Senior application security engineer
Full TimeBookmark Details
Why PlayStation?
PlayStation isn’t just the Best Place to Play — it’s also the Best Place to Work. Today, we’re recognized as a global leader in entertainment producing The PlayStation family of products and services including PlayStation5, PlayStation4, PlayStationVR, PlayStationPlus, acclaimed PlayStation software titles from PlayStation Studios, and more.
PlayStation also strives to create an inclusive environment that empowers employees and embraces diversity. We welcome and encourage everyone who has a passion and curiosity for innovation, technology, and play to explore our open positions and join our growing global team.
The PlayStation brand falls under Sony Interactive Entertainment, a wholly-owned subsidiary of Sony Corporation.
Do you want to help bring PlayStation technology to a worldwide audience? Are you passionate about securing infrastructure that constantly pushes the boundary of the gaming industry? Are you ready to work with innovative technology, forward-thinking engineers, and a passionate security team? If so, come work with us!
In this position you will join our Product Security team, focusing on penetration testing and handling bug bounty reports from our Responsible Disclosure program. You will also get the opportunity to address out-of-band vulnerabilities, handle security incidents and work closely with our development teams, helping them remediate security issues.
Our team members are comfortable with thinking outside the box and exploring both offensive and defensive perspectives simultaneously. We are constantly striving to grow and improve, curious and seeking to learn more, moving towards continuous improvement. Whether we work independently and collaboratively, we do all we can to meet our goals and serve our internal customers. If this sounds like you, we’d love to have you on the team!
Key Responsibilities Collaborate with engineers, consultants and leadership to address security risks and provide mitigation recommendations
Perform validation of security controls to ensure alignment with compliance and industry standard processes
Perform manual security testing of products and services to proactively discover vulnerabilities, tracking them to resolution
Lead security tests from scoping to report, working with developers to address findings
Work with vulnerabilities identified by scanners, from triage to remediation of valid findings with engineering organizations
Investigate and triage vulnerabilities reported from external sources
Determine and recommend remediation guidelines for vulnerabilities to developers and other technical audiences
Qualifications 5+ years previous experience in Information Security
3+ years of penetration testing (or related) experience
2+ years experience working within software development
Bachelor’s degree in Computer Science or Information Security, or equivalent experience
Superb communication and interpersonal skills, with the ability to engage and address technical and non-technical audiences in both written and verbal forms
Excellent analytical, evaluative, and problem-solving skills
Good understanding of application security weaknesses for various technologies including web applications, databases, and multi-tier applications
Ability to review source code and explain mitigation controls within source code for languages including, Java, Go, Python, C/C++, among others
Ability to write and develop custom or customized testing tools and scripts
Solid experience with web application testing tools like Burp Suite and OWASP ZAP, or equivalent tools
Experience with network tools such as Wireshark, netcat, tcpdump, etc
Experience with application security scanning tools such as SAST, SCA and DAST
Experience with different development methodologies such as Agile and DevOps
Experience with automated attack tools and developing mitigation techniques
Experience with C2 frameworks such as Cobalt Strike, Metasploit or Empire
Knowledge of cloud services and infrastructure, such as AWS and GCP
The estimated base pay range for this role is listed below.
$172,100 — $258,100 USD
Equal Opportunity Statement:
Sony is an Equal Opportunity Employer. All persons will receive consideration for employment without regard to gender (including gender identity, gender expression and gender reassignment), race (including colour, nationality, ethnic or national origin), religion or belief, marital or civil partnership status, disability, age, sexual orientation, pregnancy, maternity or parental status, trade union membership or membership in any other legally protected category.
We strive to create an inclusive environment, empower employees and embrace diversity. We encourage everyone to respond.
PlayStation is a Fair Chance employer and qualified applicants with arrest and conviction records will be considered for employment.
#J-18808-Ljbffr
Recommended Skills
- Agile Methodology
- Analytical
- Application Security
- Automation
- Business Process Improvement
- C++ (Programming Language)
Share
Facebook
X
LinkedIn
Telegram
Tumblr
Whatsapp
VK
Mail