Lead Application Security Engineer

2 Months ago • 7-11 Years • Cyber Security • $160,000 PA - $500,000 PA

Job Summary

Job Description

As the Lead Application Security Engineer at Skillz, you will lead the technical vision and strategy for the Application Security organization. This involves shaping the technical direction for infrastructure, supporting business growth, and exploring new areas. Responsibilities include securing distributed systems, cloud resources, and managing Kubernetes environments. You'll integrate security best practices throughout the SDLC, conduct penetration testing, and advocate for secure coding practices. The role requires proficiency in programming languages (Golang, Java, Python), experience with security tools (Burp Suite, Semgrep, TruffleHog), and familiarity with compliance frameworks (SOX, PCI).
Must have:
  • Proficiency in Golang, Java, or Python
  • Secure distributed, containerized systems
  • Cloud security expertise (AWS or GCP)
  • SDLC security best practices
  • Penetration testing & vulnerability management
  • Application security advocacy
  • 7+ years software development experience
  • 4+ years application security experience
Perks:
  • Comprehensive benefits (medical, dental, vision)
  • 401K matching
  • Equity incentives
  • Daily breakfast, lunch, dinner, snacks
  • Friday Happy Hours
  • Full-size gym
  • Commuter benefits

Job Details

Join Skillz and Level Up Your Career!

Are you ready to take your career to the next level? Join Skillz, the first publicly-traded mobile esports platform that hosts billions of casual mobile gaming tournaments for millions of players worldwide. Skillz is revolutionizing the gaming industry, providing the ultimate platform for competitive mobile games. By fostering social competition within games, Skillz empowers developers to create multi-million dollar franchises while connecting players through fair, enjoyable, and meaningful competition.

At Skillz, we firmly believe that everyone is born with unique skills and deserves to experience an epic win. We understand the thrill of achievement and the satisfaction of overcoming challenges. That's why we passionately champion game developers and players alike, empowering them to unleash their full potential through the power of competition.

Life @ Skillz

  • Culture of Impact: Join a united team of builders, creators, innovators, and entrepreneurs driven by the desire to win. At Skillz, we create value and make a difference in the world.
  • Comprehensive Benefits: Enjoy peace of mind with our comprehensive benefits package, which includes 100% coverage for medical, dental, and vision expenses for both you and your entire family. Additionally, take advantage of our 401K matching, equity incentives, pre-tax benefit options, and more.
  • Wellness Support: Enhance your well-being with our array of wellness initiatives, including meditation and mental health resources, physical fitness coaching and classes, family planning assistance, health and parenting guidance, virtual therapy sessions, and more.
  • Perks: We believe in enhancing your work experience. Enjoy daily breakfast, lunch, dinner, snacks, Friday Happy Hours, a full-size gym with showers, commuter benefits, insurance, and many more. We also offer competitive paid time off (PTO) & company holidays to help you recharge and pursue your passions.

Why Skillz?

  • Pioneers of Skill-Based Competition: Skillz is not just any company in the gaming industry; we are the pioneers of skill-based competition, partnered with industry titans like UFC, NFL, T-Mobile, Buzztime, Bowlero, while also hosting renowned events like the Game Developer Conference (GDC). Join us in transforming the way people play games and building the home of competition for all.
  • Impact Beyond Gaming: Skillz harnesses the power of its platform to support nonprofit organizations such as Susan G. Komen, American Cancer Society, the NAACP, and more. By participating in Skillz tournaments, you can make a difference and contribute to causes you care about.
  • Recognized Success: Skillz has earned recognition as one of Fast Company's Most Innovative Companies, CNBC's Disruptor 50, San Francisco Business Times' Best Places to Work, Forbes' Next Billion-Dollar Startups, and the #1 fastest-growing company in America on the Inc. 5000 list, and many more.
  • Talent Magnet: Join a team of talented professionals who are passionate about what they do. Our team includes experts from Meta, Apple, Amazon, Google, Microsoft, Tesla, Twitter (X), Roblox, Zynga, Samsung, Lyft, EA, Riot, Nexon, Gameskraft, PlayStation, Unity, Scopely, Tinder, Intel, Deloitte, EY, Twitch, DraftKings, and more.

The Future of Gaming Awaits!

The gaming industry is larger than movies, music, and books combined, with over 3 billion active gamers playing monthly and over 25 million active developers worldwide. Mobile gaming, in particular, is the fastest-growing segment, projected to reach $300 billion by 2025. At Skillz, you have the opportunity to be at the forefront of this exciting industry and shape its future. We are seeking a Senior Manager, Talent Acquisition who will play a pivotal role in attracting A+ talent to help shape our next-generation platform. This is an opportunity for a dynamic, driven leader to make a significant impact by building a world-class team aligned with our culture and mission.

Job Description:

As the Lead Application Security Engineer - you'll spearhead the technical vision and strategy for the Application Security organization. Your role involves shaping the technical direction for our infrastructure, supporting the growth of our core business, and venturing into new domains.

What we are looking for:

  • Proficiency in Programming Languages: Strong expertise in one or more general-purpose languages such as Golang, Java, or Python.
  • Distributed Systems & Containerized Environments: Ability to analyze and secure distributed, multi-tiered, containerized systems, including microservices architectures and managing Kubernetes environments with multiple ingress points.
  • Cloud Security Expertise: In-depth knowledge of securing cloud resources and network devices on public cloud platforms such as AWS or GCP .
  • Security Best Practices Across SDLC : Experience in integrating security best practices throughout the development lifecycle, from design reviews and threat modeling to ensuring proper security in CI /CD pipelines and feature development.
  • Penetration Testing & Vulnerability Management: Skilled in securing public-facing endpoints through regular penetration testing (including white, black, and grey box testing), DAST , SAST , fuzz testing, and utilizing EDR (Endpoint Detection and Response) tools.
  • Application Security Advocacy: Strong understanding of industry-leading coding practices and application design principles, with the ability to promote and advocate these practices within the team.
  • Continuous Learning & Awareness: Keeps up-to-date with the latest security trends, vulnerabilities, and frameworks (e.g., OWASP Top 10, NIST SP 800-53, CWE Top 25).
  • Problem-Solving & Debugging: Exceptional problem-solving abilities and expertise in debugging and troubleshooting complex security and application issues.
  • Education: BA / BS in Computer Science or a related technical field, or equivalent practical experience.
  • Software Development: Over 7 years of experience in software development, with a strong focus on building scalable and secure applications.
  • Application Security Expertise: 4+ years of hands-on experience in application security roles, including securing web and mobile applications, network security, and infrastructure security.
  • Compliance Experience: Familiarity with regulatory compliance frameworks such as SOX and PCI , and experience ensuring application security meets these requirements.
  • Security Tooling Proficiency: Practical experience with leading application security tools, including Burp Suite, Semgrep, and TruffleHog for vulnerability scanning, code analysis, and secrets detection.
  • Total Comp: 160K - 500K depending on final level & location.

Join Skillz and Let's Redefine the Boundaries of Gaming!

Together, we'll create a world where skill, passion, and innovation thrive. Join our team and be part of the journey. We look forward to having you on board!

#LI-JM1

#ONSITE

Skillz embraces diversity and is proud to be an equal opportunity employer. As part of our commitment to diversifying our workforce, we do not discriminate on the basis of age, race, sex, gender, gender identity, color, religion, national origin, sexual orientation, marital status, citizenship, veteran status, or disability status, and we operate in compliance with the San Francisco Fair Chance Ordinance .

Similar Jobs

bytedance - Backend Software Engineer - Global E-Commerce Supply Chain Billing & Settlement

bytedance

Seattle, Washington, United States (On-Site)
7 Months ago
PlayStation Global - QA Lead (Contract)

PlayStation Global

Los Angeles, California, United States (On-Site)
4 Months ago
Tesla - Senior Trading Engineer, Autobidder

Tesla

North Holland, Netherlands (On-Site)
3 Months ago
Qualcomm - Senior Embedded Engineer – Bootloader

Qualcomm

Chennai, Tamil Nadu, India (On-Site)
2 Weeks ago
shyft labs - Senior Backend Developer

shyft labs

Noida, Uttar Pradesh, India (On-Site)
6 Months ago
PwC - Sr. Data Engineer

PwC

Makati, Metro Manila, Philippines (On-Site)
5 Months ago
PwC - Implementation Consultant, Associate - contractor

PwC

Bangkok, Bangkok, Thailand (On-Site)
8 Months ago
Google - Software Engineer III, Security/Privacy, Google Cloud

