Apple Inc logo

Vulnerability Response Manager - Apple Information Security

Apple Inc
  • Austin, TX
    30+ days ago

    Job Description

    Apple Information Security is seeking an experienced security engineering manager to lead the Vulnerability Response team across the United States and EMEIA regions. Apples external perimeter spans thousands of services relied upon by billions of users worldwide, and this team is responsible for continuously identifying, analyzing, and remediating vulnerabilities across that surface. You will combine hands-on technical leadership with people management, overseeing programs that include subcomponents of Apples bug bounty program, proactive vulnerability discovery, WAF rule development, emerging threat response, and custom security tooling.

    You will play a critical role in protecting Apples services and customers by ensuring timely and thorough response to security risks, fostering engineering excellence, and driving strategic initiatives that strengthen Apples overall security posture. This role is both strategic and operational, requiring deep technical expertise, strong leadership, and the ability to manage a geographically distributed team operating in a continuous response environment. As a manager on the Vulnerability Response team, you will lead the day-to-day operations of security engineers across the US and EMEIA regions, as well as oversee resources providing around-the-clock support. You will set team priorities, drive execution across multiple concurrent programs, and ensure operational continuity for a function that requires uninterrupted coverage. This includes direct participation in on-call escalation rotations, hands-on technical contributions such as penetration testing, variant analysis, security tool development, and strategic planning to evolve the teams capabilities over time.

    You will partner closely with teams across Apple to ensure coordinated and effective vulnerability response. You will represent the team in cross-functional forums, advocate for security improvements with engineering leadership, and contribute to the development of policies, processes, and tooling that scale the teams impact. You will also maintain the professional standards and reputation through oversight of researcher engagement, vulnerability adjudication, and program communications.Team Leadership: Lead, mentor, and grow a geographically distributed team of security engineers across the US and EMEIA regions. Set goals, support professional development, and oversee resources providing around-the-clock Tier 1 support.

    Vulnerability Response Operations: Own the teams continuous vulnerability response function, including on-call escalation, emerging threat and zero-day assessment, and coordination of rapid remediation efforts across Apples external perimeter.

    Vulnerability Discovery and Remediation: Drive proactive security assessment programs, including penetration testing, variant analysis, and large-scale scanning initiatives, to identify and remediate vulnerabilities before they are discovered or exploited by external parties.

    Security Program Management: Manage the lifecycle of external researcher engagement, report validation, risk assessment, and remediation coordination.

    Security Tooling and Automation: Guide the development and maintenance of custom security tools and automation that support vulnerability detection, analysis, and remediation tracking at scale, including the application of emerging technologies to increase operational efficiency.

    Cross-Functional Collaboration: Serve as a trusted security advisor to engineering, product, and leadership teams, partnering across security and infrastructure organizations to align vulnerability response priorities with broader security objectives and drive adoption of security improvements.8+ years of experience in information security, with demonstrated expertise in vulnerability management, web application penetration testing, and incident response for large-scale internet-facing services, including 3+ years of people management experience leading and developing teams of security engineers.

    Strong technical proficiency in web application security, including hands-on experience identifying and remediating common vulnerability classes, and software development skills in one or more of Python, Go, or Bash.

    Experience managing or contributing to a vulnerability disclosure or bug bounty program, including researcher engagement, vulnerability validation, and coordinated disclosure processes.

    Experience with vulnerability scanning tools and methodologies at enterprise scale, including both commercial and open-source solutions.

    Demonstrated ability to manage geographically distributed teams across multiple time zones, with willingness to participate in on-call rotations, including weekends, as part of a tiered escalation model.

    Excellent written and verbal communication skills, with the ability to articulate complex security issues and risk to both technical and non-technical audiences.Bachelors degree in Computer Science, Information Security, or a related field, or equivalent professional experience.

    Experience with cloud-native architectures, WAF technologies, and DNS security disciplines, with the ability to assess security implications across modern deployment and infrastructure environments.

    Background in applying AI and machine learning techniques to security operations, including automated analysis, classification, or remediation workflows.

    Relevant industry certifications such as CISSP, OSCP, OSCE, GPEN, or equivalent are helpful but not required.

    Numbers & Facts

    LocationAustin, TX
    IndustryComputer/IT Services
    Company Size10,000 employees or more
    Year Founded1976
    Websitehttps://www.apple.com/jobs

    About Company

    We bring amazing people together to make amazing things happen.

    We’re a diverse collection of thinkers and doers, continually reimagining what’s possible to help us all do what we love in new ways. The people who work here have reinvented entire industries with the Mac, iPhone, iPad, and Apple Watch, as well as with services, including iTunes, the App Store, Apple Music, and Apple Pay. And the same passion for innovation that goes into our products also applies to our practices — strengthening our commitment to leave the world better than we found it.

    About Apple

    There’s a place here for every kind of brilliant. Everyone here is an innovator, or an innovator-to-be, no matter what your team or your role. So bring your passion, courage, and original thinking and get ready to share it, because every new product, service, or feature we invent is the result of people working together to make each others’ ideas stronger. Innovation at this level depends on people who represent the variety of the human experience and inspire us with their own fresh perspectives. Together, we’ll do amazing work that can make a difference in people’s lives. Including your own. Learn more about working at Apple.

    Skills

    • Adjudicationunmatched
    • Analysis Skillsunmatched
    • Appleunmatched
    • Applications Securityunmatched
    • Artificial Intelligence (AI)unmatched
    • Automationunmatched
    • Bash Scriptingunmatched
    • Cloud Architectureunmatched
    • Communication Skillsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Concurrencyunmatched
    • Concurrent Programming Language Familyunmatched
    • Cross-Functionalunmatched
    • DNS (Domain Name System)unmatched
    • Emerging Technologyunmatched
    • Engineering Managementunmatched
    • Establish Prioritiesunmatched
    • Go Programming Language (Golang)unmatched
    • Incident Responseunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Applicationunmatched
    • Internet Securityunmatched
    • Internet/Online Serviceunmatched
    • Leadershipunmatched
    • Machine Learningunmatched
    • Machine Toolunmatched
    • Mentoringunmatched
    • On Callunmatched
    • Open Sourceunmatched
    • Operational Strategyunmatched
    • Operations Security (OPSEC)unmatched
    • Penetration Testingunmatched
    • People Managementunmatched
    • Policy Developmentunmatched
    • Presentation/Verbal Skillsunmatched
    • Process Managementunmatched
    • Product Lifecycleunmatched
    • Project/Program Managementunmatched
    • Python Programming/Scripting Languageunmatched
    • Research Skillsunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Security Analysisunmatched
    • Security Attacksunmatched
    • Security Infrastructureunmatched
    • Set Goalsunmatched
    • Software Developmentunmatched
    • Software Testingunmatched
    • Strategic Planningunmatched
    • Team Lead/Managerunmatched
    • Technical Leadershipunmatched
    • Time Managementunmatched
    • Vulnerability Scannersunmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder