As an APPLICATION SECURITY ENGINEER II at Fanatics Betting & Gaming (FBG), your knowledge and experience in application security will help lead the organization in identifying, assessing, and remediating vulnerabilities in the organization. This role sits within the Information Security department and reports to the Director of Information Security.
Responsibilities:
- Perform threat modeling and architecture reviews to identify potential security risks and integrate security early in the development process.
- Work with development teams to remediate security issues found during testing, providing guidance and support as necessary.
- Collaborate on security assessments on third-party software and services used by the organization when necessary.
- Support and grow the Security Champions program by delivering targeted training, facilitating knowledge-sharing sessions, and fostering community across engineering teams.
- Conduct penetration testing, vulnerability assessments, and code reviews to identify and evaluate potential security risks in applications, systems, and networks.
- Stay up-to-date on the latest threats, vulnerabilities, and security trends to ensure that our organization is prepared to address emerging threats.
- Participate in incident response activities as needed.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, or a related field
- 3+ years of experience in application security, product security, or other related domains
- Strong understanding of web application security principles and OWASP Top 10 vulnerabilities
- Familiarity with security testing tools such as Burp Suite, Nessus, Datadog, or similar tools
- Knowledge of secure coding practices and ability to work closely with development teams to promote secure coding principles
- Ability to communicate effectively with technical and non-technical stakeholders
- Ability to prioritize and balance multiple projects simultaneously
- Ability to collaborate and work in a team environment
- Experience with scripting languages such as Python, Node, or Bash is a plus
- Relevant certifications such as OSWA/OSWE, GWAPT, or CEH are a plus
The base salary for this role is based on job-related knowledge, skills, and experience and may vary depending on the successful candidate’s geographic location. For information about our benefits, please visit https://benefitsatfanatics.com/
