Security Engineer - Security Assurance

2 Months ago • 3 Years + • Cyber Security

Job Summary

Job Description

The Security Engineer - Security Assurance will join the Disney Experience (DX) Security Research & Testing (SRT) team. Responsibilities include evaluating system and application configurations to identify misconfigurations, conducting compliance checks against security standards (CIS Benchmarks, NIST, TWDC policies), reviewing firewall, server, and endpoint configurations, analyzing configurations for vulnerabilities, using automated tools and scripts for detection, performing manual and automated security testing, simulating attacks, documenting findings in detailed reports, communicating results to stakeholders, and working with IT teams to implement fixes. The role also involves developing and maintaining security configuration baselines and proactively recommending configuration adjustments to mitigate risks.
Must have:
  • 3+ years IT security testing experience
  • Penetration Testing, Adversarial Testing, Red Team Testing experience
  • System hardening testing for Windows, Linux, macOS
  • Experience with Cloud Solutions (Azure, GCP, AWS) and SaaS
  • Knowledge of network devices and secure configurations
Good to have:
  • OffSec or other advanced security certifications
  • Major cloud provider platform certification
  • Security accreditation (CISSP, GCIH, CISM, GSEC, CEH, etc.)

Job Details

Job Summary:

Who We Are


At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.

The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:

  • Secure the Magic by protecting information systems and platforms.

  • Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.

  • Strengthen the business through optimizing execution, application, and technology used to protect the Company.

  • Innovate by investing in core capabilities to enhance operational efficiency.

Team Description

The Security Research and Testing (SRT) team specializes in simulating real-world cyberattacks to uncover vulnerabilities and evaluate the effectiveness of Disney Experiences (DX) and Disney Corporate (Corp) technology systems' security measures. By mimicking tactics used by malicious actors, the SRT team provides critical insights into potential weaknesses. They work closely with both technology and business teams across DX and Corp to analyze findings, strengthen security policies, and recommend targeted improvements to address gaps in infrastructure, processes, and training, ensuring a robust and resilient security posture.  

What You Will Do

We are hiring!  We need a Security Engineer – Security Assurance to join our Disney Experience (DX) Security Research & Testing (SRT) Team!

Responsibilities:

  • Evaluate system and application configurations to identify security misconfigurations. 

  • Conduct compliance checks against security standards: CIS Benchmarks, NIST, and TWDC policies. 

  • Review firewall, server, and endpoint configurations to ensure alignment with security policies. 

  • Analyze configurations to identify potential vulnerabilities such as open ports, weak encryption, or default credentials. 

  • Use automated tools and scripts to detect misconfigurations and vulnerabilities. 

  • Perform manual and automated testing of security settings on systems, applications, and networks. 

  • Simulate attacks or misuses to test the resilience of configurations. 

  • Document findings in detailed reports, including identified issues, potential impacts, and remediation recommendations. 

  • Communicate results to stakeholders, including technical and non-technical audiences. 

  • Provide recommendations to address misconfigurations and improve security posture. 

  • Work with IT teams to implement fixes and validate corrective actions. 

  • Assist in developing and maintaining security configuration baselines and standards.  

  • Proactively recommend adjustments to configurations to mitigate risks. 

Must Have

  • Minimum of 3+ years of related IT security testing experience such as Penetration Testing, Adversarial Testing, Red Team Testing

  • Experience conducting comprehensive cyber security testing of technology solutions within large-scale, complex, and dynamic IT environments.

  • Proficient in system hardening testing for operating systems (Windows, Linux, macOS).

  • Experience with Cloud Solutions (Azure, GCP, AWS) and Software as a Service (SaaS) solution.

  • Knowledge of network devices (routers, switches, firewalls) and their secure configurations, and configuration management & auditing tools.

  • Understanding of security frameworks and standards (NIST, CIS, etc.)

Nice to Have

  • OffSec or other advanced security testing certifications

  • Major cloud provider platform certification (e.g. AWS Solution Architect, Google Cloud Engineer, Microsoft Solution Architect, etc.) 

  • Security accreditation (e.g., CISSP, GCIH, CISM, GSEC, CEH, etc.) 

Education

  • Bachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience

#DISNEYTECH

#LI-JP4

Similar Jobs

Code and Theory - Senior Engineer, Back-end

Code and Theory

Karnataka, India (Remote)
6 Months ago
ION - Cloud Engineer Kubernetes

ION

Collecchio, Emilia-Romagna, Italy (Hybrid)
6 Months ago
Acceldata - Resident Solutions Architect

Acceldata

United States (Remote)
6 Months ago
Nagarro - Associate Principal Engineer, .Net Fullstack

Nagarro

Gurugram, Haryana, India (On-Site)
6 Months ago
Nagarro - Senior Dotnet Fullstack

Nagarro

Mexico (Remote)
6 Months ago
ByteDance - Security Engineer (Penetration Tester) - Security Assurance

ByteDance

Singapore (On-Site)
5 Months ago
ByteDance - Site Reliability Engineer Lead, Security Engineering

ByteDance

Singapore (On-Site)
6 Months ago
Playtika - Product Security Team Leader

Playtika

Israel (On-Site)
4 Months ago
Netflix - Security Manager, Netflix House - King of Prussia

