Responsibilities
About the Team
The E-Commerce Risk Control & Security (RCS) team works to protect our users, including and beyond buyer, seller, creator; to minimize the damage of inauthentic behaviors on TikTok Shop (TTS) E-Commerce platforms, covering multiple classical and novel business risk areas such as account integrity, incentive abuse, malicious behaviors, brushing, click-farm, information leakage, etc. By utilizing Machine Learning models, LLMs, graphs, & algorithm, RCS dynamically controls risk scenarios, identify Modus Operandi (MO), and enforces rules in realtime to protect TTS and minimize capital loss from fraudsters, hackers, and questionable buyers, sellers, and creators. Through building software systems, risk models and operational processes, as well as collaborating with many cross-functional teams and stakeholders, RCS team operates the safest and most trusted place worldwide to transact online by securing the integrity of the e-commerce ecosystem and providing a safe shopping experience on the TTS platform.
Want more jobs like this?
Get jobs in San Jose, CA delivered to your inbox every week.
Responsibilities:
- Building software systems, risk models and operational processes, as well as collaborating with many cross-functional teams and stakeholders, to identify cybersecurity threats, prevent accounts takenover, and the corresponding mitigation strategies in various scenarios
- Invent, implement, and deploy state of the art machine learning algorithms, to respond to and mitigate business risks in TTS products/platforms.
- Build prototypes and explore conceptually new solutions, define and conduct experiments to validate/reject hypotheses, and communicate insights and recommendations to Product and Tech teams
- Collaborate with cross-functional teams from multidisciplinary science, engineering and business backgrounds to enhance current automation processes
- Develop efficient data querying infrastructure for both offline and online analysis, uncover evolving attack motion, identify weaknesses and opportunities in risk defense solutions, explore new space from the discoveries.
- Define risk control measurements. Quantify, generalize and monitor risk related business and operational metrics. Align risk teams and their stakeholders on risk control numeric goals, promote impact-oriented, data-driven data science practices for risks.
- Maintain technical documents and communicate results to diverse audiences with effective writing, visualizations, and presentations
In order to enhance collaboration and cross-functional partnerships, among other things, at this time, our organization follows a hybrid work schedule that requires employees to work in the office 3 days a week, or as directed by their manager/department. We regularly review our hybrid work model, and the specific requirements may change at any time.
Qualifications
Minimum Qualifications:
- Bachelor's or above in Computer Science, Mathematics, Machine Learning, or a related STEM major (e.g., Finance for financial fraud roles).
- 3+ years of industry experience building and working on end to end machine learning systems, including data analysis, ML modeling and data pipelines.
- Experience with NLP (Natural Language Processing), large language models (LLMs) and their applications to fraud detection.
- Proficiency in Python and SQL, experience with big data and real time processing such as Spark, Flink, or Kafka, and experience with deep learning frameworks such as TensorFlow, PyTorch, or Scikit-learn.
Preferred Qualifications:
- Domain knowledge of fraud, abuse, risk, cybersecurity threats and mitigation strategies, background in building solutions to identify account take over attacks is a plus.
- Experience with anomaly detection techniques and behavioral biometrics to distinguish legitimate users from attackers.
- Experience in realtime and offline Account Security aspects in large scale E-commerce / financial platforms, and the anti-ATO (account takeover) techniques
- Experience in realtime Traffic Security aspects of large scale E-commerce / financial platforms, and the site content protection / anti-crawling techniques.
- Familiarity with cloud platforms (AWS, GCP, Azure) and containerization technologies (Docker, Kubernetes) is a plus.
Job Information
[For Pay Transparency] Compensation Description (annually)
The base salary range for this position in the selected city is $145000 - $355000 annually.
Compensation may vary outside of this range depending on a number of factors, including a candidate's qualifications, skills, competencies and experience, and location. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and restricted stock units.
Benefits may vary depending on the nature of employment and the country work location. Employees have day one access to medical, dental, and vision insurance, a 401(k) savings plan with company match, paid parental leave, short-term and long-term disability coverage, life insurance, wellbeing benefits, among others. Employees also receive 10 paid holidays per year, 10 paid sick days per year and 17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure).
The Company reserves the right to modify or change these benefits programs at any time, with or without notice.
For Los Angeles County (unincorporated) Candidates:
Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state, and local laws including the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Our company believes that criminal history may have a direct, adverse and negative relationship on the following job duties, potentially resulting in the withdrawal of the conditional offer of employment:
1. Interacting and occasionally having unsupervised contact with internal/external clients and/or colleagues;
2. Appropriately handling and managing confidential information including proprietary and trade secret information and access to information technology systems; and
3. Exercising sound judgment.