Application Security Engineer

2 Months ago • 2 Years + • Cyber Security • $90,000 PA - $150,000 PA

Job Summary

Job Description

The Application Security Engineer will collaborate with various teams to implement and maintain security measures for software systems and applications. This role involves working with auditors, developing security standards, building secure artifact workflows, and conducting threat models. The engineer will also assist service teams in understanding and remediating security findings. This role requires a strong understanding of security principles and a commitment to protecting PENN Interactive's platforms.
Must have:
  • 2+ years of Application Security or DevSecOps experience
  • Experience working with GCP or AWS
  • Experience with software supply chain security (SBOMs, Artifact Signing, Attestations)
  • Programming experience in Python or Go
  • Experience with implementing security tooling in CI/CD
  • Experience supporting RESTful APIs and securing containerized workloads (GKE, EKS)
  • Experience working in regulated environments (PCI-DSS, SOC 2, etc)

Job Details

PENN Entertainment, Inc. is North America’s leading provider of integrated entertainment, sports content, and casino gaming experiences. From casinos and racetracks to online gaming, sports betting and entertainment content, we deliver the experiences people want, how and where they want them.

We’re always on the lookout for those who are passionate about creating and delivering cutting-edge online gaming and sports media products. Whether it’s through ESPN BET, Hollywood Casino, theScore Bet Sportsbook & Casino, or theScore media app, we’re excited to push the boundaries of what’s possible. These state-of-the-art platforms are powered by proprietary in-house technology, a key component of PENN’s omnichannel gaming and entertainment strategy.

When you join PENN Entertainment’s digital team, you’ll not only work on these cutting-edge platforms through theScore and PENN Interactive, but you’ll also be part of a company that truly cares about your career growth. We’re committed to supporting you as you expand your skills and explore new opportunities.

With locations throughout North America, you can build a future at PENN Entertainment wherever you are. If you want to challenge conventions in gaming, media and entertainment, we want to talk to you.

About the Role & Team
As part of the team, you will be working with a team of smart, friendly, and dedicated Engineers, Product Managers and Designers determined to deliver some of the best apps the market has to offer. We want you to be challenged and to get the full experience of what it’s like to work here! We are looking for an Application Security Engineer to join our Application Security team, to work cross-functionally across engineering. They are also a sister team to the Site Reliability Engineering team. This role will be responsible for designing, servicing, and implementing security measures to secure software systems, applications, code, and any related components.

About the Work

  • Collaborate with release and change management, SRE, Engineering, and compliance teams
  • Work with security/internal/external/state auditors to demonstrate compliance
  • Maintain a working knowledge of OWASP top 10 and MITRE top 25 CWE
  • Develop standards for security tooling focused on the application layer (SAST, DAST, SCA, MAST, RASP)
  • Build/implement secure artifact workflows in the SDLC to ensure governance and compliance standards are being met
  • Create technical approaches to implementing Application Security control technologies
  • Contribute to PENN Interactive’s Application Security program to support our continued growth
  • Define and report on security metrics, their delivery, and improvements
  • Work with service teams to conduct threat models of PENN Interactive’s internal and customer facing applications
  • Assist service teams in understanding and remediating security findings (code bashing)
  • Other duties as required.

About You

  • 2+ years of Application Security or DevSecOps experience
  • Experience working with GCP or AWS
  • Experience with software supply chain security (SBOMs, Artifact Signing, Attestations)
  • Programming experience in Python or Go
  • Experience with implementing security tooling in CI/CD
  • Experience supporting RESTful APIs and securing containerized workloads (GKE, EKS)
  • Experience working in regulated environments (PCI-DSS, SOC 2, etc)

What We Offer

  • Competitive compensation package.
  • Comprehensive Benefits package.
  • Fun, relaxed work environment.
  • Education and conference reimbursements.
  • Opportunities for career progression and mentoring others.

#LI-REMOTE #LI-HYBRID

Salary Range

$90,000 - $150,000 USD

Initial placement within the salary range is based on an individual's relevant knowledge, skills, and experience. Base salary is just one component of our competitive Total Rewards package, which includes wellness programs designed to support our team members' financial, physical, and mental well-being. Specific benefits—such as day-one medical coverage, 401(k) matching, annual performance bonus and equity package — depending on position. Paid time off is earned according to the local policy and increases with the length of employment.

Click HERE to discover how we empower team members to grow, thrive, and advance in their careers. Check out our LinkedIn page!

