Offensive Security Engineer III

4 Months ago • 3 Years + • Cyber Security

Job Summary

Job Description

Job Details

Fanatics is building a leading global digital sports platform. The company ignites the passions of global sports fans and maximizes the presence and reach for hundreds of sports partners globally by offering innovative products and services across Fanatics Commerce, Fanatics Collectibles, and Fanatics Betting & Gaming, allowing sports fans to Buy, Collect and Bet. Through the Fanatics platform, sports fans can buy licensed fan gear, jerseys, lifestyle and streetwear products, headwear, and hardgoods; collect physical and digital trading cards, sports memorabilia, and other digital assets; and bet as the company builds its Sportsbook and iGaming platform. Fanatics has an established database of over 100 million global sports fans, a global partner network with over 900 sports properties, including major national and international professional sports leagues, teams, players associations, athletes, celebrities, colleges, and college conferences, and over 2,000 retail locations, including its Lids retail business stores. 
 
As a market leader with more than 18,000 employees, and hundreds of partners, suppliers, and vendors worldwide, we take responsibility for driving toward more ethical and sustainable practices. We are committed to building an inclusive Fanatics community, reflecting and representing society at every level of the business, including our employees, vendors, partners and fans. Fanatics is also dedicated to making a positive impact in the communities where we all live, work, and play through strategic philanthropic initiatives.
 

Fanatics is searching for an experienced application security specialist to help protect Fanatics-developed applications which are used externally and internally. A successful candidate will display strong communication and technical skills and be comfortable and effective working independently and as part of a larger, highly distributed team.
We're looking specifically for folks who place an emphasis on usable security and scaling successfully through automation. Fanatics is a fast-growing company, and our security program needs to be able to keep pace with that growth while not disrupting innovation. 
Responsible for continually improving product security by partnering with developers in all phases of software development life cycle.  Work with teams to ensure security standards are maintained on the design and implementation of applications and systems in cloud and on-premises environments.   

EXPERIENCE REQUIRED:
·         A minimum of 3 years of experience.
 
RESPONSIBILITIES: 
 
·         Establish security best processes and practices for our mobile, on-premises and cloud-based platforms.
·         Provide expert knowledge and guidance to the product teams about security vulnerabilities and remediation controls.
·         Support and consult with product and development teams in the area of application security, including threat modeling and Application Security reviews.
·         Implement, continuously develop, and maintain secure Software Security Development Lifecycle processes and software maturity model.
·         Perform threat modeling, secure design, and source code review.
·         Conduct security assessments, security testing and validation of vulnerability scan results.
·         Assist teams in reproducing, triaging, and addressing application security vulnerabilities.
·         Incorporate security tools/tasks to automate product development and deployment.
·         Develop, implement, and automate defensive controls, creating and tuning tools and rules to detect and address malicious activity. Responsible for integration of security controls into SDLC.
·         Establish supply chain security process and ensure 3rd party software meet the standards.
Facilitate injection, integration, and compliance for Static Application Security Testing (SAST), Container Security Scanning & Open-Source Security Analysis during development phase.
Facilitate injection, integration, and compliance for Dynamic Application Security Testing (DAST)
Contribute to triaging, addressing security issues and tracking remediation.
Own and manage Secure SDLC tooling.
Develop and customize security tools used by security teams and developers.
Work closely with development teams to build security directly into their SDLCs.
Provide remediation guidance to programmers and management.
Support bug bounty program
Support the preparation of security releases
·         Mentor and train development teams on secure coding standards and techniques. Develop Secure Coding Program.
·         Constantly innovate at the pace of the adversary using latest techniques. 
 
 
EDUCATIONAL REQUIREMENTS: 
·         Bachelor’s degree in computer science, Information Systems, or equivalent combination of education and experience  
·         Certifications in the field of Information Security (at least one of the following: CISSP, CEH, GIAC CPEN, OSCP, OSWE, CWAPT, GWAPT, GWEB)
 

Things We Care About

·         Your career growth, your ideas, your work-life balance, and your well-being.
·         Diversity and Inclusion
·         Our Company Culture and Values
·         Providing outstanding Company Perks and Benefits

 
Ensure your Fanatics job offer is legitimate and don’t fall victim to fraud.  Fanatics never seeks payment from job applicants.  Fanatics recruiters will only reach out to applicants from an @fanatics.com or @fanatics.co.uk email address.  For added security, where possible, apply through our company website at www.fanaticsinc.com/careers

Fanatics is committed to responsible planning and purchasing (RPP) practices, working with its business partners across its global and multi-layered supply chain, to ensure that planning, sourcing, and purchasing decisions, along with other supporting processes, do not impede or conflict with the fulfillment of Fanatics’ fair labor practices.

NOTICE TO CALIFORNIA RESIDENTS/APPLICANTS: In connection with your application, we collect information that identifies, reasonably relates to or describes you (“Personal Information”). The categories of Personal Information that we collect include your name, government issued identification number(s), email address, mailing address, other contact information, emergency contact information, employment history, educational history, criminal record, and demographic information.  We collect and use those categories of Personal Information about you for human resources and other business management purposes, including identifying and evaluating you as a candidate for potential or future employment or future contract positions, recordkeeping in relation to recruiting and hiring, conducting criminal background checks as permitted by law, conducting analytics, and ensuring compliance with applicable legal requirements and Company policies. For additional information on how we collect and use personal information in connection with your job application, review our Candidate Privacy Policy-CA
Things We Care About

·         Your career growth, your ideas, your work-life balance, and your well-being.
·         Diversity and Inclusion
·         Our Company Culture and Values
·         Providing outstanding Company Perks and Benefits

 
Ensure your Fanatics job offer is legitimate and don’t fall victim to fraud.  Fanatics never seeks payment from job applicants.  Fanatics recruiters will only reach out to applicants from an @fanatics.com or @fanatics.co.uk email address.  For added security, where possible, apply through our company website at www.fanaticsinc.com/careers

Fanatics is committed to responsible planning and purchasing (RPP) practices, working with its business partners across its global and multi-layered supply chain, to ensure that planning, sourcing, and purchasing decisions, along with other supporting processes, do not impede or conflict with the fulfillment of Fanatics’ fair labor practices.

NOTICE TO CALIFORNIA RESIDENTS/APPLICANTS: In connection with your application, we collect information that identifies, reasonably relates to or describes you (“Personal Information”). The categories of Personal Information that we collect include your name, government issued identification number(s), email address, mailing address, other contact information, emergency contact information, employment history, educational history, criminal record, and demographic information.  We collect and use those categories of Personal Information about you for human resources and other business management purposes, including identifying and evaluating you as a candidate for potential or future employment or future contract positions, recordkeeping in relation to recruiting and hiring, conducting criminal background checks as permitted by law, conducting analytics, and ensuring compliance with applicable legal requirements and Company policies. For additional information on how we collect and use personal information in connection with your job application, review our Candidate Privacy Policy-CA
undefined

Similar Jobs

Duolingo - Senior Security Engineer

Duolingo

Pittsburgh, Pennsylvania, United States (On-Site)
4 Months ago
Fanatics - Application Security Engineer III

Fanatics

Hyderabad, Telangana, India (Hybrid)
4 Months ago
Sinch - Product Security Engineer

Sinch

India (Remote)
1 Week ago
PlayStation Global - Senior Application Security Engineer

PlayStation Global

United States (Remote)
1 Week ago
Granicus - Sr. DevOps Engineer

Granicus

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
bosh group india - Data Protection and Information Security Officer

bosh group india

Karnataka, India (On-Site)
2 Months ago
PwC - IN_Associate_Microsoft365_OneCloud _Advisory _Gurgaon

PwC

Gurugram, Haryana, India (On-Site)
4 Months ago
Normalyze - Performance Test - Senior Engineer - Solutions - Data Security - India

Normalyze

Bengaluru, Karnataka, India (Remote)
2 Months ago
PwC - Practice Lead Identity and Access Management (IAM)

PwC

Zürich, Zurich, Switzerland (On-Site)
4 Months ago
Tesla - Senior Security Systems Project Manager

Tesla

Brandenburg, Germany (On-Site)
1 Week ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Luxoft - Senior Java Developer

Luxoft

Pune, Maharashtra, India (On-Site)
3 Months ago
Granicus - Sr. DevOps Engineer

Granicus

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Granicus - Sr. DevOps Engineer

Granicus

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
PlayStation Global - Senior Application Security Engineer

