Source description
About the role
Build Security Engineer
Austin, Texas, United StatesSoftware and Services
Apple is where individual imaginations gather together, committing to the values that lead to great work. Every new product we build, service we create, or Apple Store experience we deliver is the result of us making each other's ideas stronger. That happens because every one of us shares a belief that we can make something wonderful and share it with the world, changing lives for the better. It's the diversity of our people and their thinking that inspires the innovation that runs through everything we do. When we bring everybody in, we can do the best work of our lives. Here, you'll do more than join something — you'll add something.
Software is often referred to as the "soul" of Apple's products. This role sits at the intersection of security and software engineering, with direct responsibility for protecting the systems and infrastructure used to manage, build, and distribute Apple's software. The Build Security Engineer will conduct threat modeling and security assessments, partner with engineering teams to uphold security standards, and develop technical solutions that strengthen Apple's build infrastructure security posture end to end.
The Build Security Engineer is a key contributor to the security of Apple's software supply chain. This role requires deep technical security expertise applied across threat modeling, offensive security assessments, and the development of security controls — all in close collaboration with the engineering teams who build and maintain Apple's most critical software infrastructure. The role also involves creating documentation, mentoring teammates, and staying current with the evolving threat landscape to proactively address risk.
-
Conducts threat modeling and security assessments of critical build infrastructure, regularly updating models to reflect evolving threats and changes in the environment.
-
Collaborates with engineering teams to ensure adherence to defined security standards and requirements, providing guidance on the implementation of security measures.
-
Develops, implements, and maintains technical solutions to mitigate identified security risks within the software build pipeline.
-
Writes and maintains test cases to validate the effectiveness and resilience of security controls.
-
Leads penetration tests and red team exercises with a focus on the software build path and related critical infrastructure.
-
Researches vulnerabilities in critical software components used across the environment and recommends proactive mitigations.
-
Creates and maintains documentation outlining security guidelines and best practices for engineering teams.
-
3+ years of experience in cybersecurity, with hands-on experience in threat modeling, security assessments, or penetration testing
-
Experience in a software engineering or security operations role
-
Experience with scripting or programming languages such as Python or Bash
-
Experience working cross-functionally with engineering teams on security requirements or controls
-
Experience conducting penetration testing or red team exercises, particularly targeting build pipelines or software supply chain components
-
Experience leveraging LLMs safely to accelerate various security workflows
-
Experience with container orchestration platforms such as Kubernetes
-
Proficiency in additional programming languages such as Go (Golang) or Perl
-
Familiarity with cybersecurity frameworks and standards (e.g., NIST, CIS, SLSA)
-
Experience mentoring engineers or junior security team members on security concepts and best practices
-
Track record of identifying and driving remediation of vulnerabilities in complex software environments
-
Strong written and verbal communication skills with the ability to present technical findings to varied audiences
-
Security certifications such as OSCP or CISSP
Apple is an equal opportunity employer that is committed to inclusion and diversity. We seek to promote equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics. Learn more about your EEO rights as an applicant
At Apple, we believe accessibility is a fundamental human right. You’ll find that idea reflected in everything here — in our culture, our benefits and our digital tools. By welcoming as many perspectives as possible, we help you build a career where you feel like you belong.
Learn about accessibility in Apple’s workplace
Learn about reasonable accommodations for job applicants
Apple accepts applications to this posting on an ongoing basis.
Content has loaded
More at Apple
Related open roles
Vulnarability Researcher, SEAR
Germany
Senior Software Security Engineering
Seattle · Onsite
Offensive Security Researcher - Wireless Security
Paris · Onsite
Cryptography Engineer, SEAR
Paris · Onsite
Build and Compute Systems Security Reviewer, SEAR
San Francisco Bay Area · Onsite
Secure Design Engineer, SEAR
San Francisco Bay Area · Onsite