Skip to content

Open nowFirst seen 3 hours ago

Security Remediation Manager - Global Security Organization - Threat Management Incident Response and Investigation

TikTok4,284 open roles

Where
Singapore
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity Remediation Manager - Global Security Organization - Threat Management Incident Response and InvestigationTikTok · Singapore
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on TikTok's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. TikTok postings stay open a median of 5 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.2%30 days
This job: first seen 3 hours ago

TikTok median: 5 days open

The posting

Threat Management, Incident Response, and Investigations protects our global businesses, products, employees, and users across the full security lifecycle. We detect and respond to cyber threats, vulnerabilities, and security risks across the lifecycle, and investigate issues end to end.

Our global team provides prompt security response worldwide, leveraging AI to identify and respond to security issues quickly. You will work on high-stakes problems, from detection and automation to live intelligence-driven incident response and investigation, and see your work protect the company and its users worldwide.

The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates.

Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us — whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop — GSO protects their data and privacy, so they can have a secure and trustworthy experience.

The Security Posture Management (SPM) program is responsible for providing a centralized view of security incident-driven issues across the organization and driving consistent, risk-based remediation across teams. As a Remediation Manager, you will own the end-to-end lifecycle of security issues from intake and prioritization through remediation and closure. You will partner with security domain teams, engineering teams, infrastructure teams, and business stakeholders to ensure high-priority security risks are clearly owned and remediated within defined timelines. This role requires a strong combination of security knowledge, program management, data-driven decision-making, and cross-functional influence.

Responsibilities - Manage security issues identified across multiple sources, including security incidents, vulnerability management, penetration testing, risk assessments, insider risk, and other security programs. - Establish, customize, and maintain centralized issue tracking and remediation management systems, and continuously enhance automated posture management processes — including findings intake, remediation ticketing, ownership assignment, action planning, severity calibration, escalation, and closure — to streamline operations across Incident Response, Vulnerability Management, and other security domains. - Partner with security domain teams to conduct root-cause analyses, identify systemic control gaps, and co-design sustainable remediation solutions that translate security findings into executable projects and initiatives. - Drive end-to-end remediation of high-priority security issues with security domain teams, security BP, engineering, infrastructure, IT, and other stakeholder teams. - Define clear remediation strategies, action plans, milestones, accountable owners, and target completion dates based on risk and business impact. - Proactively identify and resolve remediation blockers, cross-team dependencies, ownership gaps, and competing priorities. - Escalate overdue, blocked, or high-risk issues through appropriate governance and leadership channels when necessary. - Validate remediation implementation and supporting evidence, partnering with security SMEs to confirm that identified risks have been effectively addressed and closure criteria are met. - Develop security posture dashboards and reporting to provide clear visibility into remediation roadmaps, progress, key milestones, and overall risk reduction.

Minimum Qualification(s) - Experience managing security findings or remediation programs across multiple technical teams. - Strong understanding of common security risks across areas such as cloud, infrastructure, identity, endpoints, applications, and vulnerabilities. - Demonstrated ability to drive complex cross-functional initiatives without direct authority. - Strong analytical and problem-solving skills with the ability to prioritize issues based on risk and business impact. - Experience developing security metrics, dashboards, or executive-level reporting. - Excellent written and verbal communication skills, including the ability to communicate technical security risks to both technical and non-technical stakeholders.

Preferred Qualification(s) - 5+ years of experience in cybersecurity, security program management, vulnerability management, security operations, risk management, or related fields. - Experience building or operating centralized security issue management or security posture management programs. - Experience with security domains such as incident response, vulnerability management, threat intelligence, etc. - Experience with managing cross-functional remediation programs across multiple regions. - Understanding of security frameworks such as NIST CSF, CIS Controls, ISO 27001, or related standards. - Experience with root-cause analysis and identifying systemic security control gaps. - Experience using automation, data analytics, or AI to improve security operations and remediation workflows.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against TikTok's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on TikTok's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    TikTok's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.