Security Engineer (Infrastructure Security SDLC) Graduate (Security BP) - 2027 Start
Other Engineering
Responsibilities
Team Introduction Our team is responsible for securing the company's infrastructure across every layer—from internal corporate infrastructure and engineering platforms to externally facing cloud infrastructure. We work closely with engineering teams to build security into the entire infrastructure lifecycle through secure design, vulnerability research, security reviews, governance, and automation. In this team, you'll have opportunities to have first-hand exposure to the strategy of the company in key security initiatives, especially in building scalable and secure-by-design systems and solutions. We are looking for talented individuals to join our team. As a graduate, you will get opportunities to pursue bold ideas, tackle complex challenges, and unlock limitless growth. Successful candidates must be able to commit to an onboarding date by the end of the year. Please state your availability and graduation date clearly in your resume. Candidates can apply to a maximum of two positions and will be considered for jobs in the order you apply. The application limit is applicable to our Company and its affiliates' jobs globally. Applications will be reviewed on a rolling basis - we encourage you to apply early. Responsibilities - As a member of the Infrastructure Security team, you will focus on 2–3 of the following areas based on your interests, experience, and the team's priorities; - Vulnerability Research – Conduct vulnerability research on modern technologies, including cloud-native platforms, containers, virtualization, operating systems, and distributed systems. - Product Security Reviews – Perform security reviews for new products, architectures, and infrastructure components. - Security Engineering & AI – Explore and develop AI-powered solutions for security engineering, including vulnerability discovery, security analysis, code review, and security automation. - Security Governance – Develop security standards, best practices, and engineering guidance for infrastructure teams. - Security Tooling – Build internal tools to improve vulnerability detection, security testing, and developer experience.
Qualifications
Minimum Qualifications - Individuals who are completing or have recently completed a Bachelor's/ Master's degree in Computer Science, Cybersecurity, Software Engineering or a related discipline. - Solid understanding of common vulnerability classes, including memory corruption, web security, authentication and authorization issues, and logic flaws. - Hands-on experience in vulnerability discovery, security research, penetration testing, or exploit development. - Experience with one or more programming languages such as C/C++, Go, Python, Rust, or Java. - Passion for offensive security, infrastructure security, and continuous learning. Preferred Qualifications - Publicly disclosed CVE vulnerabilities. - Contributions to well-known open-source security projects or widely used GitHub repositories. - Strong rankings or awards in well-known security competitions (e.g. DEF CON CTF, HITCON CTF, Real World CTF, GeekPwn, XCTF, Blue Water, or similar). - Publications or presentations at leading security conferences, such as Black Hat, USENIX Security, NDSS, ACM CCS, or other top-tier venues. - Experience applying Large Language Models (LLMs) or AI agents to security workflows, such as code analysis, vulnerability detection, security automation, or offensive security research. - Experience with cloud platforms (AWS, Azure, GCP), Kubernetes, container security, virtualization, or infrastructure-as-code security. - Contributions to security tooling, fuzzers, static analysis, dynamic analysis, or exploit frameworks.
Job Information
About Us
Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok, Lemon8, CapCut and Pico as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content.
Why Join ByteDance
Inspiring creativity is at the core of ByteDance's mission. Our innovative products are built to help people authentically express themselves, discover and connect – and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and enrich life - a mission we work towards every day.
As ByteDancers, we strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact in a rapidly growing tech company. By constantly iterating and fostering an "Always Day 1" mindset, we achieve meaningful breakthroughs for ourselves, our Company, and our users. When we create and grow together, the possibilities are limitless. Join us.
Diversity & Inclusion
ByteDance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At ByteDance, our mission is to inspire creativity and enrich life. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.