Senior Application Security Engineer

2 Months ago • 4-8 Years • Cyber Security • Undisclosed

About the job

Job Description

Fortis Games is seeking a Senior Application Security Engineer to lead all aspects of the company's application cybersecurity. Responsibilities include owning the Application Security technology stack, providing architectural guidance, implementing security solutions, collaborating with engineers and leadership on risk mitigation, performing audits and assessments, and defining security test strategies. This role requires deep expertise in architecting and implementing security solutions within the Secure Software Development Lifecycle (SSDLC) and CI/CD pipelines, strong knowledge of multiple languages (C#, Typescript, Javascript), and experience analyzing code for vulnerabilities.
Must have:
  • Prior experience on an Application Security team
  • Expert knowledge in architecting and implementing security solutions within SSDLC and CI/CD pipelines
  • Familiarity with build & deploy processes, IaC, and CI/CD pipelines
  • Experience with multiple languages (C#, Typescript, Javascript)
  • Ability to understand business requirements and apply security without hindering functionality
  • Experience analyzing code for vulnerabilities
  • Experience with SCA, SAST, DAST tools
  • Understanding of international security and privacy requirements (GDPR)
  • Knowledge of automated attack tools and developing mitigation techniques
  • Understanding of enterprise class application architectures and securing them
Good to have:
  • Experience at a mobile gaming organization
  • Experience implementing, tuning, and helping software teams understand the output from SCA, SAST, DAST tools
Perks:
  • Work with a seasoned team of accomplished talent
  • Contribute to a company that is changing how game studios operate
  • Be part of a company that values diversity, inclusivity, and growth

Who we are

At Fortis Games we aspire to make great games that bring people together while redefining how game companies work. We believe in building a sense of belonging through our games, their communities, and how we operate and treat each other. Through our game communities, we will create powerful connections and lasting memories. We will foster a culture of diversity, equity and belonging where together our diverse skills, experiences and backgrounds impact the games we make.

We are an early but mighty organization with a leadership team of game industry veterans. There are many opportunities for you to have a big impact on the products we'll be making as well as the overall direction of the company. If you're passionate about tackling difficult problems with direct and thoughtful communication and team first mentality, we may be the right place for you.

About the role

Fortis Games is hiring a Senior Application Security Engineer to manage all aspects of the company’s application cybersecurity needs.

What you'll achieve

  • Own the Application Security technology stack and associated processes and procedures.
  • Help maintain our build & deployment processes.
  • Provide architectural guidance and leadership on best practices regarding security in software development, shared services, user interface design frameworks, high performance solutions, server-side development, integrations, tools and technologies.
  • Implement, tune, and help game teams understand the output from static and dynamic analysis tools.
  • Collaborate with engineers, consultants and leadership to address security risks and provide mitigation recommendations within the Secure Software Development Lifecycle (SSDLC).
  • Perform validation of security controls to ensure consistency with compliance and industry standard methodologies
  • Track project progress through project management software such as ClicklUp JIRA, Confluence and Google suite.
  • Build relationships with cross functional teams to execute projects on time and with high quality.
  • Perform audits and assessments to identify risk and create a remediation plan.
  • Define security test strategies for complex systems, identifying security vulnerabilities
  • Build reports and communicate security posture to all levels of the organization.
  • Detect and remedy related security issues such as OWASP top 10
  • Manage multiple projects concurrently and maintain project & technology-level documentation.

What you’ll need to be successful 

  • Prior experience working on an Application Security team (experience at a mobile gaming organization a plus)
  • Expert knowledge with architecting and implementing security solutions into Secure Software Development Lifecycle (SSDLC) and CI/CD pipelines
  • Familiarity with building and architecting build & deploy processes, infrastructure-as-code (IaC), and CI/CD pipelines
  • Experience with multiple languages such as C#, Typescript, Javascript, etc.
  • Ability to understand business requirements and apply security without adversely affecting the desired functionality.
  • Experience analyzing critical parts of the codebase with the ability to define and review high risk code for vulnerabilities 
  • Experience implementing, tuning and helping software teams understand the output from SCA, SAST, DAST tools
  • Understanding of international security and privacy requirements such as GDPR
  • Knowledge of automated attack tools and developing mitigation techniques
  • Firm understanding of enterprise class application architectures that are highly scalable and reliable and the expertise to secure them

