Job Description
About the team
TikTok Shop is a content e-commerce business with international short video product as the carrier. It is committed to becoming the first choice for users to discover and purchase good products with affordable prices. TikTok Shop business team hopes to provide users with more tailored and efficient consumption experience, enabling merchants to receive reliable platform services in different scenarios such as live e-commerce, short video content e-commerce, thereby making more affordable and high-quality products easily accessible and improving lives.
Our team is responsible for security threat analysis for TikTok Shop and the development of corresponding technical solutions. Our core focus areas include information leakage analysis, anti-scraping detection, device and account security analysis, traffic security analysis (including WAF), data profiling, and the construction of general security awareness capabilities. We work closely with business stakeholders, engineers, and blue team partners to help ensure a secure and trusted shopping environment for e-commerce users.
As a project intern, you will have the opportunity to engage in impactful short-term projects that provide you with a glimpse of professional real-world experience. You will gain practical skills through on-the-job learning in a fast-paced work environment and develop a deeper understanding of your career interests.
Applications will be reviewed on a rolling basis - we encourage you to apply early.
Successful candidates must be able to commit to at least 3 months long internship period.
Candidates who pass resume screening will be invited to participate in TikTok's technical online assessment.
Responsibilities
- Conduct traceability analysis on e-commerce security incident cases based on system logs, traffic data, intelligence data, etc., and summarise attack methods.
- Develop and optimise data tables for e-commerce API assets with our engineers, support data tagging according to security governance requirements.
- Explore the black industry chain in key business scenarios, security intelligence collection tools, and investigate the operation, profit models, and scale trends of black and gray industry chains with our engineers.
- Track cyber attacks, perform reverse analysis of black-industry tools and cheating malware, restore attack methods and attack paths, and identify weak points in security defense.