Vulnerability Response Manager - Apple Information Security
Apple Oakbrook
Role Number: 200655805-3337
Summary
Apple Information Security is seeking an experienced security engineering manager to lead the Vulnerability Response team across the United States and EMEIA regions. Apple's external perimeter spans thousands of services relied upon by billions of users worldwide, and this team is responsible for continuously identifying, analyzing, and remediating vulnerabilities across that surface. You will combine hands-on technical leadership with people management, overseeing programs that include subcomponents of Apple's bug bounty program, proactive vulnerability discovery, WAF rule development, emerging threat response, and custom security tooling.
You will play a critical role in protecting Apple's services and customers by ensuring timely and thorough response to security risks, fostering engineering excellence, and driving strategic initiatives that strengthen Apple's overall security posture. This role is both strategic and operational, requiring deep technical expertise, strong leadership, and the ability to manage a geographically distributed team operating in a continuous response environment.
Description
As a manager on the Vulnerability Response team, you will lead the day-to-day operations of security engineers across the US and EMEIA regions, as well as oversee resources providing around-the-clock support. You will set team priorities, drive execution across multiple concurrent programs, and ensure operational continuity for a function that requires uninterrupted coverage. This includes direct participation in on-call escalation rotations, hands-on technical contributions such as penetration testing, variant analysis, security tool development, and strategic planning to evolve the team's capabilities over time.
You will partner closely with teams across Apple to ensure coordinated and effective vulnerability response. You will represent the team in cross-functional forums, advocate for security improvements with engineering leadership, and contribute to the development of policies, processes, and tooling that scale the team's impact. You will also maintain the professional standards and reputation through oversight of researcher engagement, vulnerability adjudication, and program communications.
Minimum Qualifications
8+ years of experience in information security, with demonstrated expertise in vulnerability management, web application penetration testing, and incident response for large-scale internet-facing services, including 3+ years of people management experience leading and developing teams of security engineers.
Strong technical proficiency in web application security, including hands-on experience identifying and remediating common vulnerability classes, and software development skills in one or more of Python, Go, or Bash.
Experience managing or contributing to a vulnerability disclosure or bug bounty program, including researcher engagement, vulnerability validation, and coordinated disclosure processes.
Experience with vulnerability scanning tools and methodologies at enterprise scale, including both commercial and open-source solutions.
Demonstrated ability to manage geographically distributed teams across multiple time zones, with willingness to participate in on-call rotations, including weekends, as part of a tiered escalation model.
Excellent written and verbal communication skills, with the ability to articulate complex security issues and risk to both technical and non-technical audiences.
Preferred Qualifications
Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent professional experience.
Experience with cloud-native architectures, WAF technologies, and DNS security disciplines, with the ability to assess security implications across modern deployment and infrastructure environments.
Background in applying AI and machine learning techniques to security operations, including automated analysis, classification, or remediation workflows.
Relevant industry certifications such as CISSP, OSCP, OSCE, GPEN, or equivalent are helpful but not required.
- ...senior cybersecurity professional to manage and enhance the security of data and systems. This role... ...overseeing threat monitoring, coordinating responses to incidents, and collaborating with... ..., and a strong background in information security. Exceptional leadership and...Suggested
$159.3k - $202.4k
...The AWS Cloud Security Response team operates on the 'AWS' side of the Shared Responsibility... ...security judgment to assess risk, form informed opinions on severity, and drive engineering... ...develop a deep understanding of the vulnerability, its exploitability, and its potential...SuggestedInternshipFlexible hoursShift work- ...Role Number: 200617004-3337 Summary Apple Information Security is responsible for protecting Apple’s data in transit and at rest. Apple employees... ..., as well as having excellent interpersonal and time management skills, are keys to success in this position. As a...SuggestedShift work
$139.5k - $258.1k
...Machine Learning Engineer, Information Security Join Apple's Information Security Machine Learning (ISML) team, where we... ...fundamentals including network security, incident response, threat modeling, and vulnerability management. Excellent written and verbal...SuggestedRelocation- ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider... ...the organization. The CISO will be responsible for leading the development and implementation... ...a robust security program, managing security incidents, and ensuring compliance...Suggested
- ...Chief Information Security Officer (CISO) About the Company Ambitious educational institute... ...Universities Specialties Information Management Librarianship Informatics... ...mitigating cyber risks. The CISO will be responsible for implementing enterprise-wide...
$113k - $149k
...Information Systems Security Officer Seattle, Washington, United States Anduril... ...risk assessments, vulnerability assessments, and audits to... ...accreditation documentation. Manage the organization's... ...assist, even lead, incident response efforts, including investigation...Full timeWork experience placementImmediate start- ...Virtual Chief Information Security Officer (CISO) About the Company Flourishing provider... .... The successful candidate will be responsible for consolidating various cybersecurity... ...programs. Strong governance, risk management, and executive communication skills are...Part time
$140.8k - $190.5k
...Cybersecurity Trust And Protection Sr Information Security Manager Be unstoppable with us! T-... ...of cyber related threats and vulnerabilities and alignment, implementation, and... ...capabilities. Primary Duties and Responsibilities: Partner with business and technology...Permanent employmentFull timeTemporary workWork experience placementLocal area$75 per hour
...Key Responsibilities and Duties: Guide security policy and participate in broader Information Security governance efforts. Develop and... ...Information Security Management System (ISMS) in collaboration... ...software threats and vulnerability mitigation techniques....Hourly payLocal area- ...Chief Information Security Officer (CISO) About the Company Accomplished executive search firm... .... The successful candidate will be responsible for establishing and maintaining a robust... ...procedures, and standards, as well as managing security awareness and training...
