Application Security Engineer II

PlayStation Global
1dRemote

About The Position

As an Application Security Engineer, you will be responsible for identifying and mitigating security flaws found in applications. Through penetration testing, code review, vulnerability triaging and security assessments, you will work with engineering teams to ensure their applications meet security requirements, providing recommendations to address vulnerabilities.

Requirements

  • 3+ years previous experience in Information Security
  • 1+ years of penetration testing (or similar) experience OR 2+ years’ experience working within software development
  • Bachelor’s degree in Computer Science or Information Security, or equivalent work experience
  • Good understanding of application security weaknesses for various technologies including web applications, databases, and multi-tier applications
  • Ability to review source code and explain mitigation controls within source code for various programming languages (Java, C, Go, JavaScript, etc.)
  • Experience with application security scanning tools such as SAST, SCA and DAST
  • Experience with web application testing tools like Burp Suite, OWASP ZAP, or Caido

Nice To Haves

  • Penetration testing or application security certifications are a plus, such as OSCP, GWAPT, CEH, among others
  • Good written and oral communication skills
  • Creative and comfortable thinking outside the box
  • Hacker mentality; can think like an attacker
  • Great analytical, evaluative, and problem-solving skills
  • Curious, always aspiring to learn more, seeks understanding of cause and effect
  • Customer service approach towards internal customers

Responsibilities

  • Penetration Testing: Lead security tests from scoping to report, working with developers to address findings. Proactively discover vulnerabilities and track them to resolution with developers. Validate security controls to ensure alignment with compliance and industry standard methodologies
  • Vulnerability Management: Track and analyze vulnerabilities in applications, providing guidance and support for remediation efforts. Determine and recommend remediation guidelines
  • Responsible Disclosure: Investigate and triage vulnerabilities reported from external sources, including Responsible Disclosure program
  • Collaboration with Development Teams: Collaborate with engineers, consultants and leadership to resolve security risks and provide mitigation recommendations

Benefits

  • medical
  • dental
  • vision
  • matching 401(k)
  • paid time off
  • wellness program
  • employee discounts for Sony products
  • bonus package
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service