TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. TikTok has global offices including Los Angeles, New York, London, Paris, Berlin, Dubai, Mumbai, Singapore, Jakarta, Seoul and Tokyo. At TikTok, our people are humble, intelligent, compassionate and creative.
We create to inspire - for you, for us, and for more than 1 billion users on our platform. We lead with curiosity and aim for the highest, never shying away from taking calculated risks and embracing ambiguity as it comes. Here, the opportunities are limitless for those who dare to pursue bold ideas that exist just beyond the boundary of possibility. Join us and make impact happen with a career at TikTok.
The role
We are looking for talented individuals to join us for a Summer Internship in 2023. Internships at TikTok aim to offer students industry exposure and hands-on experience. Watch your ambitions become reality as your inspiration brings infinite opportunities at TikTok.
The Security Assurance team is responsible for identifying security vulnerabilities and misconfigurations in numerous aspects of TikTok applications, systems, and services. In this team, you will have a unique opportunity to learn and experience offensive testing initiatives such as penetration testing, technical security reviews, and influencing security design decisions. This role isn't simply a "run a scan and report findings" type of job - it is an exciting and challenging internship that touches upon some of the most interesting aspects of security.
A typical day-to-day could involve breaking into a company's infrastructure, finding all sorts of vulnerabilities in some of the most used applications in the world, and developing exploits. This role may involve working with various other security teams such as Penetration Testing, Application Security, Detection and Response, Security Operations, Threat Research, and Infrastructure Security.
Some of the responsibilities include:
- Performing manual application, mobile & infrastructure penetration testing to identify security vulnerabilities
- Participate in offensive security exercises to identify new attack vectors against our products and services
- Develop testing parameters, offensive security tools, and other analytical tools to support security testing service
- Collaborate closely with cross-functional engineering and product teams to review and secure various features and systems of our product and services
- Document in detail the results of assessments, audits, tests, and verification activities
Qualifications
- Currently in your penultimate year pursuing a bachelor's degree, or in your final year going on to study a master's, graduating in 2024 - Studying Computer Science, Information Technology, Information Security, Computer Security or other relevant subject
- Available from June 2023 for 12 weeks
- Passionate about information security
- Be familiar with at least one of the following areas: mobile application security, web application security, reverse engineering, exploit development, penetration testing
- Coding experience and the ability to read and understand code written by other people Nice-to-Have - Participation in Bug Bounty (aka Vulnerability Reward) Programs
- Participation in Capture The Flag security competitions
- Conducting and publishing security research
- Contributing to or developing security tools and frameworks
TikTok is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At TikTok, our mission is to inspire creativity and bring joy. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.