***Please submit resumes in English***

Why join us

There are many reasons to join us, but here are a few:

  • We strongly believe we are changing how games studios operate and at the core of what we do is making great games that create a connected community
  • We're not just about making Games Where You Belong. We're also about building communities where our people belong. That's why Fortis is a thriving environment that celebrates diversity, embraces inclusivity, and fosters growth.
  • Build and grow with a seasoned team of accomplished talent who have left an impactful mark in their disciplines, both in and out of gaming

Fortis is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, gender expression, national origin, protected veteran status, or any other basis protected by applicable law, and will not be discriminated against on the basis of disability.

View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Fortis is a global game studio with a mission to create worlds that matter — that challenge minds, build connections, and inspire communities. Founded by industry veterans, Fortis believes games have the ability to create a positive impact on society and culture, and now more than ever, those are the experiences players are looking for. With team members already in the US, UK, Canada, Romania, Portugal and Brazil, Fortis is growing and seeks the best of the best from around the world in order, regardless of location, to create a best-in-class games studio. Join us!

View All Jobs

Get notified when new jobs are added by Fortis Games

Similar Jobs

Thatgamecompany - Producer, Content

Thatgamecompany, United States (Remote)

Trailmix Games - Producer

Trailmix Games, United Kingdom (Hybrid)

Xsolla - Full Stack Developer

Xsolla, Malaysia (On-Site)

Limbic Entertainment - DevOps Lead (m/f/d)

Limbic Entertainment, Poland (Hybrid)

Skyhigh Security - Senior Product Manager

Skyhigh Security, India (Hybrid)

ION - Network Security Engineer

ION, Italy (Hybrid)

Luxoft - Cyber Security Business Analyst

Luxoft, India (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Paypal - Senior Technical Trainer / Evangelist

Paypal, United States (Hybrid)

Fluence - Controls Software Engineer II

Fluence, United States (Hybrid)

ION - Project Management Office

ION, Italy (On-Site)

ION - Technical Consultant - Endur

ION, United States (On-Site)

Evolution - Technical Support Engineer

Evolution, Netherlands (On-Site)

Interactive Brokers - Head of Compliance Testing

Interactive Brokers, United States (On-Site)

N-iX - Senior Technical Writer (#2284)

N-iX, Türkiye (Remote)

Playrix - Full Stack QA Engineer

Playrix, Ukraine (Remote)

Get notifed when new similar jobs are uploaded

Jobs in Romania

Ness Digital - Architect - Snowflake / Databricks

Ness Digital, Romania (Remote)

Amber - Business Development Specialist

Amber, Romania (Hybrid)

PTW - French Player Support

PTW, Romania (Remote)

N-iX - Delivery Director (#2605)

N-iX, Romania (Hybrid)

Microsoft - Software Engineer

Microsoft, Romania (On-Site)

PTW - Italian Player Support

PTW, Romania (Remote)

Every matrix - Sales Manager with Turkish

Every matrix, Romania (Hybrid)

Ness Digital - DevOps Engineer

Ness Digital, Romania (Hybrid)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

VGW - Offensive Security Engineer

VGW, Australia (On-Site)

Trend Micro - (Sr.) Backend Engineer

Trend Micro, Taiwan (On-Site)

Applike - IT Security Manager (f/m/d)

Applike, Germany (Hybrid)

Granicus - Senior Security Analyst

Granicus, India (Hybrid)

Rackspace Technology - Security Risk and Compliance Management Specialist III

Rackspace Technology, Mexico (Remote)

Redhorse Corp - Industrial Security Policy SME

Redhorse Corp, United States (On-Site)

Trend Micro - Sales Engineer

Trend Micro, Netherlands (On-Site)

Get notifed when new similar jobs are uploaded