Application Security Engineer

11 Minutes ago • All levels
Cyber Security

Job Description

We are looking for an Application Security Engineer to join our security team and help us safeguard millions of players and the services they rely on. In this role, you will be responsible for identifying and mitigating security risks across web applications, infrastructure, and internal tools. You will work closely with developers, operations, and other security professionals to integrate security practices into the software development lifecycle and strengthen the company’s overall security posture. This position combines hands-on security testing, automation, and tool development, offering the opportunity to directly influence how security is built into our products. You will also have the chance to contribute to security research, penetration testing, and the implementation of cutting-edge solutions to stay ahead of emerging threats. If you are passionate about application security and eager to take on complex challenges in a dynamic environment, this role is for you.
Good To Have:
  • Russian language skills
  • Programming skills in Go, Rust, Java
  • Experience with SAST/DAST tools and code security analysis
  • Practical experience with cloud security and containerized environments (AWS, GCP, Azure, Docker, Kubernetes)
  • Understanding of Active Directory security
  • Higher technical education (Computer Science, Information Security, or related)
  • Security certifications such as OSCP, OSCE, OSWE, CEH, or similar
  • Experience in penetration testing of real-world systems
  • Participation in Bug Bounty programs
  • Published security research, CVEs, or whitepapers
  • Experience in CTF competitions
Must Have:
  • Conduct security audits of internally developed web applications
  • Perform internal penetration tests
  • Carry out static and dynamic code analysis (SAST/DAST)
  • Implement, refine, and maintain tools for automatic testing of web applications
  • Develop custom tools and solutions to improve overall security
  • Contribute to internal research and improve security processes
  • Strong technical knowledge in computer and network security
  • Solid understanding of modern operating systems and network protocols
  • Hands-on experience with Windows and Unix/Linux systems at system administrator level
  • Knowledge of web application attack vectors and protection methods (OWASP Top 10, common vulnerabilities, exploitation techniques)
  • Experience with security scanners (e.g., Nmap, Nessus, Burp Suite, nuclei)
  • Programming skills in Python, .NET (ability to read, analyze, and make corrections)
  • Willingness to learn additional programming languages
  • Knowledge of vulnerability assessment and exploitation techniques
  • Working proficiency in English
Perks:
  • Additional vacation days based on years of service
  • Additional paid time off (5 Personal Days, Birthday Leave, Marriage Leave, Compassionate Leave)
  • Sick Leave Compensation
  • Maternity Leave Benefits
  • Premium Private Health Insurance
  • Career development and education opportunities
  • English clubs and platform for learning languages
  • Mental well-being program (iFeel)
  • Commuting allowance
  • Company events
  • FitPass membership
  • Discounts for employees
  • Personal Gaming Account
  • Coffee, fruits, and snacks in the office
  • On-site canteen with subsidized prices for food and drinks
  • Seniority Awards
  • Referral program

Add these skills to join the top 1% applicants for this job

game-texts
ethical-hacking
security-testing
linux
aws
rust
unix
azure
nmap
burp-suite
nessus
cloud-security
docker
kubernetes
python
java

Job Overview

We are looking for an Application Security Engineer to join our security team and help us safeguard millions of players and the services they rely on. In this role, you will be responsible for identifying and mitigating security risks across web applications, infrastructure, and internal tools. You will work closely with developers, operations, and other security professionals to integrate security practices into the software development lifecycle and strengthen the company’s overall security posture. This position combines hands-on security testing, automation, and tool development, offering the opportunity to directly influence how security is built into our products. You will also have the chance to contribute to security research, penetration testing, and the implementation of cutting-edge solutions to stay ahead of emerging threats. If you are passionate about application security and eager to take on complex challenges in a dynamic environment, this role is for you.

Reports to

The Application Security Engineer will report to Application Security Team Lead

What will you do?

  • Conduct security audits of internally developed web applications.
  • Perform internal penetration tests.
  • Carry out static and dynamic code analysis (SAST/DAST).
  • Implement, refine, and maintain tools for automatic testing of web applications.
  • Develop custom tools and solutions to improve the company’s overall security.
  • Contribute to internal research and participate in improving security processes.

What are we looking for?

  • Strong technical knowledge in computer and network security.
  • Solid understanding of modern operating systems and network protocols (starting from Layer 2).
  • Hands-on experience with Windows and Unix/Linux systems at the system administrator level.
  • Knowledge of web application attack vectors and protection methods (OWASP Top 10, common vulnerabilities, exploitation techniques).
  • Experience with security scanners and an understanding of how they work (e.g., Nmap, Nessus, Burp Suite, nuclei).
  • Programming skills in Python, .NET (ability to read, analyze, and make corrections).
  • Willingness to learn additional programming languages used within the company (for developing custom tools).
  • Knowledge of vulnerability assessment and exploitation techniques.
  • English at Intermediate level or above (working proficiency).

What additional skills will help you stand out?

  • Russian language skills
  • Programming skills in Go, Rust, Java in addition to Python/.NET.
  • Experience with SAST/DAST tools and code security analysis.
  • Practical experience with cloud security and containerized environments (AWS, GCP, Azure, Docker, Kubernetes).
  • Understanding of Active Directory security, including common attack techniques and defense mechanisms.
  • Higher technical education (Computer Science, Information Security, or related).
  • Security certifications such as OSCP, OSCE, OSWE, CEH, or similar.
  • Experience in penetration testing of real-world systems.
  • Participation in Bug Bounty programs.
  • Published security research, CVEs, or whitepapers.
  • Experience in CTF competitions.

Work mode

  • Hybrid (2-3 days of work from the office).

Benefits

Benefits and perks are tailored to the local market and culture. Our benefits in Belgrade include:

  • Additional vacation days based on years of service at Wargaming: up to 5 days on top of the statutory minimum
  • Additional paid time off (5 Personal Days, Birthday Leave, Marriage Leave, Compassionate Leave)
  • Sick Leave Compensation, Maternity Leave Benefits
  • Premium Private Health Insurance
  • Career development and education opportunities within the company
  • English clubs and platform for learning languages
  • Mental well-being program (iFeel)
  • Commuting allowance
  • Company events
  • FitPass membership
  • Discounts for employees
  • Personal Gaming Account
  • Coffee, fruits, and snacks in the office
  • On-site canteen with subsidized prices for food and drinks
  • Seniority Awards
  • Referral program - you can recommend the best talents to the Company and receive a reward

##### Please submit your CV in English to ensure smooth processing and review.

Set alerts for more jobs like Application Security Engineer
Set alerts for new jobs by DPS games
Set alerts for new Cyber Security jobs in Serbia
Set alerts for new jobs in Serbia
Set alerts for Cyber Security (Remote) jobs

Contact Us
hello@outscal.com
Made in INDIA 💛💙