
The Wallet & Payments Security Solutions team sits at the intersection of developer experience and customer trust, building the foundational security layer that every product in the Apple Pay portfolio depends on. We are a group of security engineers passionate about enabling fast, safe engineering at scale across a modern, Kubernetes-based multi-cloud platform. This role is an opportunity to shape secure-by-default practices across Apple Pay engineering organizations working on Payments, Transit, Access, & Identity products. If you're passionate about security and customer safety, we may have the job for you.
As a Platform Security Engineer on the Wallet & Payments Security Solutions team, you will design, build, and operate security application frameworks and solutions for a Kubernetes-based developer platform spanning multiple cloud providers. You will partner closely with platform and product engineering teams to embed security into every stage of the development lifecycle, ensuring guardrails never become friction. Your work will directly protect Apple customers and the engineers who build the products they rely on every day. Further, as part of this role, you will frequently collaborate with other security engineers and architects across Apple to identify, define and design security solutions which elevate overall security profile of Apple Services.
Prior experience contributing to or driving a secure-by-default platform initiative across a large engineering organization
Experience with Identity and Access management frameworks
Deep expertise in Kubernetes security, including RBAC, admission control, pod security standards, network policy, and workload identity
Experience designing and implementing security controls across at least two major cloud providers
Experience hardening containers and orchestration: image provenance, admission control, runtime and network policy, service mesh configuration, and clean isolation across micro services
Experience with Supply Chain Security and optimizing Vulnerability management loop.
Identity protocols and applied cryptography in practice: OAuth2, OIDC, JWT, SAML, mutual TLS, PKI , encryption and signing primitives.
Fluency with coding agents and LLM-based development tooling, and judgment about when to trust their output.
5+ years of experience in platform security and/or software engineering experience in infrastructure and application development, or a closely related security engineering discipline
Experience in Go, Kotlin/Java and Spring Framework.
Familiarity with current and emerging security architecture design for cloud environments
Ability to communicate thoughtfully and clearly, both verbally and in writing, to discuss complex technical concepts with diverse audiences, including global teams.
Passion for developer enablement and building "security as a product"
Ability to influence engineering culture through documentation, advocacy, and cross-team collaboration rather than mandate alone
The tenacity and perseverance to drive a complex project all the way from conception to production.
BS in Computer Science or equivalent experience/skills in application development and security.

We’re a diverse collective of thinkers and doers, continually reimagining what’s possible to help us all do what we love in new ways. And the same innovation that goes into our products also applies to our practices — strengthening our commitment to leave the world better than we found it. This is where your work can make a difference in people’s lives. Including your own.
Apple is an equal opportunity employer that is committed to inclusion and diversity. Visit apple.com/careers to learn more.