Application Security Engineer II
United States
Full Time Mid-level / Intermediate USD 116K - 175K
Fanatics
Fanatics.com is the ultimate sports apparel and Fan Gear Store, featuring football Jerseys, T-shirts, Hats, Collectibles and merchandise for fans of the NFL, MLB, NBA, NHL, Soccer, and College.As an APPLICATION SECURITY ENGINEER II at Fanatics Betting & Gaming (FBG), your knowledge and experience in application security will help lead the organization in identifying, assessing, and remediating vulnerabilities in the organization. This role sits within the Information Security department and reports to the Director of Information Security.
Responsibilities:
- Perform threat modeling and architecture reviews to identify potential security risks and integrate security early in the development process.
- Work with development teams to remediate security issues found during testing, providing guidance and support as necessary.
- Collaborate on security assessments on third-party software and services used by the organization when necessary.
- Conduct penetration testing, vulnerability assessments, and code reviews to identify and evaluate potential security risks in applications, systems, and networks.
- Stay up-to-date on the latest threats, vulnerabilities, and security trends to ensure that our organization is prepared to address emerging threats.
- Participate in incident response activities as needed.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, or a related field
- 3+ years of experience in application security, including penetration testing
- Strong understanding of web application security principles and OWASP Top 10 vulnerabilities
- Familiarity with security testing tools such as Burp Suite, Nessus, Fortify, or similar tools
- Knowledge of secure coding practices and ability to work closely with development teams to promote secure coding principles
- Ability to communicate effectively with technical and non-technical stakeholders
- Ability to prioritize and balance multiple projects simultaneously
- Ability to collaborate and work in a team environment
- Experience with scripting languages such as Python or Bash is a plus
- Relevant certifications such as OSWA/OSWE, GWAPT, or CEH are a plus
The expected salary range for this role is based on job-related knowledge, skills, and experience. This role is eligible for the Fanatics Betting and Gaming annual bonus program and an equity award. *Salary range is listed in USD; actual salary will vary based on location. *Salary Range: $116,000 - $175,000 per year (actual salary will be determined in part by a successful candidate’s geographic location). In addition to base salary, bonus, and equity, full-time employees are eligible for Medical, Dental, Vision, 401K, paid time off, and other benefits like GymPass, Pet Insurance, Family Care Benefits, and more. We’ll also give you $700 to set up your home office!
Fanatics is building a leading global digital sports platform. We ignite the passions of global sports fans and maximize the presence and reach for our hundreds of sports partners globally by offering products and services across Fanatics Commerce, Fanatics Collectibles, and Fanatics Betting & Gaming, allowing sports fans to Buy, Collect, and Bet. Through the Fanatics platform, sports fans can buy licensed fan gear, jerseys, lifestyle and streetwear products, headwear, and hardgoods; collect physical and digital trading cards, sports memorabilia, and other digital assets; and bet as the company builds its Sportsbook and iGaming platform. Fanatics has an established database of over 100 million global sports fans; a global partner network with approximately 900 sports properties, including major national and international professional sports leagues, players associations, teams, colleges, college conferences and retail partners, 2,500 athletes and celebrities, and 200 exclusive athletes; and over 2,000 retail locations, including its Lids retail stores. Our more than 22,000 employees are committed to relentlessly enhancing the fan experience and delighting sports fans globally.Tags: Application security Bash Burp Suite CEH Computer Science GWAPT Incident response Nessus OSWE OWASP Pentesting Python Scripting Security assessment Vulnerabilities
Perks/benefits: Conferences Equity / stock options Fitness / gym Health care Home office stipend Salary bonus Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.