Responsibilities
- Define and drive security strategy and engineering standards across multiple sub-pillars, setting the quality bar for security practices, processes, and tooling at a pillar-wide scale
- Identify and solve ambiguous, high-impact security problems spanning distributed systems, access control, encryption, and intrusion detection that affect entire organizational pillars
- Lead threat modeling and risk assessment efforts for Meta's most complex systems, developing novel approaches to address systemic vulnerabilities across the company
- Architect and implement engineered security controls, guardrails, and defense-in-depth mechanisms that enable product teams to move fast while managing risk responsibly
- Partner with senior leadership across multiple organizations to define pillar-level security goals, influence roadmaps, and drive accountability for execution across cross-functional teams
- Identify capability and tooling gaps across the pillar's security stack and drive technical solutions that achieve scale, automation, and measurable risk reduction
- Mentor and develop other engineers and technical leaders across organizations, contributing to hiring at leadership levels and fostering a culture of security excellence
- Represent Meta's security posture and technical narrative internally and externally, influencing the broader security community through thought leadership and published insights
- Leverage AI-integrated workflows to redesign security analysis, threat detection, and engineering processes, driving measurable improvements in quality and operational efficiency
- Ensure security decisions align with Meta's compliance obligations, ethical standards, and responsible AI practices, and communicate risk tradeoffs clearly to technical and non-technical stakeholders
Minimum Qualifications
- 15+ years of experience managing security risk and navigating tradeoffs between security and operational friction in large-scale organizations
- Experience driving cross-company security engineering initiatives spanning distributed systems, access control, encryption, and intrusion detection
- Experience with system design, threat modeling, and risk assessment across complex, multi-layered infrastructure and product environments
- Experience building engineered security controls and guardrails applying principles such as least privilege, defense in depth, and segmentation
- Experience communicating complex security risk and technical decisions in writing to both technical and non-technical stakeholders, including senior leadership
Preferred Qualifications
- Experience influencing the external security community through published research, conference presentations, or open-source contributions
- Experience adhering to and implementing responsible, ethical AI practices including risk assessment, bias mitigation, and validation of AI-generated outputs in security contexts
- Demonstrated ability to integrate AI tools to redesign security workflows and drive measurable impact such as efficiency gains or improved threat detection quality
- Demonstrated ongoing AI skill development (e.g., prompt/context engineering, agent orchestration) and staying current with emerging AI technologies
- Experience adhering to and implementing responsible, ethical AI practices (e.g., risk assessment, bias mitigation, quality and accuracy reviews)
- Demonstrated ability to integrate AI tools to optimize/redesign workflows and drive measurable impact (e.g., efficiency gains, quality improvements)
- Experience applying current threat intelligence on adversary tactics, techniques, and procedures to proactively shape defensive security architecture at scale
$271,000/year to $347,000/year + bonus + equity + benefits
Learn more about this Employer on their Career Site
