TikTok

Security & Privacy Architecture Lead - USDS

Mountain View, CA
Microservices
Search for More Jobs Talk to a recruiter now 💪
Description
About TikTok U.S. Data Security
TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security (“USDS”) is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and content assurance protocols to keep U.S. users safe. Our focus is on providing oversight and protection of the TikTok platform and U.S. user data, so millions of Americans can continue turning to TikTok to learn something new, earn a living, express themselves creatively, or be entertained. The teams within USDS that deliver on this commitment daily span across Trust & Safety, Security & Privacy, Engineering, User & Product Ops, Corporate Functions and more.

Why Join Us
Creation is the core of TikTok's purpose. Our platform is built to help imaginations thrive. This is doubly true of the teams that make TikTok possible.
Together, we inspire creativity and bring joy - a mission we all believe in and aim towards achieving every day.
To us, every challenge, no matter how difficult, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always.
At TikTok, we create together and grow together. That's how we drive impact - for ourselves, our company, and the communities we serve.
Join us.

As the Security & Privacy Architecture Lead, your primary role will be to direct and coordinate the alignment of USDS security and privacy architecture with company’s strategic goals and risk management objectives; this includes defining, implementing, and maintaining the overall security and privacy architecture and underlying technologies. This role will report directly to the Head of Cyber & Data Defense and work closely with cross-functional teams to design and implement solutions that align with business objectives while mitigating risks and ensuring compliance with relevant regulations and standards.

In order to enhance collaboration and cross-functional partnerships, among other things, at this time, our organization follows a hybrid work schedule that requires employees to work in the office 3 days a week, or as directed by their manager/department. We regularly review our hybrid work model, and the specific requirements may change at any time.

Key Responsibilities:
- Maintain full understanding of all infrastructure, platform and middleware technologies used to provide the TikTok US Platform
- Coordinate with global research and development architecture teams to determine the best solution designs to mitigate risks and ensuring compliance with relevant regulations and standards
- Develop and maintain the enterprise security architecture framework, including principles, standards, and guidelines
- Ensure that privacy control safeguards are effectively implemented across business units
- Ensure synchronization of the security and privacy architecture design with the organization’s business objectives, regulatory compliance requirements, and security best practices. Representative areas include data protection, privacy, risk and compliance, threat management
- Collaborate with internal stakeholders to understand business and technical requirements and translate them into security and privacy architecture designs.
- Evaluate current security technologies, assessing for proliferation or redundancy, and making strategic recommendations for optimizing the landscape and effective operationalization.
- Lead the design, implementation and operationalization of security solutions, considering factors such as scalability, performance, and cost-effectiveness.
- Propose solutions to eliminate overlap and align toolsets to the strategic objectives of the organization
- Engage in capacity building by mentoring team members on key security architecture concepts, guidelines, trends, and best practices.
- Lead security architecture reviews and governance processes, ensuring alignment with organizational objectives and compliance requirements.
- When needed, act as a liaison with external partners, vendors, and regulatory bodies on security architecture-related matters.Minimum Qualifications:
- A bachelor's or higher degree in Computer Science, Information Technology, or related discipline.
- Fundamental understanding of Enterprise Architecture principles (e.g. TOGAF, SABSA) and strong knowledge of Cybersecurity and Privacy best practices.
- Prior years of experience in a microservices environment in an engineering role
- Proven experience in security architecture in large enterprises, with a strong understanding of security principles, practices, and technologies.
- Demonstrated expertise in designing and implementing security solutions in complex environments, such as cloud, hybrid, and on-premises infrastructures.
- Hands-on experience with frameworks (e.g., NIST Cybersecurity Framework, NIST Privacy Framework, ISO 27001) and regulatory requirements (e.g., GDPR, HIPAA, PCI DSS).
- Ability to work independently and collaboratively, manage multiple projects and initiatives simultaneously, and thrive in a fast-paced environment.
- Solid analytical, problem-solving, and decision-making abilities with strong ability to assess risks and prioritize tasks effectively and a keen attention to detail.
- Strong leadership and communication skills to effectively mentor a team and collaborate with diverse groups of internal and external stakeholders

Preferred Qualifications:
- Solid analytical, problem-solving, and decision-making abilities with strong ability to assess risks and prioritize tasks effectively and a keen attention to detail.
- Strong leadership and communication skills to effectively mentor a team and collaborate with diverse groups of internal and external stakeholders
- Relevant certifications such as CISSP (Certified Information Systems Security Professional), or ISSAP (Information Systems Security Architecture Professional) are highly desirable.

TikTok is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At TikTok, our mission is to inspire creativity and bring joy. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.

TikTok is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us at https://shorturl.at/ktJP6

This role requires the ability to work with and support systems designed to protect sensitive data and information. As such, this role will be subject to strict national security-related screening.

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 307 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

Cancel anytime / Money-back guarantee

Wall of love from fellow engineers