Netflix

Pennsylvania, United States (On-Site)
2 Months ago
Thatgamecompany - Senior Game Security Engineer - China

Thatgamecompany

Shanghai, Shanghai, China (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Wildlife Studios - Site Reliability Engineering Manager

Wildlife Studios

São Paulo, State Of São Paulo, Brazil (On-Site)
1 Month ago
Hitachi - Power platform Senior developer

Hitachi

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Egnyte - Senior Build Engineer - Python - Jenkins

Egnyte

India (Remote)
3 Months ago
Luxoft - Senior DevOps Engineer (Azure)

Luxoft

New Delhi, Delhi, India (Remote)
5 Months ago
N-iX - Strong Middle Data Engineer

N-iX

Armenia (Remote)
1 Month ago
Interactive Brokers - Senior Cloud Security Engineer

Interactive Brokers

Fort Lauderdale, Florida, United States (Hybrid)
6 Months ago
Nagarro - Principal Engineer, Machine Learning (Python)

Nagarro

Gurugram, Haryana, India (On-Site)
4 Months ago
Hashone Careers - Cloud Engineer

Hashone Careers

Gurugram, Haryana, India (Remote)
5 Months ago
PwC - Associate - MSOFT - GDC

PwC

Kolkata, West Bengal, India (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Orlando, Florida, United States

Mattel  Inc  - American Girl NY - Food Expeditor

Mattel Inc

New York, New York, United States (On-Site)
1 Month ago
The Walt Disney Company - Entertainment Technical Operations Manager

The Walt Disney Company

Celebration, Florida, United States (On-Site)
2 Months ago
The Walt Disney Company - Lead Software Engineer, Scala

The Walt Disney Company

Seattle, Washington, United States (On-Site)
3 Months ago
Netflix - Tech Lead - Boss Fight

Netflix

United States (Remote)
5 Months ago
Netflix - Product Design Manager, Ads Platform

Netflix

Los Gatos, California, United States (Hybrid)
3 Months ago
Meta - Software Engineer, Infrastructure

Meta

San Francisco, California, United States (Remote)
5 Months ago
Meta - Software Engineer, Infrastructure

Meta

Sunnyvale, California, United States (Remote)
5 Months ago
Anavation - Procurement Analyst

Anavation

Linthicum Heights, Maryland, United States (On-Site)
4 Months ago
Genies - Machine Learning Engineer, Character Animation & Motion AI

Genies

Los Angeles, California, United States (On-Site)
1 Month ago
Aristocrat Gaming - Field Engineering Supervisor

Aristocrat Gaming

Tulsa, Oklahoma, United States (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Assurance Technology Risk & Quality Manager

PwC

Dublin, County Dublin, Ireland (On-Site)
6 Months ago
Nagarro - Information Security Consultant

Nagarro

Germany (Remote)
1 Month ago
Tesla - Security Systems Engineer

Tesla

Brandenburg, Germany (On-Site)
2 Months ago
Penumbra - Sr Manager Cybersecurity

Penumbra

Alameda, California, United States (On-Site)
6 Months ago
PwC - Financial Services GRC Senior Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
6 Months ago
ION - Senior Security Architect

ION

London, England, United Kingdom (On-Site)
6 Months ago
Infoblox - Senior Software Engineer

Infoblox

Burnaby, British Columbia, Canada (Hybrid)
5 Months ago
Onward Search - Senior Software Engineer

Onward Search

Irvine, California, United States (Remote)
2 Months ago
ByteDance - Site Reliability Engineer - Security Engineering - San Jose

ByteDance

San Jose, California, United States (On-Site)
5 Months ago

Get notifed when new similar jobs are uploaded

About The Company

From classic animated features and exhilarating theme park attractions to cutting edge sports coverage, and the hottest shows on television, The Walt Disney Company has been making magic since 1923, creating unforgettable stories that connect with audiences around the world. And we’re just getting started!

The key to our success…. The Cast, Crew, Imagineers and Employees who honor Disney’s rich legacy by stretching the bounds of imagination to create the never-before-seen, bringing unparalleled entertainment experiences to people of all ages. Begin a career that delivers unparalleled creative content and experiences to audiences around the world and just imagine the stories you could be part of…

What is #LifeAtDisney like? It’s a series of magical moments with cast members and employees developing and telling our stories in the most innovative ways. Whether it’s a day spent as a Disney VoluntEAR, or celebrating the release of a new interactive experience, retail product or movie, our days are filled with the knowledge that we are creating entertainment experiences the whole family can enjoy. Follow @DisneyCareers on Facebook, Twitter and Instagram for a peek behind-the-curtain, and discover how you could connect to a world of stories with Disney!

Lake Buena Vista, Florida, United States (On-Site)

London, England, United Kingdom (Hybrid)

Glendale, California, United States (On-Site)

Kapolei, Hawaii, United States (On-Site)

Orlando, Florida, United States (On-Site)

Florida, United States (On-Site)

Florida, United States (On-Site)

Florida, United States (On-Site)

View All Jobs

Get notified when new jobs are added by The Walt Disney Company

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug