Job Description SummaryDevelop and perform adversarial testing to identify how attackers and other nefarious agents may exploit Adobe's externally facing products, APIs, customer journeys, and fraud controls. Uses software engineering, automation, data analysis, and adversarial techniques to recreate real-world attacks, test defenses, and identify control gaps.
What you'll do- Conduct adversarial testing of Adobe's externally facing products, services, APIs, and fraud controls to identify how they may be exploited by fraudsters and other bad actors.
- Recreate real-world fraud and abuse attacks to understand attack paths, identify control gaps, and determine how defenses can be circumvented.
- Design and build automated testing tools and scripts using APIs, Python or similar languages to simulate fraud and abuse scenarios at scale.
- Develop creative test scenarios across account creation, identity, payments, entitlements, APIs, and other customer and product experiences.
- Test new and existing fraud prevention measures to determine their efficiency and find opportunities to strengthen detection and prevention.
- Retest mitigations to validate that identified attack paths have been effectively addressed and identify potential alternative methods of circumvention.
- Document attack methodologies, findings, and recommendations and help build repeatable adversarial testing capabilities.
- Stay ahead of on emerging fraud, abuse, automation, and AI-enabled attack techniques and apply those findings to Adobe's products and defenses.
What you need to succeed- Strong software engineering or technical automation skills, with proficiency in Python or a similar scripting/programming language.
- Experience working with REST APIs, HTTP, authentication, web applications, automation frameworks, and modern cloud-based systems.
- Experience building scripts, tools, or automated workflows to test complex systems and behaviors.
- Must have: Python/similar programming, APIs/HTTP, automation, debugging, Git, data/SQL, proficiency in interpreting product architecture.
- Useful: JavaScript, cloud services, browser automation, authentication/identity systems, CI/CD, security testing tools.
- Strong understanding of fraud, abuse, cybersecurity, adversarial testing, or digital risk, with curiosity about how bad actors exploit products and controls.
- Strong analytical skills and experience using SQL, logs, telemetry, or other data sources to understand system behavior and evaluate test results.
- Ability to understand complex product architectures and work effectively with Product, Engineering, Fraud, and Security teams.
- Strong communication and documentation skills with the ability to translate technical findings into clear risks and actionable recommendations.
Expected Pay Range:Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $144,800 - $261,450 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process.In California, the pay range for this position is $180,600 - $261,450
At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP).
In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award.
State-Specific Notices:California:Fair Chance OrdinancesAdobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and "fair chance" ordinances.
Colorado:Application Window NoticeIf this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs.
Massachusetts:Massachusetts Legal NoticeIt is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.