Application Security Engineer

29 Minutes ago • All levels

Job Summary

Job Description

We are looking for an Application Security Engineer to join our security team and help us safeguard millions of players and the services they rely on. In this role, you will be responsible for identifying and mitigating security risks across web applications, infrastructure, and internal tools. You will work closely with developers, operations, and other security professionals to integrate security practices into the software development lifecycle and strengthen the company’s overall security posture. This position combines hands-on security testing, automation, and tool development, offering the opportunity to directly influence how security is built into our products. You will also have the chance to contribute to security research, penetration testing, and the implementation of cutting-edge solutions to stay ahead of emerging threats. If you are passionate about application security and eager to take on complex challenges in a dynamic environment, this role is for you.
Must have:
  • Conduct security audits of internally developed web applications.
  • Perform internal penetration tests.
  • Carry out static and dynamic code analysis (SAST/DAST).
  • Implement, refine, and maintain tools for automatic testing of web applications.
  • Develop custom tools and solutions to improve the company’s overall security.
  • Contribute to internal research and participate in improving security processes.
  • Strong technical knowledge in computer and network security.
  • Solid understanding of modern operating systems and network protocols.
  • Hands-on experience with Windows and Unix/Linux systems at the system administrator level.
  • Knowledge of web application attack vectors and protection methods (OWASP Top 10, common vulnerabilities, exploitation techniques).
  • Experience with security scanners and an understanding of how they work (e.g., Nmap, Nessus, Burp Suite, nuclei).
  • Programming skills in Python, .NET (ability to read, analyze, and make corrections).
  • Willingness to learn additional programming languages used within the company (for developing custom tools).
  • Knowledge of vulnerability assessment and exploitation techniques.
  • English at Intermediate level or above (working proficiency).
Good to have:
  • Russian language skills
  • Programming skills in Go, Rust, Java in addition to Python/.NET.
  • Experience with SAST/DAST tools and code security analysis.
  • Practical experience with cloud security and containerized environments (AWS, GCP, Azure, Docker, Kubernetes).
  • Understanding of Active Directory security, including common attack techniques and defense mechanisms.
  • Higher technical education (Computer Science, Information Security, or related).
  • Security certifications such as OSCP, OSCE, OSWE, CEH, or similar.
  • Experience in penetration testing of real-world systems.
  • Participation in Bug Bounty programs.
  • Published security research, CVEs, or whitepapers.
  • Experience in CTF competitions.
Perks:
  • 21 days annual leave (additional days based on years of service: up to 25 days)
  • Additional paid time off (5 Personal Days, Birthday Leave, Marriage Leave, Compassionate Leave)
  • Sick Leave (10 days top-up to statutory allowance per year)
  • Maternity Leave (18 weeks top-up to statutory allowance per case)
  • Career development and education opportunities within the company
  • English Language courses fully covered by the company upon Manager’s approval
  • Premium Private Health Care
  • Mental well-being program (iFeel)
  • Onsite gym and spa
  • Free parking close to the Nicosia offices, based on availability
  • Free drinks-equipped kitchen in every floor building
  • Hellenic Bank benefits
  • Employee discounts (e.g. restaurants, bars, etc.)
  • Personal Gaming Account
  • Onsite canteen with subsidized prices for food and drinks
  • Company events, Social Clubs
  • Seniority Awards
  • Referral program - You can recommend the best talents to the company and receive a reward

Job Details

Job Overview

We are looking for an Application Security Engineer to join our security team and help us safeguard millions of players and the services they rely on. In this role, you will be responsible for identifying and mitigating security risks across web applications, infrastructure, and internal tools. You will work closely with developers, operations, and other security professionals to integrate security practices into the software development lifecycle and strengthen the company’s overall security posture. This position combines hands-on security testing, automation, and tool development, offering the opportunity to directly influence how security is built into our products. You will also have the chance to contribute to security research, penetration testing, and the implementation of cutting-edge solutions to stay ahead of emerging threats. If you are passionate about application security and eager to take on complex challenges in a dynamic environment, this role is for you.

Reports to

The Application Security Engineer will report to Application Security Team Lead

What will you do?

  • Conduct security audits of internally developed web applications.
  • Perform internal penetration tests.
  • Carry out static and dynamic code analysis (SAST/DAST).
  • Implement, refine, and maintain tools for automatic testing of web applications.
  • Develop custom tools and solutions to improve the company’s overall security.
  • Contribute to internal research and participate in improving security processes.

What are we looking for?

  • Strong technical knowledge in computer and network security.
  • Solid understanding of modern operating systems and network protocols (starting from Layer 2).
  • Hands-on experience with Windows and Unix/Linux systems at the system administrator level.
  • Knowledge of web application attack vectors and protection methods (OWASP Top 10, common vulnerabilities, exploitation techniques).
  • Experience with security scanners and an understanding of how they work (e.g., Nmap, Nessus, Burp Suite, nuclei).
  • Programming skills in Python, .NET (ability to read, analyze, and make corrections).
  • Willingness to learn additional programming languages used within the company (for developing custom tools).
  • Knowledge of vulnerability assessment and exploitation techniques.
  • English at Intermediate level or above (working proficiency).

What additional skills will help you stand out?

  • Russian language skills
  • Programming skills in Go, Rust, Java in addition to Python/.NET.
  • Experience with SAST/DAST tools and code security analysis.
  • Practical experience with cloud security and containerized environments (AWS, GCP, Azure, Docker, Kubernetes).
  • Understanding of Active Directory security, including common attack techniques and defense mechanisms.
  • Higher technical education (Computer Science, Information Security, or related).
  • Security certifications such as OSCP, OSCE, OSWE, CEH, or similar.
  • Experience in penetration testing of real-world systems.
  • Participation in Bug Bounty programs.
  • Published security research, CVEs, or whitepapers.
  • Experience in CTF competitions.

Work mode

  • Hybrid (2 days of work from the office).
  • This role isn't eligible for relocation & immigration support.

Benefits

Benefits and perks are tailored to the local market and culture. Our benefits in Nicosia include:

  • 21 days annual leave (additional days based on years of service: up to 25 days)
  • Additional paid time off (5 Personal Days, Birthday Leave, Marriage Leave, Compassionate Leave)
  • Sick Leave (10 days top-up to statutory allowance per year)
  • Maternity Leave (18 weeks top-up to statutory allowance per case)
  • Career development and education opportunities within the company
  • English Language courses fully covered by the company upon Manager’s approval
  • Premium Private Health Care
  • Mental well-being program (iFeel)
  • Onsite gym and spa
  • Free parking close to the Nicosia offices, based on availability
  • Free drinks-equipped kitchen in every floor building
  • Hellenic Bank benefits
  • Employee discounts (e.g. restaurants, bars, etc.)
  • Personal Gaming Account
  • Onsite canteen with subsidized prices for food and drinks
  • Company events, Social Clubs
  • Seniority Awards
  • Referral program - You can recommend the best talents to the company and receive a reward

##### Please submit your CV in English to ensure smooth processing and review.

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in Nicosia, Cyprus

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Wargaming is a place where ideas, no matter how crazy, can be realized. Not every gaming company can offer such creative freedom. Discover the latest news. Become a trusted and recognized member of a constantly evolving team, where your creativity can flourish and there is always room to grow.

Vilnius, Vilnius County, Lithuania (On-Site)

Nicosia, Nicosia, Cyprus (On-Site)

Warsaw, Masovian Voivodeship, Poland (On-Site)

Vilnius, Vilnius County, Lithuania (On-Site)

Prague, Prague, Czechia (On-Site)

Nicosia, Nicosia, Cyprus (On-Site)

Belgrade, Serbia (On-Site)

View All Jobs

Get notified when new jobs are added by Wargaming

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug