Platform Architect - Security
At Apple, we strive to do our life's best work by building a seamless ecosystem across tightly integrated hardware, software, and services. The Platform Architecture group is at the forefront of defining, designing and connecting this ecosystem. PA-Security group is a team of engineers who are dedicated to securing the world’s most advanced consumer devices that are trusted for protecting individual privacy and storing personal data, while providing the highest quality user experience. We're looking for hardworking and inspired individuals to help raise the bar on the security of Apple’s growing product line up, while continuing to ensure a quality user experience.
In this role, you will identify and define platform level security requirements for new products, define and maintain device-level security policies across multiple environments for existing products, and drive adoption of platform level security architectures incorporating hardware, software, and server elements, through our cross-function partners. Together with the rest of the Platform Architecture team, your work will ensure millions of customers all around the world can confidently trust the devices they use every single day.
As a member of Platform Architecture, you will lead cross-functional teams throughout the product development cycle. Further, as part of this high-visibility team, you will frequently collaborate with other security architects and researchers across Apple including software, hardware, silicon, server, and product groups to identify, define and design security solutions that elevate overall security profile of our SOCs, devices, and factories.
Your key responsibilities will include:
• Develop threat models and associated security architectures for exciting new Apple products and technologies, derive system security requirements, and design balanced and novel mitigations in creative collaboration with iconic product and engineering teams.
• Develop detailed system-level specifications to guide product development, integration, and quality assurance teams in the creation of golden unit tests, reference data, and sample libraries to aid integration of our security technologies across team boundaries (e.g. client/ server).
• Drive security requirements and architecture into custom silicon designed through external vendor.
• Use a wide range of interpersonal and technical skills to champion adoption of our industry leading security technologies across multiple product categories.
• Identify emerging threats, new attacks, and mitigation techniques as the external landscape evolves and drive architecture evolution to stay ahead of industry.
- BS + 20 years of relevant industry experience.
- Knowledge of basic cryptographic principles. (e.g., symmetric vs asymmetric crypto, encryption vs authentication, and/or public key infrastructure implementations)
- Experience in threat modeling system designs spanning across software, hardware and system designs.
- MS or PHD + 7 years of relevant industry experience.
- Experience in effectively communicating highly technical details to a non-technical audience.
- Programming and/or auditing experience with Python, C, and unix shell scripting.
- Some knowledge of and working experience with communication protocols, e.g. WiFi, BT, UWB.
- Ability to perform basic review of system design and schematics to understand and analyze security concerns at system level.
- Breadth to work cross-functionally with Privacy, Safety, Service, Manufacturing, Software, and/or Product teams to resolve system-level security issues.
- Ability to critically analyze security properties of a system and evaluate security policy requests via an established security architecture specification.
- Experience in leading cross-functional initiatives.
Apple is an equal opportunity employer that is committed to inclusion and diversity. We seek to promote equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics. Learn more about your EEO rights as an applicant.