Application Security Engineer

Enjoy Gaming LLC

France

Hybride

EUR 70 000 - 110 000

Plein temps

Il y a 3 jours
Soyez parmi les premiers à postuler
Générateur de candidature

Une candidature complète en une minute — CV personnalisé et lettre de motivation, prêts à envoyer.

Passez les filtres ATS

Avantages offerts par ce poste

Competitive salary in EUR
Flexible remote work
Comprehensive benefits
Professional development support
Well-being perks

Résumé du poste

Enjoy Gaming is looking for an Application Security Engineer to join our team and act as the technical guardian for our games and platforms. If you have an attacker’s mindset but know how to build and defend alongside engineering teams, this role is for you.

You’ll dive into web and desktop applications, hunting vulnerabilities and collaborating with Architects, Studio, Slots, and Platform Developers to engineer more resilient systems.

Qualifications

  • 5+ years of Application Security Engineer experience.
  • Background in red teaming, pentesting, application security, and software development.
  • Able to independently find vulnerabilities in web and desktop applications, triage them, and, where needed, fix them.
  • Solid grounding in data structures, algorithms, and systems architecture designs.
  • Previous security testing experience with Kafka/Redis/BullMQ/PubSub as message/streaming tools.
  • Codes independently, can navigate unfamiliar web application frameworks.
  • Experience using AI tools to aid with vulnerability hunting.
  • Comfortable talking to developers and turning findings into practical, actionable advice.

Responsabilités

  • Own and maintain our application security pipelines: SCA (Github/Trivy), DAST (Nessus, Acunetix, Wiz), and SAST
  • Triage findings from these tools and drive them to remediation
  • Perform penetration tests on new platform features, new internal applications, and new slots and live games
  • Run basic red team activities, including leaked credential reviews and external attack surface audits
  • Review complex auth flows with various third parties for cryptographic and security issues
  • Review/Triage application code for security issues ( 85% NestJS / 15% .NET )
  • Own security risk in existing code and applications
  • Act as the application-level security expert during incident response and be ready to deliver hotfixes yourself when needed
  • Prepare our quarterly SAST/DAST vulnerability scan reports for stakeholders/regulators and take part in audit meetings
  • Own the Secure Coding and Application Security areas of our ISMS
  • Meet regularly with development teams, learn about upcoming features early, and advise on secure design

Connaissances

Security testing
Red teaming
Application security
Software development
Vulnerability triage
Communicating with developers
AI-based security
Secure coding review

Outils

Kafka
Redis
BullMQ
PubSub
Trivy
Nessus
Acunetix
Wiz
CI/CD tools

Description du poste

Enjoy Gaming isasoftware provider focused oncreating high-quality digital entertainment experiences, including Slots and Live Games. Our team brings together experienced professionals ingame development, product, and design, driven byapassion for innovation and quality.

AtEnjoy Gaming, wevalue ownership, excellence, and drive. These principles shape the way wework, collaborate, and build products.

Joinus and bepart ofour innovative journey inthe gaming world!

We’re looking for a sharp Application Security Engineer to join our team and act as the technical guardian for our games and platforms. If you have an attacker's mindset but know how to build and defend alongside engineering teams, this role is for you. In this position, you won’t just be sending reports to the teams or management. You’ll be diving deep into web and desktop applications, hunting down game-level vulnerabilities, and collaborating closely with our Architects, Studio, Slots, and Platform Developers to engineer more resilient systems.


