Senior Application Security Engineer

4 weeks ago


Philadelphia, United States Penn Interactive Full time

Penn Interactive (PI) is an interactive gaming company headquartered in Philadelphia. PI is the digital arm of PENN Entertainment (NASDAQ: PENN), the largest regional casino operator in the U.S.). Our mission is to challenge the norms of the gaming industry by building an immersive interactive gaming experience that is responsible, innovative, and fun. We are committed to helping our team members grow and succeed. We believe that hiring talented individuals that love what they do will help us win

About the Role & TeamAs part of the theScore team, you will be working with a team of smart, friendly, and dedicated Engineers, Product Managers and Designers determined to deliver some of the best apps the market has to offer. We want you to be challenged and to get the full experience of what it's like to work at theScore We are looking for an Application Security Engineer to join our Application Security team, to work cross-functionally across engineering. They are also a sister team to the Site Reliability Engineering team. This role will be responsible for designing, servicing, and implementing security measures to secure theScore's software systems, applications, code, and any related components.

About the Work

  • Collaborate with release and change management, SRE, Engineering, and compliance teams
  • Work with security/internal/external/state auditors to demonstrate compliance
  • Maintain a working knowledge of OWASP top 10 and MITRE top 25 CWE
  • Develop standards for security tooling focused on the application layer (SAST, DAST, SCA, MAST, RASP)
  • Build/implement secure artifact workflows in the SDLC to ensure governance and compliance standards are being met
  • Create technical approaches to implementing Application Security control technologies
  • Contribute to theScore's Application Security program to support our continued growth
  • Define and report on security metrics, their delivery, and improvements
  • Work with service teams to conduct threat models of theScore's internal and customer facing applications
  • Assist service teams in understanding and remediating security findings (code bashing)
  • Other duties as required.
About You
  • 3+ years of Application Security or DevSecOps experience
  • 2+ years of GCP or AWS experience
  • Experience with software supply chain security (SBOMs, Artifact Signing, Attestations)
  • Programming experience in Python or Go
  • Experience with implementing security tooling in CI/CD
  • Experience supporting RESTful APIs and securing containerized workloads (GKE, EKS)
  • Experience working in regulated environments (PCI-DSS, SOC 2, etc)

    #LI-HYBRID


Check out our LinkedIn page

Recently being recognized as a top workplace in the United States, we believe people work their best when they can be themselves. We are looking for hungry, innovative thinkers to help us challenge the status quo of the gaming industry. Diversity, equity, and inclusion are vital to all of our processes, programs, and structures. Your story, who you are, and your experience matter here.

  • Philadelphia, United States Motion Recruitment Partners, LLC Full time

    An exciting opportunity for a Senior Security Architect position is open at a local government agency. This role involves building out a zero-trust environment in the cloud and configuring cloud settings. You will be focusing on general blue team security functions, such as SIEM management, vulnerability management and threat hunting. The position, based...


  • Philadelphia, United States Motion Recruitment Full time

    An exciting opportunity for a Senior Security Architect position is open at a local government agency. This role involves building out a zero-trust environment in the cloud and configuring cloud settings. You will be focusing on general blue team security functions, such as SIEM management, vulnerability management and threat hunting. The position, based...


  • Philadelphia, United States EHS Technologies Full time

    POSITION: Senior Security Network Engineer EXPERIENCE for Senior Security Network Engineer position: Eight (8) years' experience in network security, demonstrating strong experience with Cisco Prime Infrastructure, understanding of IEEE 802.11 protocols, familiarity with TCP/IP (specifically Layers 3/4), and switching and routing protocols (internet...


  • Philadelphia, United States Motion Recruitment Full time

    Job Description Have you been looking to be part of a dedicated software security team? This global manager service provider is looking to fill a full-time Application Security Engineer role. The chosen candidate will have the opportunity to learn skills such as cloud and DevSecOps and will work as part of a multinational team of experts. The product...


  • Philadelphia, United States Motion Recruitment Full time

    Job Description Have you been looking to be part of a dedicated software security team? This global manager service provider is looking to fill a full-time Application Security Engineer role. The chosen candidate will have the opportunity to learn skills such as cloud and DevSecOps and will work as part of a multinational team of experts. The product...


  • Philadelphia, United States Motion Recruitment Partners, LLC Full time

    Job Description Have you been looking to be part of a dedicated software security team? This global manager service provider is looking to fill a full-time Application Security Engineer role. The chosen candidate will have the opportunity to learn skills such as cloud and DevSecOps and will work as part of a multinational team of experts. The product...


  • Philadelphia, United States Motion Recruitment Full time

    Job DescriptionHave you been looking to be part of a dedicated software security team? This global manager service provider is looking to fill a full-time Application Security Engineer role. The chosen candidate will have the opportunity to learn skills such as cloud and DevSecOps and will work as part of a multinational team of experts.The product security...


  • Philadelphia, United States Motion Recruitment Full time

    Job DescriptionHave you been looking to be part of a dedicated software security team? This global manager service provider is looking to fill a full-time Application Security Engineer role. The chosen candidate will have the opportunity to learn skills such as cloud and DevSecOps and will work as part of a multinational team of experts.The product security...


  • Philadelphia, United States Hyper Recruitment Solutions Full time

    Senior Application Engineer - ManufacturingHybrid - 30 minute commute from PhiladelphiaUp to $160,000 depending on experienceA market leading Industrial Automation Manufacturer are expanding their Engineering Department!They are looking for a skilled Senior Application Engineer to join their experienced team. This team delivers solutions to clients across...


  • Philadelphia, United States Motion Recruitment Partners, LLC Full time

    This investment banking firm is looking for a senior security engineer to be the security jack-of-all-trades. This is a senior blue team role that will involve work on high-level security projects and assisting with their current cloud migration, in addition to collaborating with the infrastructure team. Responsibilities will be split between operations and...


  • Philadelphia, United States Motion Recruitment Full time

    This investment banking firm is looking for a senior security engineer to be the security jack-of-all-trades. This is a senior blue team role that will involve work on high-level security projects and assisting with their current cloud migration, in addition to collaborating with the infrastructure team. Responsibilities will be split between operations and...


  • Philadelphia, United States Unisys Full time

    Reference #: REQ531956 We Believe in Better! We are a global information technology company that builds high-performance, security-centric solutions that can help change the world. Enhancing people's lives through secure, reliable advanced technology is our vision. At Unisys, we believe in better! Here, you have the opportunity to learn new skills, apply...


  • Philadelphia, United States Yoh, A Day & Zimmermann Company Full time

    Job Title: Senior Information Security Engineer Location: Remote, United States Position Type: Full-time US Citizenship required - Must be able to obtain a Security Clearance Job Description: As part of our dedication to excellence, we prioritize the security and integrity of our systems and data, and we are seeking a talented Information Security...


  • Philadelphia, United States Yoh, A Day & Zimmermann Company Full time

    Job Title: Senior Information Security Engineer Location: Remote, United States Position Type: Full-time US Citizenship required - Must be able to obtain a Security ClearanceJob Description: As part of our dedication to excellence, we prioritize the security and integrity of our systems and data, and we are seeking a talented Information Security Engineer to...


  • Philadelphia, United States Noblis Full time

    Responsibilities: Noblis MSD supports the Naval Sea Systems Command (NAVSEA) and Naval Surface Warfare Center Philadelphia Division (NSWCPD) in their mission to enable research, development, test and evaluation, acquisition, engineering, systems integration, in-service and fleet engineering with cybersecurity, comprehensive logistics, and life-cycle savings....


  • Philadelphia, United States Yoh, A Day & Zimmermann Company Full time

    Job Title: Senior Information Security Engineer Location: Remote, United States Position Type: Full-time US Citizenship required - Must be able to obtain a Security ClearanceJob Description: As part of our dedication to excellence, we prioritize the security and integrity of our systems and data, and we are seeking a talented Information Security Engineer to...


  • Philadelphia, United States Yoh, A Day & Zimmermann Company Full time

    Job Title: Senior Information Security Engineer Location: Remote, United States Position Type: Full-time US Citizenship required - Must be able to obtain a Security ClearanceJob Description: As part of our dedication to excellence, we prioritize the security and integrity of our systems and data, and we are seeking a talented Information Security Engineer to...


  • Philadelphia, United States Yoh, A Day & Zimmermann Company Full time

    Job Title: Senior Information Security Engineer Location: Remote, United States Position Type: Full-time US Citizenship required - Must be able to obtain a Security ClearanceJob Description: As part of our dedication to excellence, we prioritize the security and integrity of our systems and data, and we are seeking a talented Information Security Engineer to...


  • Philadelphia, United States Motion Recruitment Partners, LLC Full time

    Job Description Embark on this exciting position of Manager Security Engineer in the Greater Philadelphia area. The location itself offers numerous advantages, including a great work/life balance, attractive benefits, and a pension plan. The manager will be responsible for overseeing and leading a team of cybersecurity professionals to protect the...


  • Philadelphia, United States Security Risk Advisors Full time

    Job DescriptionJob DescriptionThe Offensive Security Senior Consultant position will be part of our Advisory practice on the Technical Assessments team. Our style of consulting is dynamic, innovative, fast-paced, and highly rewarding for both our clients and our team. This is an outstanding opportunity to work with a wide variety of tool sets and across...