Application Security Analyst

2 Months ago • 3-5 Years

About the job

Job Description

Application Security Analyst needed for Electronic Arts. Must have 3+ years experience in full-stack application security reviews, CWE Top 25 and OWASP Top 10 vulnerabilities, log querying, vulnerability disclosure programs, and security assessment tools. Knowledge of networking, OS internals, cloud architecture, web frameworks, or mobile architecture is required.
Must have:
  • Application Security
  • Vulnerability Disclosure
  • Security Assessment
  • OWASP Top 10
Good to have:
  • Cloud Architecture
  • Web Frameworks
  • Mobile Architecture
  • Cryptography
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.

We are looking for an Application Security Analyst to help us actively defend EA’s products, data, and players. This remote-friendly role will report to the Senior Manager of the Verification and Pentest (VAP) team within the Secure Product Engineering and Anti-cheat Response (SPEAR) organization. You will work with a diverse set of timezones working most closely with an North American-based counterpart.

Responsibilities

  • You will triage and investigate cases reported through our Coordinated Vulnerability Disclosure (CVD) program and partner with developers to guide remediations
  • You will use your application security knowledge to identify proactive monitoring opportunities to detect future abuse across our applications
  • You will investigate daily alerts, search logs for Indicators of Compromise (IoCs) and create or enhance detections
  • You will identify systemic vulnerability trends and patterns, and engage EA security teams to prevent these at scale
  • You will correctly rate the security impact of discovered vulnerabilities, articulate remediation steps to product teams, and report impact to leadership
  • You will deliver talks and presentations within EA, including internal conferences

Qualifications

  • At least three years hands-on experience of full stack Application Security reviews that span multiple platforms and programming languages
  • Experience discovering and remediating CWE Top 25 and OWASP Top 10 vulnerabilities
  • Experience querying logs and setting up detections through a log aggregation platform, such as Grafana
  • Experience handling coordinated vulnerability disclosure programs
  • Hands-on experience with security assessment tools and understanding of their applicability and limitations in different assessment scenarios
  • Knowledge in multiple of the following domains and expertise in at least one: Networking, OS Internals, Cloud Architecture, Web Frameworks, or Mobile Architecture
  • Knowledge of best practices and common pitfalls in one or more of: cryptography, authentication mechanisms, authorization controls and network configurations
  • Knowledge of multiple of the following exploitation techniques and expertise in at least one: XSS, SQLi, IDOR, MitM, DoS, BOF, or ROP
  • Excellent verbal and written English skills
  • Bachelor’s degree or Master’s Degree in Computer Science or Information Security, or equivalent industry experience
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

We exist to inspire the world to play. We put our people first, and we thrive off their diversity in our innovative technology and immersive storytelling. We’re doing the work to give everyone the space to be their full selves while giving back to our community, no matter where you’re working from. We’re looking for problem-solvers, game-changers, innovators, dreamers, doers—people that are ready to move the needle and transform the future of gaming. Join us.

Stockholm, Stockholm County, Sweden (Hybrid)

Montreal, Quebec, Canada (On-Site)

Redwood City, California, United States (On-Site)

Stockholm, Stockholm County, Sweden (Hybrid)

Ontario, Canada (Remote)

Montreal, Quebec, Canada (On-Site)

Guildford, England, United Kingdom (On-Site)

Vancouver, British Columbia, Canada (Hybrid)

Orlando, Florida, United States (On-Site)

Vancouver, British Columbia, Canada (On-Site)

View All Jobs

Get notified when new jobs are added by Electronic Arts

Similar Jobs

Playtech - T1 Security Analyst

Playtech, (On-Site)

Ubisoft - Physical Security Analyst

Ubisoft, Romania (Hybrid)

Smarsh - Information Security Analyst I

Smarsh, United States (Hybrid)

Accurate - Information Security Analyst

Accurate, India (Hybrid)

USE Insider - Security Analyst - Blue Team

USE Insider, Türkiye (Remote)

Nielsen - Lead Security Analyst

Nielsen, India (Hybrid)

Infoblox - Senior Information Security Analyst

Infoblox, India (On-Site)

Scientific Games  - Senior Information Security Analyst

Scientific Games , India (On-Site)

Gaming Innovation Group  - Junior Security Analyst

Gaming Innovation Group , Malta (Hybrid)

Postman - Field Security Analyst

Postman, United States (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Zynga - Software Engineer (Live-ops) - Gram Games

Zynga, United Kingdom (On-Site)

Zynga - Senior Software Engineer - Gram Games

Zynga, United Kingdom (On-Site)

Zynga - Senior Game Developer - Gram Games

Zynga, Türkiye (Hybrid)

Virtuos - Software Engineer (on site: Prague)

Virtuos, Czechia (Hybrid)

Virtuos - Technical Director

Virtuos, Ireland (On-Site)

Virtuos - Engine programmer - Unreal Engine

Virtuos, Czechia (Hybrid)

Virtuos - Network Programmer

Virtuos, Czechia (Hybrid)

Supercell - Senior Software Engineer, Data Platform

Supercell, Finland (On-Site)

Playtech - IT Tech Support [021825]

Playtech, (On-Site)

Get notifed when new similar jobs are uploaded

Jobs in Romania

Nagarro - Cloud/DevOps Engineer

Nagarro, Romania (Remote)

Nagarro - Data Platform Engineer

Nagarro, Romania (Remote)

Nagarro - SAP FICO Consultant with German

Nagarro, Romania (Remote)

Nagarro - Salesforce Consultant with German

Nagarro, Romania (Remote)

Nagarro - MES Consultant (Engineer)

Nagarro, Romania (Remote)

Nagarro - SAP Test Manager with German

Nagarro, Romania (Remote)

Nagarro - SAP Testing Manager with German

Nagarro, Romania (Remote)

Nagarro - SAP BW/4HANA Consultant with German

Nagarro, Romania (Remote)

Nagarro - Senior Python Engineer

Nagarro, Romania (Remote)

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Zynga - Software Engineer (Live-ops) - Gram Games

Zynga, United Kingdom (On-Site)

Zynga - Mobile Game Engineer

Zynga, Türkiye (On-Site)

Zynga - Architect (Unreal Engine)

Zynga, United Kingdom (Hybrid)

Zynga - Software Engineer (Spring Boot / Java)

Zynga, Türkiye (On-Site)

Zynga - Software Developer in Test - Gram Games

Zynga, United Kingdom (On-Site)

Zynga - Senior Software Engineer - Gram Games

Zynga, United Kingdom (On-Site)

Get notifed when new similar jobs are uploaded