Similar Jobs

Marsh McLennan - Senior Employee Benefits Consultant

Marsh McLennan

Manchester, England, United Kingdom (Hybrid)
1 Month ago
Nordson Corporation - Quality Engineer II

Nordson Corporation

Allen, Texas, United States (On-Site)
2 Months ago
Ansys - Labor Relations Manager

Ansys

Otterfing, Bavaria, Germany (Remote)
2 Months ago
Probably Monsters - Principal Player Combat & Gameplay Designer

Probably Monsters

Bellevue, Washington, United States (On-Site)
12 Months ago
Diligent Corporation - Senior Field Marketing Manager

Diligent Corporation

New York, New York, United States (On-Site)
2 Months ago
Applied materials  - Senior Network Security Engineer

Applied materials

Bengaluru, Karnataka, India (On-Site)
3 Weeks ago
Glocomms - Information Security Engineer

Glocomms

New York, United States (On-Site)
1 Month ago
Cubic corporation - Senior Security Operations Engineer

Cubic corporation

Hyderabad, Telangana, India (On-Site)
1 Month ago
Capco - Engineer of Security - Risk Analysis and Barrier Management

Capco

Macaé, State Of Rio De Janeiro, Brazil (Hybrid)
2 Months ago
Sonar Source - Offensive Security Engineer

Sonar Source

Geneva, Geneva, Switzerland (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Artists Animation - Production Coordinator

Artists Animation

British Columbia, Canada (Hybrid)
3 Months ago
CrowdStrike - Engineer III - Backend, Ingestion

CrowdStrike

Canada (Remote)
2 Months ago
Rocksteady Studios - Expert Lead Designer

Rocksteady Studios

(Hybrid)
3 Months ago
Enphase Energy - Customer Support Engineer - Japanese

Enphase Energy

Bengaluru, Karnataka, India (Remote)
2 Months ago
Qualcomm - Firmware Development - Senior Engineer

Qualcomm

Chennai, Tamil Nadu, India (On-Site)
4 Weeks ago
bytedance - Senior Software Engineer(Financing Product), Global Payments

bytedance

San Jose, California, United States (On-Site)
8 Months ago
Rolls-Royce - Services Technology Engineer

Rolls-Royce

Singapore, Singapore (On-Site)
1 Month ago
Applied materials  - Electrical Engineer

Applied materials

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Tencent - Senior IT Devops Engineer

Tencent

Irvine, California, United States (On-Site)
1 Month ago
playrix  - Senior Unity Software Engineer (Gameplay)

playrix

Montenegro (Remote)
8 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Philadelphia, Pennsylvania, United States

Apple - Engineering Project Manager, DevOps/SRE

Apple

Cupertino, California, United States (On-Site)
2 Months ago
DraftKings - Senior Analyst, Strategic Finance

DraftKings

Boston, Massachusetts, United States (On-Site)
3 Months ago
Canva - Revenue Operations Manager, NPI

Canva

San Francisco, California, United States (Remote)
3 Months ago
Sandbox VR - Shift Lead - The Battery (Keyholder)

Sandbox VR

Atlanta, Georgia, United States (On-Site)
1 Year ago
Roblox - Senior Full Stack Engineer Creator Knowledge

Roblox

San Mateo, California, United States (On-Site)
1 Month ago
Apple - Hardware System Electrical Engineer - Beats

Apple

Los Angeles, California, United States (On-Site)
3 Weeks ago
CRB workforce  - VMware Cloud Foundation Engineer

CRB workforce

Houston, Texas, United States (Remote)
1 Month ago
Philips - Sr. Cardiac Wireless Monitoring Technician

Philips

Hamilton, New Jersey, United States (On-Site)
1 Month ago
The Walt Disney Company - Senior Software Engineer (C++/Rust)

The Walt Disney Company

Santa Monica, California, United States (On-Site)
5 Months ago
Apple - Compute SRE

Apple

Seattle, Washington, United States (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

FICO - Security Engineer - Senior Engineer

FICO

Bengaluru, Karnataka, India (On-Site)
2 Years ago
JMA - Senior Embedded Systems Security Engineer

JMA

Syracuse, New York, United States (On-Site)
1 Month ago
GoMotive - Information Security Analyst II

GoMotive

Pakistan (Remote)
2 Months ago
CD PROJEKT RED - Cybersecurity Specialist

CD PROJEKT RED

Warsaw, Masovian Voivodeship, Poland (Hybrid)
2 Months ago
logifuture - Information Security Engineer

logifuture

Bucharest, Bucharest, Romania (Hybrid)
2 Months ago
Tekion Corp - Security Engineer II

Tekion Corp

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Sonar Source - Offensive Security Engineer

Sonar Source

Bochum, North Rhine-Westphalia, Germany (On-Site)
2 Months ago
Canonical - Linux Cryptography and Security Engineer

Canonical

(Remote)
2 Months ago
Guardian - Senior Lead Engineer - Network Security

Guardian

Gurugram, Haryana, India (On-Site)
2 Months ago
Electronic Arts - Security Software Engineer

Electronic Arts

Vancouver, British Columbia, Canada (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

Philadelphia, Pennsylvania, United States (Remote)

Greenfield, Massachusetts, United States (On-Site)

Philadelphia, Pennsylvania, United States (Remote)

Philadelphia, Pennsylvania, United States (Remote)

Philadelphia, Pennsylvania, United States (Hybrid)

Philadelphia, Pennsylvania, United States (Remote)

Cherry Hill, New Jersey, United States (Hybrid)

Philadelphia, Pennsylvania, United States (On-Site)

Philadelphia, Pennsylvania, United States (Hybrid)

Philadelphia, Pennsylvania, United States (Remote)

View All Jobs

Get notified when new jobs are added by Penn Interactive

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug