drjobs Security Software Engineer – Software Supply Chain Security

Security Software Engineer – Software Supply Chain Security

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Seattle - USA

Monthly Salary drjobs

USD 171600 - 302200

Vacancy

1 Vacancy

Job Description

As a Security Software Engineer in Apple Services Engineering you will:- Develop deploy and maintain automated tools to detect and help developers fix critical security vulnerabilities across our services.- Drive the adoption and scaling of GitHub Advanced Security across engineering teams ensuring broad coverage and impact.- Write and maintain custom CodeQL queries tailored to Apples codebases and threat model.- Partner with engineering teams to integrate secure development tooling into their CI/CD pipelines and developer workflows.- Contribute to internal tooling and frameworks that support scalable automated supply chain risk reduction.- Continuously evaluate and improve the effectiveness of our vulnerability detection and remediation capabilities.- Stay current with the latest supply chain security threats and techniques and help Apple proactively respond to them.


  • Over five years of experience in software security with a focus on software supply chain risk.
  • Must have experience developing production level code in Go or Java
  • Deep understanding of secure software development practices and static code analysis.
  • Experience building scalable security tools or automation for large developer organizations.
  • Excellent collaboration and communication skills; ability to work cross-functionally with security and engineering teams.


  • Hands-on experience with GitHub Advanced Security (GHAS) including enabling and managing security features at scale.
  • Proficiency with CodeQL and experience writing or customizing CodeQL queries to identify application vulnerabilities.
  • Knowledge of vulnerability management SBOMs and dependency analysis is a plus.

Employment Type

Full-Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.