Sr Application Security Engineer

4 Months ago • 5-7 Years • Cyber Security • $172,100 PA - $258,100 PA

Job Summary

Job Description

Secure PlayStation's infrastructure by collaborating with engineers, performing penetration testing, and managing vulnerabilities. 5+ years of infosec experience, strong knowledge of application security, and expertise in various technologies are essential.
Must have:
  • Application Security
  • Penetration Testing
  • Vulnerability Management
  • Secure Development Lifecycle
Good to have:
  • AWS Technologies
  • SAST, SCA, DAST
  • Bug Bounty Program
  • Cloud Experience
Perks:
  • Top-Tier Benefits
  • Employee Discounts

Job Details

Why PlayStation?

PlayStation isn’t just the Best Place to Play — it’s also the Best Place to Work. Today, we’re recognized as a global leader in entertainment producing The PlayStation family of products and services including PlayStation®5, PlayStation®4, PlayStation®VR, PlayStation®Plus, acclaimed PlayStation software titles from PlayStation Studios, and more.

PlayStation also strives to create an inclusive environment that empowers employees and embraces diversity. We welcome and encourage everyone who has a passion and curiosity for innovation, technology, and play to explore our open positions and join our growing global team.

The PlayStation brand falls under Sony Interactive Entertainment, a wholly-owned subsidiary of Sony Corporation.

Do you want to help bring PlayStation technology to a worldwide audience? Are you passionate about securing infrastructure that constantly pushes the boundary of the gaming industry? Are you ready to work with innovative technology, forward-thinking engineers, and a passionate security team? If so, join us!

 

You will get the opportunity to be part of our proactive defense team that is focusing on vulnerability management, use-case based penetration testing, working with our bug bounty program and handling security incidents on our services and clients.

 

Key Responsibilities

  • Collaborate with engineers, consultants and leadership to address security risks and provide mitigation recommendations within the Secure Development Lifecycle (SDLC).

  • Perform validation of security controls to ensure alignment with compliance and industry best practices.

  • Perform manual security testing of products and services to proactively discover vulnerabilities and track them to resolution with developers.

  • Working with vulnerabilities identified by our SAST, SCA, DAST tools, from triage to remediation of valid findings with our development organizations.

  • Investigate and triage vulnerabilities reported from Responsible Disclosure program.

  • Effectively communicate and work with development teams, guiding them in the remediation of security issues detected in their applications, services and other areas

  • Determine and recommend remediation guidelines for vulnerabilities to developers and other technical audiences
     

Qualifications

  •  5+ years previous experience in information security

  • 3+ years of penetration testing (or related) experience

  • 2+ years’ experience working within software development

  • Bachelor’s degree in Computer Science/Information Security/Cyber Security or equivalent

  • Excellent written and oral communication skills, as well as social skills including the ability to articulate to both technical and non-technical audiences

  • Must have the ability to work both independently as well as collaborate with engineering teams and multi-task effectively

  • Strong understanding of application security weaknesses for various technologies including web applications, databases, and multi-tier applications

  • Ability to review source code and explain mitigation controls within source code for languages including, Java, Go, Python, C/C++, Scala etc

  • Experience with AWS technologies

  • Experience with application security scanning tools such as SAST, SCA and DAST

  • Experience with testing tools such as Burp Suite, OWASP ZAP, Appscan, Responder, Metasploit, PowerSploit, Wireshark, and other solutions
      

Desired Experience

  • Excellent analytical, evaluative, and problem-solving abilities

  • Self-driven and capable of assessing areas of responsibility for continuous improvement

  • Knowledge of automated attack tools and developing mitigation techniques

  • Hacker Mindset and always strives to think like an attacker

  • Cloud experience with Azure or Google Cloud Platform

  • Technical certifications within information security are a plus (OSCP or other SANS training such as GPEN, GWAPT, GXPN or equivalents)

  • Experience with C2 frameworks such as Cobalt Strike, Metasploit or Empire

  • Experience with different development methodologies such as Agile, DevOps etc

#LI-GM1

 Please refer to our Candidate Privacy Notice for more information about how we process your personal information, and your data protection rights.

 

At SIE, we consider several factors when setting each role’s base pay range, including the competitive benchmarking data for the market and geographic location.

Please note that the base pay range may vary in line with our hybrid working policy and individual base pay will be determined based on job-related factors which may include knowledge, skills, experience, and location. 

In addition, this role
is eligible for SIE’s top-tier benefits package that includes medical, dental, vision, matching 401(k), paid time off, wellness program and coveted employee discounts for Sony products. This role also may be eligible for a bonus package. Click here to learn more.

 

The estimated base pay range for this role is listed below.

$172,100 - $258,100 USD

Equal Opportunity Statement:

Sony is an Equal Opportunity Employer. All persons will receive consideration for employment without regard to gender (including gender identity, gender expression and gender reassignment), race (including colour, nationality, ethnic or national origin), religion or belief, marital or civil partnership status, disability, age, sexual orientation, pregnancy, maternity or parental status, trade union membership or membership in any other legally protected category.

We strive to create an inclusive environment, empower employees and embrace diversity. We encourage everyone to respond. 

PlayStation is a Fair Chance employer and qualified applicants with arrest and conviction records will be considered for employment.

Similar Jobs

PlayStation Global - Software Engineer Intern - Undergraduate

PlayStation Global

(Hybrid)
3 Months ago
Nielsen Holdings - Data Engineering - AM-TECH-DA-65 SW ENG

Nielsen Holdings

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
The Workshop - Database Engineer (NoSQL) - Blockchain

The Workshop

Madrid, Community Of Madrid, Spain (Hybrid)
3 Months ago
Playtika - Java Technical Lead

Playtika

Romania (Hybrid)
3 Months ago
Netflix - Manager, Enterprise Security Technology - Technical Solutions

Netflix

Los Gatos, California, United States (On-Site)
3 Months ago
PwC - Cybersecurity-ETS-SAP GRC security-Senior Associate-Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Meta - Product Security Engineer

Meta

Bellevue, Washington, United States (On-Site)
3 Months ago
Saviynt - Sr. Engineer, Solutions Engineering-Germany

Saviynt

Munich, Bavaria, Germany (Remote)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Luxoft - Murex BAU Support Consultant

Luxoft

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Genies - Lead Backend Engineer - Developer Platform

Genies

San Mateo, California, United States (On-Site)
8 Months ago
PwC - ETIC, OutSystems Architect-Senior Associate

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
4 Months ago
Next Level Business Services - Neo4J Architect

Next Level Business Services

Los Angeles, California, United States (On-Site)
3 Months ago
PwC - IN_Associate-_JAVA Backend_Advisory Corporate_Advisory_  Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
ION - Senior Java Developer - Italy

ION

Collecchio, Emilia-Romagna, Italy (On-Site)
4 Months ago
Dream Games - Senior Software Engineer

Dream Games

İstanbul, Türkiye (On-Site)
8 Months ago

Get notifed when new similar jobs are uploaded

Jobs in United States

The Walt Disney Company - Sr Business Analyst, Technical Negotiations

The Walt Disney Company

Bristol, Connecticut, United States (On-Site)
3 Months ago
Aristocrat Gaming - Technical Support Specialist II

Aristocrat Gaming

Las Vegas, Nevada, United States (On-Site)
5 Months ago
IGT - Hardware Product Trainer II

IGT

West Greenwich, Rhode Island, United States (On-Site)
2 Months ago
Keywords Studios (Player Support) - Technical Research Associate

Keywords Studios (Player Support)

San Francisco, California, United States (Remote)
2 Months ago
Trek - Part-time Service Tech/Advisor

Trek

Omaha, Nebraska, United States (On-Site)
3 Months ago
Activision - Senior Weapon Concept Artist - Treyarch (Los Angeles)

Activision

Los Angeles, California, United States (On-Site)
3 Months ago
The Walt Disney Company - Sr Software Engineer (Front End)

The Walt Disney Company

San Francisco, California, United States (Hybrid)
3 Months ago
Nintendo - Senior Manager, Influencer Marketing

Nintendo

Redmond, Washington, United States (Hybrid)
8 Months ago
The Walt Disney Company - Disney Store: Sales Associate (Seasonal)

The Walt Disney Company

New York, New York, United States (On-Site)
3 Months ago
Allied Machine - Field Sales Engineer - Alabama/Florida

Allied Machine

Alabama, United States (Remote)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Reversing Labs - Federal Security Solutions Architect (Sales Engineer)

Reversing Labs

Washington, District Of Columbia, United States (Remote)
3 Months ago
Alpha Sense - VP, IT & Security

Alpha Sense

New York, New York, United States (On-Site)
3 Months ago
Intel Corporation - Government Cloud Engineer

Intel Corporation

Fairfax, Virginia, United States (Hybrid)
3 Months ago
Skyhigh Security - Senior Software Development Engineer

Skyhigh Security

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Infoblox - Senior Software Engineer - C++ AND Azure

Infoblox

Bengaluru, Karnataka, India (On-Site)
3 Months ago
PwC - 1-10yrs Application for Cyber- Kolkata DN 57 - RDC

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
Morning Star - Security Analyst

Morning Star

Mumbai, Maharashtra, India (Hybrid)
4 Months ago
Axinous - Customer Success Engineer

Axinous

Tokyo, Japan (Remote)
3 Months ago
PwC - IN- Senior Associate–Agile PM -Advisory Corporate– Advisory –Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
PwC - IN-Senior Associate – D365 POS Technical-Ms Dynamics–Advisory_Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Want to take your career to the next level? Search open job vacancies at any of the Sony Interactive sites by visiting playstation.com/careers/


Sony Interactive Entertainment pushes the boundaries of entertainment and innovation, starting from the launch of the original PlayStation in Japan in 1994. Today, we continue to deliver innovative and thrilling experiences to a global audience through our PlayStation line of products and services that include generation-defining hardware, pioneering network services, and award-winning games. Headquartered in San Mateo, California, with global functions in California, London, and Tokyo, and game development studios around the world as part of PlayStation Studios, we believe that the power of play is borderless. Sony Interactive Entertainment is a wholly owned subsidiary of Sony Group Corporation.  


For more information about our company, please visit SonyInteractive.com. For more information about PlayStation products, please visit PlayStation.com.

United States (Remote)

London, England, United Kingdom (On-Site)

Bellevue, Washington, United States (On-Site)

Aliso Viejo, California, United States (Remote)

London, England, United Kingdom (Hybrid)

London, England, United Kingdom (Hybrid)

United States (Remote)

London, England, United Kingdom (Hybrid)

View All Jobs

Get notified when new jobs are added by PlayStation Global

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug