Senior Application Security Engineer

3 Months ago • 5 Years + • Cyber Security • $172,100 PA - $258,100 PA

Job Summary

Job Description

As a Senior Application Security Engineer at PlayStation, you'll join the Product Security team, focusing on penetration testing, handling bug bounty reports, addressing out-of-band vulnerabilities, and managing security incidents. You'll collaborate with development teams to remediate security issues, perform security testing of products and services, and lead security tests from scoping to reporting. This role requires strong communication skills, a deep understanding of application security weaknesses across various technologies, and experience with security testing tools. You will also contribute to developing custom testing tools and scripts. The position involves working with both offensive and defensive security perspectives, continuous improvement, and collaboration within a fast-paced environment.
Must have:
  • 5+ years in Information Security
  • 3+ years penetration testing experience
  • Experience with web application testing tools
  • Ability to review source code (Java, Go, Python, C/C++)
  • Collaborate with engineering teams
Good to have:
  • Experience with SAST, SCA, and DAST
  • Knowledge of cloud services (AWS, GCP)
  • Experience with C2 frameworks
  • Agile and DevOps experience
Perks:
  • Top-tier benefits package (medical, dental, vision)
  • Matching 401(k)
  • Paid time off
  • Wellness program
  • Sony product discounts
  • Bonus package (potential)

Job Details

Why PlayStation?

PlayStation isn’t just the Best Place to Play — it’s also the Best Place to Work. Today, we’re recognized as a global leader in entertainment producing The PlayStation family of products and services including PlayStation®5, PlayStation®4, PlayStation®VR, PlayStation®Plus, acclaimed PlayStation software titles from PlayStation Studios, and more.

PlayStation also strives to create an inclusive environment that empowers employees and embraces diversity. We welcome and encourage everyone who has a passion and curiosity for innovation, technology, and play to explore our open positions and join our growing global team.

The PlayStation brand falls under Sony Interactive Entertainment, a wholly-owned subsidiary of Sony Corporation.

Do you want to help bring PlayStation technology to a worldwide audience? Are you passionate about securing infrastructure that constantly pushes the boundary of the gaming industry? Are you ready to work with innovative technology, forward-thinking engineers, and a passionate security team? If so, come work with us!

In this position you will join our Product Security team, focusing on penetration testing and handling bug bounty reports from our Responsible Disclosure program. You will also get the opportunity to address out-of-band vulnerabilities, handle security incidents and work closely with our development teams, helping them remediate security issues.

Our team members are comfortable with thinking outside the box and exploring both offensive and defensive perspectives simultaneously. We are constantly striving to grow and improve, curious and seeking to learn more, moving towards continuous improvement. Whether we work independently and collaboratively, we do all we can to meet our goals and serve our internal customers. If this sounds like you, we’d love to have you on the team!

Key Responsibilities

  • Collaborate with engineers, consultants and leadership to address security risks and provide mitigation recommendations
  • Perform validation of security controls to ensure alignment with compliance and industry standard processes
  • Perform manual security testing of products and services to proactively discover vulnerabilities, tracking them to resolution
  • Lead security tests from scoping to report, working with developers to address findings
  • Work with vulnerabilities identified by scanners, from triage to remediation of valid findings with engineering organizations
  • Investigate and triage vulnerabilities reported from external sources
  • Determine and recommend remediation guidelines for vulnerabilities to developers and other technical audiences

Qualifications

  • 5+ years previous experience in Information Security
  • 3+ years of penetration testing (or related) experience
  • 2+ years experience working within software development
  • Bachelor’s degree in Computer Science or Information Security, or equivalent experience
  • Superb communication and interpersonal skills, with the ability to engage and address technical and non-technical audiences in both written and verbal forms
  • Excellent analytical, evaluative, and problem-solving skills
  • Good understanding of application security weaknesses for various technologies including web applications, databases, and multi-tier applications
  • Ability to review source code and explain mitigation controls within source code for languages including, Java, Go, Python, C/C++, among others
  • Ability to write and develop custom or customized testing tools and scripts
  • Solid experience with web application testing tools like Burp Suite and OWASP ZAP, or equivalent tools
  • Experience with network tools such as Wireshark, netcat, tcpdump, etc
  • Experience with application security scanning tools such as SAST, SCA and DAST
  • Experience with different development methodologies such as Agile and DevOps
  • Experience with automated attack tools and developing mitigation techniques
  • Experience with C2 frameworks such as Cobalt Strike, Metasploit or Empire
  • Knowledge of cloud services and infrastructure, such as AWS and GCP

 

 

#LI-GM1

 

 Please refer to our Candidate Privacy Notice for more information about how we process your personal information, and your data protection rights.

 

At SIE, we consider several factors when setting each role’s base pay range, including the competitive benchmarking data for the market and geographic location.

Please note that the base pay range may vary in line with our hybrid working policy and individual base pay will be determined based on job-related factors which may include knowledge, skills, experience, and location. 

In addition, this role
is eligible for SIE’s top-tier benefits package that includes medical, dental, vision, matching 401(k), paid time off, wellness program and coveted employee discounts for Sony products. This role also may be eligible for a bonus package. Click here to learn more.

 

The estimated base pay range for this role is listed below.

$172,100 - $258,100 USD

Equal Opportunity Statement:

Sony is an Equal Opportunity Employer. All persons will receive consideration for employment without regard to gender (including gender identity, gender expression and gender reassignment), race (including colour, nationality, ethnic or national origin), religion or belief, marital or civil partnership status, disability, age, sexual orientation, pregnancy, maternity or parental status, trade union membership or membership in any other legally protected category.

We strive to create an inclusive environment, empower employees and embrace diversity. We encourage everyone to respond. 

PlayStation is a Fair Chance employer and qualified applicants with arrest and conviction records will be considered for employment.

Similar Jobs

Moloco - Senior Staff Software Engineer

Moloco

Bengaluru, Karnataka, India (On-Site)
1 Month ago
ByteDance - Senior Software Engineer - Developer Infrastructure

ByteDance

San Jose, California, United States (On-Site)
2 Months ago
Google - Web Solutions Engineer

Google

Hyderabad, Telangana, India (On-Site)
1 Month ago
Workato - Senior Software Engineer (Rust)

Workato

(Remote)
1 Month ago
Google - Software Engineering Manager, Chrome Enterprise Core

Google

Warsaw, Masovian Voivodeship, Poland (On-Site)
1 Month ago
SmileGate - Information Security: Security Solution Architect and Operator

SmileGate

Seongnam-si, Gyeonggi-do, South Korea (On-Site)
2 Months ago
Google - Cybersecurity Associate Auditor

Google

Chicago, Illinois, United States (On-Site)
1 Month ago
ByteDance - Application Security Engineer - Global Monetization

ByteDance

Singapore (On-Site)
1 Month ago
GLG - Senior Security Operations Engineer

GLG

Gurugram, Haryana, India (Remote)
7 Months ago
Anavation - Network Security Engineer (SME)

Anavation

Clarksburg, West Virginia, United States (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

PwC - Analityk biznesowy z językiem niemieckim (freelance)

PwC

Warsaw, Masovian Voivodeship, Poland (On-Site)
8 Months ago
Technorizen Software Solutions - Exp. Android Developer (1-2 years)

Technorizen Software Solutions

Indore, Madhya Pradesh, India (On-Site)
10 Months ago
PwC - Tester/Testerka automatyzujący/a (freelance)

PwC

Warsaw, Masovian Voivodeship, Poland (Hybrid)
8 Months ago
Next Level Business Services - Java UI Developer

Next Level Business Services

Tampa, Florida, United States (On-Site)
7 Months ago
Google - Technical Delivery Infrastructure Engineer, Public Sector

Google

Washington, District Of Columbia, United States (On-Site)
1 Month ago
Zscaler - Senior Software Engineer - DevTest

Zscaler

Hyderabad, Telangana, India (Hybrid)
1 Month ago
Tencent - Cross-Border Payment Software Engineering Intern

Tencent

(On-Site)
3 Months ago
Enphase Energy - Staff Software Engineer - Cloud

Enphase Energy

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Lytx - Senior Data Engineer (Streaming and Big Data)

Lytx

India (On-Site)
1 Month ago
DEVOTEAM - Help Desk N1 Workplace

DEVOTEAM

Barcelona, Catalonia, Spain (Remote)
6 Months ago

Get notifed when new similar jobs are uploaded

Jobs in United States

Geocaching HQ - QA Tester

Geocaching HQ

Seattle, Washington, United States (On-Site)
11 Months ago
A-Team - AI Strategy Lead

A-Team

New York, New York, United States (Hybrid)
2 Months ago
ByteDance - Senior Software Development Engineer - Cloud Native Databases

ByteDance

Seattle, Washington, United States (On-Site)
4 Months ago
Axon - Manufacturing Technician Supervisor

Axon

Phoenix, Arizona, United States (On-Site)
1 Month ago
Opendoor - Senior Decision Scientist

Opendoor

San Francisco, California, United States (Hybrid)
1 Month ago
Postman - Account Development Representative

Postman

Boston, Massachusetts, United States (Hybrid)
1 Month ago
The Walt Disney Company - Producer - Part Time, ABC News Live

The Walt Disney Company

New York, New York, United States (On-Site)
1 Month ago
Google - Senior Technical Solutions Consultant, Teamcenter

Google

Mountain View, California, United States (On-Site)
1 Month ago
NVIDIA - Developer Technology Engineer, Public Sector - New College Grad 2025

NVIDIA

Santa Clara, California, United States (On-Site)
1 Month ago
Patel greene - CEI Senior Project Engineer

Patel greene

Sarasota, Florida, United States (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ByteDance - AI Security Researcher - Security - San Jose

ByteDance

San Jose, California, United States (On-Site)
7 Months ago
Magna International - Sr. Penetration Test Engineer

Magna International

Bengaluru, Karnataka, India (On-Site)
8 Months ago
Saviynt - Sr. Principal Software Engineer - Privileged Access Management (PAM)

Saviynt

El Segundo, California, United States (Hybrid)
7 Months ago
The Walt Disney Company - Manager, Information Security

The Walt Disney Company

Orlando, Florida, United States (On-Site)
1 Month ago
Microsoft - Technical Support Engineer - Security & Compliance

Microsoft

(On-Site)
1 Month ago
PwC - Assurance Technology Risk & Quality Manager

PwC

Dublin, County Dublin, Ireland (On-Site)
7 Months ago
PwC - IN_Manager _Technical Delivery Manager_ Emerging Technologies_ Advisory_ Bengaluru

PwC

Bengaluru, Karnataka, India (On-Site)
8 Months ago
ByteDance - Senior Security Tech Lead Manager - Security Engineering

ByteDance

San Jose, California, United States (On-Site)
2 Months ago
Meta - Product Security Engineer

Meta

Bellevue, Washington, United States (On-Site)
6 Months ago
Fortis Games - Senior Cloud Security Engineer

Fortis Games

Hungary (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Want to take your career to the next level? Search open job vacancies at any of the Sony Interactive sites by visiting playstation.com/careers/


Sony Interactive Entertainment pushes the boundaries of entertainment and innovation, starting from the launch of the original PlayStation in Japan in 1994. Today, we continue to deliver innovative and thrilling experiences to a global audience through our PlayStation line of products and services that include generation-defining hardware, pioneering network services, and award-winning games. Headquartered in San Mateo, California, with global functions in California, London, and Tokyo, and game development studios around the world as part of PlayStation Studios, we believe that the power of play is borderless. Sony Interactive Entertainment is a wholly owned subsidiary of Sony Group Corporation.  


For more information about our company, please visit SonyInteractive.com. For more information about PlayStation products, please visit PlayStation.com.

Carlsbad, California, United States (On-Site)

Los Angeles, California, United States (Remote)

Aliso Viejo, California, United States (On-Site)

Helsinki, Uusimaa, Finland (On-Site)

Helsinki, Uusimaa, Finland (On-Site)

London, England, United Kingdom (On-Site)

London, England, United Kingdom (On-Site)

Aliso Viejo, California, United States (On-Site)

Madison, Wisconsin, United States (Hybrid)

View All Jobs

Get notified when new jobs are added by PlayStation Global

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug