Application Security Engineer II
Job Description: • Perform threat modeling and architecture reviews to identify potential security risks and integrate security early in the development process. • Work with development teams to remediate security issues found during testing, providing guidance and support as necessary. • Collaborate on security assessments on third-party software and services used by the organization when necessary. • Support and grow the Security Champions program by delivering targeted training, facilitating knowledge-sharing sessions, and fostering community across engineering teams. • Conduct penetration testing, vulnerability assessments, and code reviews to identify and evaluate potential security risks in applications, systems, and networks. • Stay up-to-date on the latest threats, vulnerabilities, and security trends to ensure that our organization is prepared to address emerging threats. • Participate in incident response activities as needed. Requirements: • Bachelor's degree in Computer Science, Information Technology, or a related field • 3+ years of experience in application security, product security, or other related domains • Strong understanding of web application security principles and OWASP Top 10 vulnerabilities • Familiarity with security testing tools such as Burp Suite, Nessus, Datadog, or similar tools • Knowledge of secure coding practices and ability to work closely with development teams to promote secure coding principles • Ability to communicate effectively with technical and non-technical stakeholders • Ability to prioritize and balance multiple projects simultaneously • Ability to collaborate and work in a team environment • Experience with scripting languages such as Python, Node, or Bash is a plus • Relevant certifications such as OSWA/OSWE, GWAPT, or CEH are a plus Benefits: • Eligible for the Fanatics Betting and Gaming annual bonus program • Equity award Apply tot his job