PlayStation Global

United States (Remote)
1 Week ago
Fanatics - Application Security Engineer III

Fanatics

Hyderabad, Telangana, India (Hybrid)
4 Months ago
Sinch - Product Security Engineer

Sinch

India (Remote)
1 Week ago
Duolingo - Senior Security Engineer

Duolingo

Pittsburgh, Pennsylvania, United States (On-Site)
4 Months ago
Duolingo - Senior Security Engineer

Duolingo

New York, New York, United States (On-Site)
4 Months ago
ByteDance - Security Engineer (Penetration Tester) - 2025 Start

ByteDance

Singapore (On-Site)
3 Months ago
Onsurity - Software Development Engineer II - Test

Onsurity

Bengaluru, Karnataka, India (On-Site)
5 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Hyderabad, Telangana, India

ION - Senior Credit Research Analyst - 271

ION

Mumbai, Maharashtra, India (On-Site)
4 Months ago
PwC - IN-Senior Associate _SAP PM_Enterprise Apps SAP_Advisory_Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago
Interface AI - Engineering Manager

Interface AI

Hyderabad, Telangana, India (Remote)
2 Months ago
PwC - IN_Associate _SAP SD/OTC_Enterprise App SAP_Advisory_Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
3 Months ago
Arcadis - Principal BIM Modeler

Arcadis

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Blissclub - Creative Director

Blissclub

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Assystems - Senior Software Engineer

Assystems

Gurugram, Haryana, India (On-Site)
3 Months ago
Craftech 360 - Unity Developer

Craftech 360

Bengaluru, Karnataka, India (On-Site)
7 Months ago
Zeta - Implementation Analyst II

Zeta

Hyderabad, Telangana, India (On-Site)
4 Months ago
Limelight Lab Grown Diamonds - Head of Production

Limelight Lab Grown Diamonds

Mumbai, Maharashtra, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Trend Micro - (Sr.) Backend Engineer

Trend Micro

Taipei City, Taiwan (On-Site)
4 Months ago
Microsoft - Software Engineer 2 - Cloud and Enterprise Security

Microsoft

Hyderabad, Telangana, India (On-Site)
4 Weeks ago
PwC - AC Manila - Cyber Security Managed Security Assessments Senior Associate

PwC

Metro Manila, Philippines (On-Site)
3 Months ago
Fluence - DevSecOps Engineer

Fluence

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Seedify - Cyber Security Specialist

Seedify

(On-Site)
8 Months ago
Tesla - Security Systems Field Engineer

Tesla

Brandenburg, Germany (On-Site)
1 Week ago
Rackspace Technology - Security Risk and Compliance Management Specialist III

Rackspace Technology

Mexico City, Mexico City, Mexico (Remote)
1 Week ago
ByteDance - Senior Security Tech Lead Manager - Security Engineering

ByteDance

San Jose, California, United States (On-Site)
4 Days ago
PwC - IN_Associate_SmartCitiesGIS _Cities_Advisory_Ahmedabad

PwC

Ahmedabad, Gujarat, India (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Fanatics is building a leading global digital sports platform. The company ignites the passions of global sports fans and maximizes the presence and reach for hundreds of sports partners globally by offering innovative products and services across Fanatics Commerce, Fanatics Collectibles, and Fanatics Betting & Gaming, allowing sports fans to Buy, Collect and Bet. Through the Fanatics platform, sports fans can buy licensed fan gear, jerseys, lifestyle and streetwear products, headwear, and hardgoods; collect physical and digital trading cards, sports memorabilia, and other digital assets; and bet as the company builds its Sportsbook and iGaming platform. Fanatics has an established database of over 100 million global sports fans, a global partner network with over 900 sports properties, including major national and international professional sports leagues, teams, players associations, athletes, celebrities, colleges, and college conferences, and over 2,000 retail locations, including its Lids retail business stores. 

Hyderabad, Telangana, India (Hybrid)

Telangana, India (Hybrid)

Hyderabad, Telangana, India (Hybrid)

Hyderabad, Telangana, India (Hybrid)

Hyderabad, Telangana, India (Hybrid)

San Mateo, California, United States (On-Site)

Wembley, England, United Kingdom (On-Site)

St Andrews, Scotland, United Kingdom (On-Site)

Birmingham, England, United Kingdom (On-Site)

Louisville, Kentucky, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Fanatics

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug