing around corners and identifying/anticipating risk areas and the ability to navigate the organization to trigger thoughtful conversations
Excellent project management and organizational skills
Ability to develop and deliver effective presentations to audiences and tailoring the message to the appropriate level, excellent communication skills, and ability to clearly articulate the impact of technical details to non-technical audiences
Skilled in offensive security techniques including reconnaissance, vulnerability identification, exploitation, post-exploitation, and lateral movement
Hands-on experience with penetration testing tools (e.g., Burp Suite, Metasploit, Cobalt Strike, Nmap, Nessus, Nikto, SQLmap, BloodHound)
Experience with manual exploitation and custom script development to validate vulnerabilities beyond automated scans
Strong knowledge of web application, API, and mobile application testing methodologies
Proficiency in secure coding practices and ability to identify flaws in code through static/dynamic analysis
Familiarity with software development frameworks, CI/CD pipelines, and DevSecOps practices
Deep understanding of networking protocols, firewalls, IDS/IPS, and VPN technologies
Experience performing internal and external network penetration tests, wireless assessments, and social engineering campaigns (phishing, physical intrusion)
Proficiency in penetration testing and security assessment across cloud platforms (AWS, GCP, Azure)
Familiarity with IaaS, PaaS, and SaaS exploitation scenarios, misconfigurations, and cloud-native security controls
Understanding of containerization and orchestration technologies (Docker, Kubernetes)
Proficiency in programming/scripting languages (Python, Bash, PowerShell, Go, or Ruby) for exploit development, tool customization, and automation
Knowledge of modern attack vectors, red teaming methodologies, advanced persistent threats (APT) techniques, and MITRE ATT&CK framework
Ability to adapt testing approaches to address evolving risks such as AI/ML, supply chain, and zero-day exploitation
Strong track record of leading technical security assessments and delivering appropriate communication and reporting
Certifications: OSCP, OSWE, GPEN, GXPN, or CEH preferred; CISSP/CISA a plus
Benefits
Comprehensive medical and dental coverage
Retirement benefits
A range of discounted products and free services
Reimbursement for certain educational expenses — including tuition
Discretionary bonuses or commission payments
Relocation
Company
Apple
Apple is a technology company that designs, manufactures, and markets consumer electronics, personal computers, and software.
H1B Sponsorship
Apple has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (6998)
2024 (3766)
2023 (3939)
2022 (4822)
2021 (4060)
2020 (3656)
Funding
Current Stage
Public CompanyTotal Funding
$5.67BKey Investors
Berkshire HathawayMicrosoftSequoia Capital
2025-05-05Post Ipo Debt· $4.5B
2025-01-16Post Ipo Debt· $0.31M
2021-04-30Post Ipo Equity
Leadership Team
Tim Cook
CEO
Craig Federighi
SVP, Software Engineering
Recent News
Venrock
2025-12-01
2025-09-25
Mac Daily News
2025-09-25
Company data provided by crunchbase