Meta logo

Privacy Engineer, Red Team

Meta

Madison, WIJob$184–257K/yrSeen 1 day agoSeen in employer's feed today

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
$184–257K/yr
Location
Madison, WI
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Job overview

Meta seeks an experienced Privacy Engineer to join its Privacy Red Team, proactively identifying privacy risks across its apps and services. The role conducts adversarial assessments, simulates privacy attacks, and drives improvements to privacy-protective systems. It partners with product, legal, policy, engineering, security, and compliance teams to surface and remediate vulnerabilities, shape red team strategy, and communicate findings to technical teams and leadership.

Skills & qualifications

RequiredNice to have

Skills

Privacy EngineeringSecurity EngineeringAdversarial TestingVulnerability ResearchPrivacy Risk AssessmentRed Team AssessmentsThreat ModelingAttack SimulationControl ValidationPrivacy Vulnerability ExploitationTechnical Risk CommunicationCross-Functional RemediationResponsible AI PracticesAutomated ToolingTesting PipelinesPrivacy Program DevelopmentAI Workflow IntegrationPrompt EngineeringContext EngineeringAgent OrchestrationData Flow AnalysisTraffic InspectionReverse EngineeringPrivacy RegulationsGDPRCCPAISO 29134

Qualifications

8+ Years Experience

Full job description

Summary:

Meta is seeking a Privacy Engineer to join our Privacy Red Team, a specialized function dedicated to proactively identifying and exposing privacy risks across Meta's family of apps and services before they can impact the people who use our products. In this role, you will conduct adversarial privacy assessments, simulate real-world privacy attack scenarios, and drive systemic improvements to how Meta designs and builds privacy-protective systems. You will operate at the intersection of offensive security thinking and privacy engineering, partnering with product, legal, policy, and engineering teams to surface and remediate privacy vulnerabilities at scale. This is a high-impact, technically demanding role for an experienced privacy engineer who thinks like an adversary and builds like an engineer.

Required Skills:

Privacy Engineer, Red Team Responsibilities:

  1. Design and execute adversarial privacy assessments across Meta's products and infrastructure, simulating real-world threat scenarios to identify data exposure, unauthorized access, and privacy control failures

  2. Develop and maintain a red team methodology and testing framework specific to privacy risks, including data minimization failures, consent bypass, re-identification attacks, and cross-context data leakage

  3. Identify systemic privacy vulnerabilities across multiple product surfaces and drive remediation through cross-functional partnerships with engineering, product, legal, and policy teams

  4. Define and improve privacy red team processes, tooling, and workflows that enable scalable, repeatable adversarial testing across Meta's evolving product portfolio

  5. Translate complex privacy attack findings into actionable risk assessments and communicate them clearly to both technical engineering teams and non-technical leadership audiences

  6. Partner with privacy engineering, security, and compliance teams to align red team findings with regulatory obligations and internal privacy standards

  7. Drive the long-term strategy and roadmap for privacy red team operations, identifying emerging threat vectors and influencing organizational priorities accordingly

  8. Mentor other engineers on adversarial privacy testing techniques, fostering a culture of proactive privacy risk identification across the broader engineering organization

  9. Lead coordinated responses to large-scale privacy risk escalations, managing cross-functional mitigation efforts and tracking resolution across multiple teams

  10. Identify gaps in existing privacy controls, detection capabilities, and engineering processes, and drive technical solutions to close those gaps at scale

Minimum Qualifications:

Minimum Qualifications:

  1. 8+ years of experience in privacy engineering, security engineering, or a related field with a focus on adversarial testing, vulnerability research, or privacy risk assessment

  2. Experience designing and executing privacy or security red team assessments, including threat modeling, attack simulation, and control validation across large-scale consumer products

  3. Experience identifying and exploiting privacy vulnerabilities such as re-identification risks, data minimization failures, unauthorized data access patterns, or consent and purpose limitation bypass

  4. Experience communicating technical privacy risk findings in written form to both engineering teams and non-technical leadership stakeholders

  5. Experience driving cross-functional remediation efforts and influencing engineering and product decisions through privacy risk analysis

Preferred Qualifications:

Preferred Qualifications:

  1. Experience adhering to and implementing responsible, ethical AI practices (e.g., risk assessment, bias mitigation, quality and accuracy reviews)

  2. Experience developing automated tooling or testing pipelines to scale privacy red team assessments across large, distributed codebases

  3. Track record of defining and operationalizing privacy red team programs from early-stage development through organizational adoption

  4. Demonstrated ability to integrate AI tools to optimize/redesign workflows and drive measurable impact (e.g., efficiency gains, quality improvements)

  5. Demonstrated ongoing AI skill development (e.g., prompt/context engineering, agent orchestration) and staying current with emerging AI technologies

  6. Experience with data flow analysis, traffic inspection, or reverse engineering techniques applied to privacy control validation

  7. Familiarity with global privacy regulations and frameworks such as GDPR, CCPA, or ISO 29134, and experience applying them in an adversarial or audit context

Public Compensation:

$184,000/year to $257,000/year + bonus + equity + benefits

Industry: Internet

Equal Opportunity:

Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.

Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at [email protected].

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.