Facebook

Security Engineering Manager, Malware Discovery

Posted on: 6 Feb 2021

Washington, DC

Job Description

Facebook's Malware Discovery team is looking for a Security Engineering Manager with skills and passion in investigating cyber threats, analyzing data to detect malware patterns and applying an adversarial mindset. This person will be responsible for leading, developing and scaling a team that investigates and measures the prevalence of abuse attributable to malicious software and its impact to Facebook or its community of users. The team provides actionable insights and collaborates with partners to implement scalable and durable solutions.

The ideal candidate will have a background in leading teams, driving strategy, hunting cyber threats, red/purple teaming and large scale data analysis. We are looking for someone who is a self-starter, result-driven, excellent at collaboration and passionate about building a team to hunt and mitigate abuse at scale.

Security Engineering Manager, Malware Discovery Responsibilities

* Build and manage a high-performance team in the infrastructure organization.

* Coach, mentor, and ensure high performance in a fast-paced environment.

* Develop and hone strategy to build, scale and expand services focused on software analysis.

* Build a program to maximize the team's impact, including creating team policies, making process improvements, and working with partner engineering and problem teams.

* Actively engage with cross-functional partners across Facebook to understand their domains and determine how they are affected by malware.

* Proactively uncover, investigate and track new malware related threat vectors across Facebook

* triage large volumes of files to extract signals for further investigation/discovery.

* Determine if malware is the source of abusive or anomalous activity detected by other teams.

* Effectively communicate findings on the severity, prevalence, or absence of malware in a space.

* Create and collaborate on tools and detections to discover or classify unknown malware.

Minimum Qualifications

* 2+ years of leadership/management experience.

* Experience supporting a security engineering team.

* Basic malware triage skills, such as using static and dynamic analysis tool.

* Experience creating host or network based signatures (Yara, ClamAV, Suricata).

* Interest in exploring both traditional and nontraditional domains typically affected by malware.

* Experience handling large amounts of data (e.g. scripting, data analysis, and presenting data in digestible ways).

* Cross functional collaboration (e.g. experience communicating malware jargon in layman terms, and engaging in technical security discussions).

* BA/BS in Computer Science, Data Science, or 2+ years similar work experience.

* Experience in at least one of PHP, Python, C++, or Java.

* Experience with SQL or similar language.

Preferred Qualifications

* Basic understanding of analysis on documents (DOC, PDF) and executables (APK, iOS, PE, ELF, MACHO).

* Knowledge in system internals for one or more of the following: Windows, macOS, Android, Linux, or iOS.

* Knowledge with machine code in one or more architectures (x86, x64, ARM, MIPS, other).

* Knowledge with analyzing and decoding network traffic.

* Experience with campaign tracking.

* Experience with red team or purple team.

Locations

About the Facebook company

Facebook's mission is to give people the power to build community and bring the world closer together. Through our family of apps and services, we're building a different kind of company that connects billions of people around the world, gives them ways to share what matters most to them, and helps bring people closer together. Whether we're creating new products or helping a small business expand its reach, people at Facebook are builders at heart. Our global teams are constantly iterating, solving problems, and working together to empower people around the world to build community and connect in meaningful ways. Together, we can help people build stronger communities we're just getting started.

Facebook is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at accommodations-ext@fb.com.

Facebook

Menlo Park, CA

Facebook, Inc. provides various products to connect and share through mobile devices, personal computers, and other surfaces worldwide. The company’s products include Facebook that enables people to connect, share, discover, and communicate with each other on mobile devices and personal computers; Instagram, a community for sharing photos, videos, and messages; Messenger, a messaging application for people to connect with friends, family, groups, and businesses across platforms and devices; and WhatsApp, a messaging application for use by people and businesses to communicate in a private way. It also provides Oculus, a hardware, software, and developer ecosystem, which allows people to come together and connect with each other through its Oculus virtual reality products. As of December 31, 2018, it had approximately 1.52 billion daily active users. The company was founded in 2004 and is headquartered in Menlo Park, California.