What we're looking for:
  • 5+ years of Application Security Engineer experience

  • Background in red teaming, penetration testing, application security, and software development

  • Able to independently find vulnerabilities in web and desktop applications, triage them, and, where needed, fix them

  • Solid grounding in data structures, algorithms, and systems architecture designs

  • Previous security testing experience with Kafka/Redis/BullMQ/PubSub as message/streaming tools

  • Codes independently, can navigate unfamiliar web application frameworks

  • Experience using AI tools to aid with vulnerability hunting

  • Comfortable talking to developers and turning findings into practical, actionable advice

Nice to have:
  • CRTO, OSCP, or OSWE certifications or similar

  • Knowledge of Cloud Platforms (GCP/AWS)

  • Understanding of CI/CD pipelines

  • Hands-on experience with Trivy, Nessus, Acunetix, or Wiz

  • Experience in iGaming or another regulated industry

What You Will Do:
  • Own and maintain our application security pipelines: SCA (Github/Trivy), DAST (Nessus, Acunetix, Wiz), and SAST

  • Triage findings from these tools and drive them to remediation

  • Perform penetration tests on new platform features, new internal applications, and new slots and live games

  • Run basic red team activities, including leaked credential reviews and external attack surface audits

  • Review complex auth flows with various third parties for cryptographic and security issues

  • Review/Triage application code for security issues ( 85% NestJS / 15% .NET )

  • Own security risk in existing code and applications

  • Act as the application-level security expert during incident response and be ready to deliver hotfixes yourself when needed

  • Prepare our quarterly SAST/DAST vulnerability scan reports for stakeholders/regulators and take part in audit meetings

  • Own the Secure Coding and Application Security areas of our ISMS

  • Meet regularly with development teams, learn about upcoming features early, and advise on secure design

What WeOffer:
  • Competitive Salary inEUR: with annual performance reviews torecognize your growth

  • Flexible Remote Work: balance productivity and comfort

  • Comprehensive Benefits: including medical insurance, psychologist support, and Polish, Slovak-speaking clubs

  • Generous Paid Time Off: 20working days ofpaid vacation, plus 10additional paid days off, 10paid sick days, and all national holidays inyour country

  • Professional Development Support: reimbursement for courses, trainings, and certifications

  • Well-being Perks: support for language classes, sports, massages, orlife coaching

Please note that feedback onyour application will beprovided within two weeks ifapositive decision ismade regarding your candidacy.

  • English level: Upper-Intermediate
Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

Application Security Engineer — Remote & Growth‑Oriented
Application Security Engineer — Remote & Growth‑Oriented

Enjoy Gaming LLC • France

Hybride
EUR 70 000 - 110 000
Competitive salary in EUR
Flexible remote work
Comprehensive benefits
+2
Staff Security Researcher
Staff Security Researcher

Lever, Inc. • France

À distance
EUR 90 000 - 140 000
Fully remote Europe
Health & pension
Wellness days
+1
Senior Security Operations Engineer
Senior Security Operations Engineer

Lever, Inc. • France

À distance
EUR 70 000 - 110 000
Fully remote
Health benefits
Pension plan
+8
Associate Security Engineer
Associate Security Engineer

Spendesk • Paris

Sur place
EUR 40 000 - 70 000
Flexible on-site and remote policy
Latest Apple equipment
Access to Moka.care for wellbeing
+2
Security Engineer
Security Engineer

airapps • Paris

Sur place
EUR 55 000 - 75 000
Apple hardware ecosystem
Annual Bonus
Top-tier Health and Life Insurance
+7
Graphic Designer (slots)
Graphic Designer (slots)

Enjoy Gaming LLC • France

Hybride
EUR 42 000 - 54 000
Competitive salary
Flexible remote
Comprehensive benefits
+3
Senior Security Engineer
Senior Security Engineer

Voodoo • Paris

Hybride
EUR 110 000 - 140 000
Gymlib (100% covered by Voodoo)
Premium healthcare coverage with SideC
Family health coverage
Security Engineer - Paris / Lyon / Cracow
Security Engineer - Paris / Lyon / Cracow

Atlas Metrics • Tassin-la-Demi-Lune

Sur place
EUR 60 000 - 90 000
Hybrid work model
RTT days
Meal vouchers (SWILE)
+2
Senior Security Engineer - freelance
Senior Security Engineer - freelance

Netcompany • France

Sur place
EUR 65 000 - 90 000
Diverse working environment
Opportunity for professional growth
Senior Security Engineer - freelance
Senior Security Engineer - freelance

Netcompany Group • Strasbourg

Sur place
EUR 65 000 - 90 000