Skip to content

Open nowFirst seen 4 hours ago

Security Engineer, Detection & Response - Global Security Organization - Threat Management Incident Response and Investigation

TikTok4,264 open roles

Where
Singapore
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity Engineer, Detection & Response - Global Security Organization - Threat Management Incident Response and InvestigationTikTok · Singapore
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on TikTok's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. TikTok postings stay open a median of 6 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 34.0%30 days
This job: first seen 4 hours ago

TikTok median: 6 days open

The posting

Threat Management, Incident Response, and Investigations protects our global businesses, products, employees, and users across the full security lifecycle. We detect and respond to cyber threats, vulnerabilities, and security risks across the lifecycle, and investigate issues end to end.

Our global team provides prompt security response worldwide, leveraging AI to identify and respond to security issues quickly. You will work on high-stakes problems, from detection and automation to live intelligence-driven incident response and investigation, and see your work protect the company and its users worldwide.

The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates.

Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us — whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop — GSO protects their data and privacy, so they can have a secure and trustworthy experience.

TikTok's Detection Engineering team is responsible for identifying anomalous behaviors across the enterprise at scale. We are seeking a Detection Engineer. This role focuses on mining abnormal patterns from massive volumes of logs including host, network, endpoint, authentication and business application data, to detect potential unintended activities within the internal environment. This covers both external intrusion attempts, and emerging AI-specific security risks, and requires strong data analysis and algorithmic skill sets.

TikTok's Global Detection Engineering team identifies anomalous behaviors at enterprise scale. We are seeking a Detection Engineer to mine abnormal patterns from massive host, network, endpoint, authentication and business application logs. This role detects external intrusions and emerging AI security risks, requiring strong data analysis and algorithmic skills.

Responsibilities - End-to-End Detection Engineering: Own detection rules, behavioral models, and pipelines end-to-end — from log ingestion through alerting — across petabyte-scale security telemetry. - Streaming & ML-Based Anomaly Detection: Build streaming detection pipelines that combine statistical methods and unsupervised learning to baseline normal behavior and surface unknown threats. - AI Agent Security Detection: Design detection capabilities for internal agent systems based on the MITRE ATLAS framework, covering invocation, tool execution, privilege escalation, and data access. - Detect emerging attack patterns: agent abuse, unauthorized tool calls, agent escape, multi-agent collusion. - Monitor agent-LLM-tool-data interactions to catch instruction manipulation and data exfiltration. - Retrospective Threat Hunting: Run hunting pipelines against cold storage and historical logs to support post-incident analysis and detection gap validation. - Continuous Optimization: Improve signal-to-noise ratio, cut down alert fatigue, and work with AI security teams to shape logging standards for LLM and agent systems.

Minimum Qualifications - 5+ years of hands-on experience in information security, cybersecurity engineering, or a related technical field. - Proven experience processing and correlating large-scale multi-source security telemetry - Solid foundation in data analysis, statistics and applied machine learning for anomaly detection - Hands-on experience building detection rules or threat hunting queries for SIEM/EDR platforms - Strong knowledge of common AI Agent security risks and hardening strategies (e.g., OWASP Top 10 for LLMs, including prompt injection, unauthorized tool execution, and denial of service).

Preferred Qualifications - Deep familiarity with the MITRE ATLAS framework, with a proven track record of applying it to threat modeling and risk assessment for AI systems. - LLM/Agent detection experience, Agent Loop architecture knowledge - Global enterprise-scale detection operations experience

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against TikTok's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on TikTok's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    TikTok's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.