External Security Relations & Assurance Specialist - Global Security Organization
TikTok
- Location
- New York, New York, United States of America
- Employment
- Full Time
- Work model
- On-Site
- Level
- Mid
- H-1B history
- 148 approvals (FY2023)
About this role
The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates.
Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us — whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop — GSO protects their data and privacy, so they can have a secure and trustworthy experience.
The GSO provides industry-leading security and privacy services to company, guided by four principles: trust and transparency, business enablement, risk-informed decision-making, and proactive risk reduction. We strive to build sustainable, world-class security capabilities.
The Security Solutions & Delivery (SSD) team turns security requirements into practical, auditable outcomes that help the business move faster and reduce risk. We support business revenue through Customer Assurance, sustain critical third-party integrations through Partner Compliance, translate evolving regulatory requirements into action through Regulatory Intelligence, and directly take ownership of fixing systemic identified risks through Security Remediation. In addition, Our Organizational Excellence pillar supports the broader Global Security Organization with the finance, coordination, and the operational foundations it needs to run effectively. The impact of this work is clear and immediate: faster deals, stronger partner continuity, addressing high priorities, and greater trust with customers and partners.
We are seeking an External Security Relations & Assurance lead to serve as the primary trust and assurance interface between our security organization and external clients, partners, and regulators. This role combines deep client security expertise with a customer-service-first mindset — you will be the person clients turn to when they need confidence in our security posture, and the person who translates their concerns into actionable internal priorities. This is a net-new role designed to elevate how we deliver security assurance to external stakeholders. You will own the end-to-end client security assurance lifecycle: from initial client security inquiries and due diligence requests, through tailored security narratives, evidence packages, and continuous relationship management. Think of this as a senior individual contributor role where you are both a security expert and a customer experience leader — ensuring every client interaction with our security team is consistent, professional, and trust-building.
Key Responsibilities - Own external client and partner security inquiries end-to-end, from intake through delivery - Produce client security assurance deliverables (security narratives, architecture briefs, assurance packages) that are accurate, tailored, and ready for external sharing without rework - Build and maintain trust-based relationships with sales teams - Lead client-facing security briefings that translate complex technical controls into clear, business-relevant language that moves deals forward - Embed into our advertising products, understand the architecture, product specs, and where the security risks live, so assurance is grounded in reality - Understand the sales lifecycle, know where a deal is, what's needed, and when, and deliver assurance is critical - Define and enforce a client security response model with SLAs, escalation paths, and quality standards - Understand each key client's security requirements, regulatory obligations, and risk appetite, tailor