Experience in designing, developing, and deploying backend web services including API design or scalable infrastructures for highly available applications.
Experience with common programming languages such as Python, Go or C/C++.
Experience in implementing and managing DevOps practices. Such as continuous integration/continuous deployment (CI/CD), infrastructure as code (IaC), or automation of development, testing, and deployment pipelines.
Masters in EE/CE or similar engineering degree.
20+ years of relevant industry experience.
Ability to critically analyze security properties of web service architectures, hardware, and software systems in order to build a comprehensive threat model. (e.g. familiarity with common threat modeling methodologies such as STRIDE)
Ability to analyze industry and regulatory trends and work with relevant business stakeholders in order to define overall security policy direction for product designs.
Ability to lead cross-functional initiatives, drive alignment among senior executive leadership, and provide architectural guidance to teams lacking resident security expertise.
Breadth to work cross-functionally with Infrastructure, Privacy, Safety, Service, Manufacturing, Software, and Product Development teams to resolve system-level security issues.
Strong written and oral communications skills across multiple levels, including senior executive leadership.
Knowledge of cryptographic principles (e.g., symmetric vs asymmetric crypto, encryption vs authentication, secure boot, and PKI frameworks) and familiarity with HSM-based security applications and/or data center management and security expertise.
Note: Apple benefit, compensation and employee stock programs are subject to eligibility requirements and other terms of the applicable plan or program.