- ...IT Audit Manager Location – Seattle, WA Duration – 3 – 6 months – potential to... ...only USC,GC,TN & GC/H4-EAD Preferred Responsibilities: Evaluate risks and controls in... ...development, a review of client's information security programs, and related IT processes....Full time
- ...We do this by driving Responsible Growth and delivering... ...Development Security Framework Program within... ...misconfigurations and vulnerabilities, and reporting on associated... ...external threats on information systems and predict... ...practical advice regarding managing risks. Learn and...Work at officeFlexible hoursShift workDay shift
- ...Information Security Vulnerability Consultant Work closely with Application Development, Cloud, Governance... ..., Vulnerability Scanning and Management, Risk & Security Analysis ~... ...relationships in pursuit of goals and responsibilities. ~ Excellent analytical skills to...
- Information System Security Officer (ISSO) Barbaricum is a rapidly growing government... ...have been applied. Core Responsibilities Achieve ATOs for... ...interpret the findings of vulnerability scanning utilities such as... ...(STIG benchmark) and manage a Plan of Actions and Milestones...For contractors
- ...is looking for a talented Senior Information System Security Officer to be responsible for the most complex systems and... ...and authorize systems Manage Plans of Action and Milestones (... ...Incident response coordination Vulnerability management Cloud security architectures...Contract work
- Job Title: Senior Information Systems Security Officer Location: Ft. Washington, MD Clearance... ...'s systems and data. Responsibilities Design, deploy, and manage security solutions (Scanning,... ...Conduct risk assessments and vulnerability assessments via implementing CI...
- Overview The Information Security Manager, working with in Corporate Information Security Team will be responsible for liaising with assigned business units on behalf of Corporate... ...security service providers with vulnerability assessments of business applications,...Local area
$136.58k - $218.52k
...integration strategy, and platform security Lead solution design and... ...practices, and release management processes Partner with... ...in Computer Science, Information Systems, Engineering, or a... ...exhaustive of all duties, responsibilities, skills, efforts, or working...Work experience placementWork at office- ...Cybersecurity - Senior Information System Security Manager (ISSM) Company: The Boeing Company Boeing... ...domains. The Senior ISSM is responsible for ensuring all Information System... ...development environments, threats, vulnerabilities and internal interfaces to define...Remote work
$234.4k - $385k
...About the Team Security is at the foundation... ...Security you will be responsible for identifying and mitigating security vulnerabilities within software applications... .... Vulnerability Management : Track, analyze,... ...experience in information security, cybersecurity...Work at officeRemote workRelocation package$136k - $184k
...AWS Security Incident Response is looking for a Security Engineer who investigates with urgency,... ...internship) in industry-based security vulnerabilities identification, attack patterns,... ...onboarding process, please visit for more information. If the country/region you're...InternshipImmediate startFlexible hours$85k - $95k
...helping organizations engineer secure clouds to meet FedRAMP's... ...documentation for client information systems. You'll apply your... ...primary focus on FedRAMP. Key Responsibilities: Engage directly... ...Conduct system and network vulnerability scanning and analysis using...Remote workRelocation$104k - $156k
...As an Advanced Security Engineer focused on... ...Requirements Role Responsibilities ~ Design, implement... ...with IT on device management, deployment, and... ...in Computer Science, Information Security, or equivalent... ...~ Familiarity with vulnerability scanning and threat...Remote work$87.7k - $164k
...Incident Analyst in Seattle. This role involves investigating security incidents, performing digital forensic analyses, and supporting... ...ideal candidate will have over 5 years of experience in incident response and deep knowledge of both Windows and Unix/Linux systems. We...Flexible hours$136k - $184k
...At Amazon Healthcare Security, we are on a mission... ...Engineer, your responsibility is to ensure AHS customer... ...technical program managers dedicated to continuously... ...of application vulnerabilities and assist in remediation... ...Experience in information security and compliance...Temporary workInternshipFlexible hours$87.7k - $164k
Within Information Security we blend risk strategy, digital identity, cyber... ...of the technical team responsible for security incident response... ...threats Maintain, manage, improve and update security... ...Understanding of security threats, vulnerabilities, and incident response...Summer holidayLocal areaFlexible hours- ...SERVICES LLC Offered Position: Security Engineer II Job Location:... ...: AMZ10108414 Position Responsibilities: Provide frontline support for all information security related issues, such... ...knowledge of system security vulnerabilities and remediation techniques, including...
$87.98k
...equitable, and welcoming. UW Information Technology (UWIT) is the... ...infrastructure, information security, people & culture, research... ..., and Google Drive). The responsibilities of this position are specialized... ...supports the Technology Manager's leadership, this role will...Full timeTemporary workWork at officeShift workDay shift- ...implementation in SAP S/4 HANA SAP Quality Management Additional Work Locations:... ...MO North Charleston, SC Information Digital Technology & Security (IDT&S) division is seeking... ...experience preferred). Key Responsibilities Solutioning & Workshops...Hourly payFor contractorsH1bWork at officeRelocationMonday to FridayShift workDay shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Vulnerability Response Manager - Apple Information Security. Be the first to apply!
- senior director information security Seattle, WA
- surveillance manager Seattle, WA
- security engineering manager Seattle, WA
- security systems manager Seattle, WA
- director global security Seattle, WA
- physical security manager Seattle, WA
- security manager Seattle, WA
- program manager with security clearance Seattle, WA
- corporate security manager Seattle, WA
- director information security Seattle, WA