Google

Sunnyvale, California, United States (On-Site)
1 Month ago
Ion - Pen Tester, Italy

Ion

Italy (Hybrid)
7 Months ago
Varonis  - Cloud Security Research Team Leader

Varonis

Herzliya, Tel Aviv District, Israel (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Suki - Senior Technical Writer

Suki

Bengaluru, Karnataka, India (Hybrid)
1 Week ago
Rocket Science - Full Stack Engineer

Rocket Science

Wales, United Kingdom (Hybrid)
2 Months ago
Devoteam - IT Traineeship (Dutch speaking)

Devoteam

Amsterdam, North Holland, Netherlands (On-Site)
7 Months ago
Ansys - Senior R&D Engineer (Cloud Platform Developer)

Ansys

Canonsburg, Pennsylvania, United States (On-Site)
3 Weeks ago
Riot Games - Senior Manager, Software Engineering - League Studio, Build, Test, Ship

Riot Games

Los Angeles, California, United States (On-Site)
1 Month ago
The Walt Disney Company - Lead Developer Integration

The Walt Disney Company

Montévrain, Île-de-France, France (On-Site)
1 Month ago
Aisera Jobs - Sales Engineer

Aisera Jobs

New York, United States (Remote)
1 Month ago
Google - Customer Solutions Engineer

Google

Seattle, Washington, United States (On-Site)
1 Month ago
Suki - Senior SDET

Suki

Bengaluru, Karnataka, India (Hybrid)
7 Months ago
zeta - Manager - Software Development

zeta

Bengaluru, Karnataka, India (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Las Vegas, Nevada, United States

VVater - Financial Controller

VVater

Austin, Texas, United States (On-Site)
1 Month ago
Zoic studios - LA, Nuke Compositor

Zoic studios

Los Angeles, California, United States (Remote)
3 Weeks ago
Corsair - Director, D2C eCommerce

Corsair

Milpitas, California, United States (On-Site)
2 Months ago
Netflix - Ad Sales Learning Enablement Manager (UCAN)

Netflix

New York, New York, United States (On-Site)
1 Month ago
HCL Tech - Obsolete-programmanager,strategy&planing

HCL Tech

Texas, United States (On-Site)
3 Weeks ago
Scale AI - Head of Frontier Data Operations

Scale AI

San Francisco, California, United States (On-Site)
1 Month ago
Electronic Arts - Senior Software Engineer

Electronic Arts

Orlando, Florida, United States (On-Site)
1 Month ago
Philips - Sales, Territory Manager - Coronary Image Guided Therapy Devices

Philips

Iowa City, Iowa, United States (On-Site)
3 Weeks ago
Apple - Technical Recruiter (Hardware)

Apple

Cupertino, California, United States (On-Site)
6 Days ago
The Orchard - Creative Director

The Orchard

Los Angeles, California, United States (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Tesla - EMEA Security Systems Engineer

Tesla

Berlin, Berlin, Germany (On-Site)
3 Months ago
PwC - Associate - IFS - IT Infrastructure

PwC

Jakarta, Jakarta, Indonesia (On-Site)
6 Months ago
PwC - Technologie & Operation Intern

PwC

Pointe-Noire, Kouilou, Republic Of The Congo (On-Site)
7 Months ago
bytedance - Cloud Security Architect

bytedance

Singapore (On-Site)
2 Months ago
Google - Senior Intelligence Analyst

Google

Kuwait City, Al Asimah Governate, Kuwait (On-Site)
1 Month ago
Axinous - Senior Software Development Manager - C, Linux, Distributed Systems

Axinous

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
PlaySimple - Associate IT Engineer

PlaySimple

(On-Site)
3 Months ago
Google - Cyber Engagement Lead

Google

Tokyo, Japan (On-Site)
1 Month ago
PwC - IT Audit Analyst

PwC

Colombo, Western Province, Sri Lanka (On-Site)
8 Months ago
Zazz - Cybersecurity Analyst

Zazz

(Remote)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Las Vegas, Nevada, United States (On-Site)

Las Vegas, Nevada, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Las Vegas, Nevada, United States (On-Site)

Las Vegas, Nevada, United States (On-Site)

Bengaluru, Karnataka, India (Hybrid)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by skillz

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug