Fanatics Commerce is the global leader in licensed sports merchandise, operating a vertically integrated platform that designs, manufactures, and delivers officially licensed apparel, jerseys, headwear, and collectibles for major leagues, teams, and events worldwide. With more than 900 e-commerce sites and a global omnichannel presence across digital, in-venue, and retail, Fanatics Commerce reaches fans in over 180 countries and powers official fan experiences for many of the world's most iconic sports properties.
At Fanatics, we bring our BOLD Leadership Principles to life every day - building championship teams, obsessing over fans, acting with entrepreneurial speed, and delivering with a determined and relentless mindset.
Senior Security Engineer, Perimeter Security Operations
Fanatics Commerce is the global leader in licensed sports merchandise, operating a vertically integrated platform that designs, manufactures, and delivers officially licensed apparel, jerseys, headwear, and collectibles for major leagues, teams, and events worldwide. With more than 900 e-commerce sites and a global omnichannel presence across digital, in-venue, and retail, Fanatics Commerce reaches fans in over 180 countries and powers official fan experiences for many of the world's most iconic sports properties.
At Fanatics, we bring our BOLD Leadership Principles to life every day—building championship teams, obsessing over fans, acting with limitless entrepreneurial spirit, and delivering with a determined and relentless mindset.
As we continue to scale our global platform, the Senior Security Engineer, Perimeter Security Operations will play a critical role in protecting our global e-commerce and API platform against modern threats at scale.
Role Overview
The Senior Security Engineer, Perimeter Security Operations is based in Hyderabad, India and is responsible for protecting Fanatics Commerce's global e-commerce and API platform by managing detection, response, tuning, automation, and reliability across CDN, WAF, and networking layers. A defining dimension of this role is developing and steering the team's AI and agentic capabilities — building agentic skillsets and processes that extend analyst capacity while implementing guardrails that keep AI-driven operations safe, accurate, and auditable. The Senior Security Engineer, Perimeter Security Operations delivers business and fan impact through BOLD leadership and execution excellence, leveraging data, automation, and AI-enabled insights.
How Will You Drive Impact
Success is measured by the ability to deliver results through BOLD capabilities and measurable outcomes.
Team & Leadership Impact (Build Championship Teams)
- Partner closely with engineering, platform, SRE, and SOC teams to drive observability, enforce best practices, and continuously strengthen edge defense posture across globally distributed environments.
- Collaborate with traffic engineering, observability, and infrastructure teams to ensure scalable, fault-tolerant configurations across multi-CDN environments.
- Contribute to continuous improvement of runbooks, dashboards, and operational standards for the Perimeter Security Operations Center (PSOC), raising the operational baseline for the broader team.
Fan & Customer Impact (Obsessed with Fans)
- Protect the availability and integrity of the platforms that serve millions of fans daily by leading incident response and mitigation efforts for perimeter-layer attacks, including scraping, credential stuffing, carding, and API abuse.
- Manage DNS, networking, and delivery routing systems — including global traffic managers, failover policies, and load-balancing configurations — to ensure fans experience fast, reliable, and secure access across all channels.
- Perform ongoing signature tuning, rule deployment, and traffic analysis to improve signal-to-noise ratios across WAF and CDN layers, reducing friction for legitimate fan traffic while blocking threats.
- Develop and implement executive-level traffic report briefings using automation, AI, and machine learning tooling to ensure actionability and strategic insight that directly supports fan-first decision-making.
Innovation & Problem Solving (Limitless Entrepreneurial Spirit)
- Develop AI and agentic skillsets, workflows, and processes — including Claude skills, MCP integrations, and LLM-assisted triage — that scale PSOC operations, with validation of AI outputs against ground truth to ensure reliability.
- Design and implement automation workflows in SOAR platforms (e.g., Tines, Torq, N8N) to streamline operations, enhance incident response, and reduce manual toil across the security stack.
- Operate, maintain, and optimize the perimeter defense stack across edge and origin layers, including Akamai, Cloudflare, Blink Ops, Imperva, Fastly, Impart, and AWS WAF, identifying opportunities to improve efficacy and performance.
- Design, implement, and enforce guardrails for AI and agentic systems — including bounded action scopes, approval gates, audit logging, and kill switches — to ensure automated production changes remain safe and auditable.
Ownership & Execution (Determined & Relentless Mindset)
- Monitor, analyze, and respond to security events in partnership with Perimeter Security analysts and threat detection teams, maintaining a high standard of response quality and speed.
- Develop automation and tooling to support alerting, ticket creation, and configuration validation using Splunk, Tines, and Jira, driving operational consistency and reducing response times.
- Participate in a global on‑call rotation for perimeter-related incidents and operational escalations, demonstrating reliability and accountability in high‑stakes situations.
- Apply anomaly detection, bot management, and operational traffic analysis to identify and mitigate emerging threats, continuously improving the edge defense posture of one of the world's largest sports commerce platforms.
AI & DIGITAL CAPABILITY
We are building a future‑ready organization. This role is expected to:
- Apply AI and technology to improve efficiency, quality, and outcomes
- Use data and digital tools to inform decisions and enhance performance
- Demonstrate curiosity and adaptability in adopting new technologies and ways of working
- Contribute to a culture of innovation and continuous improvement
Required Qualifications
CAPABILITIES & EXPERIENCE YOU BRING
- 5+ years of experience in security analysis, engineering, SOC operations, or CDN/WAF management, with hands‑on experience operating Akamai CDN and WAF, Cloudflare, and other origin-based Web Application Firewalls.
- Deep understanding of HTTP/S, DNS, and TLS fundamentals, with strong knowledge of edge-layer security policies, rate limiting, IP reputation analysis, threat actor monitoring, caching behavior, and bot mitigation strategies.
- Experience working with AI/LLM tooling or agentic automation in an operational context, including an understanding of failure modes such as hallucination and silent errors, and the controls that mitigate them.
- Demonstrated ability to identify and mitigate threats through anomaly detection, bot management, and operational traffic analysis across high-traffic environments.
- Familiarity with Splunk or similar SIEM tools for analytics and detection, combined with scripting or automation experience in Python, Bash, or similar languages for operational efficiency.
- Ability to craft clear, concise, and actionable reports communicating complex technical details to executive, business, and engineering stakeholders across globally distributed teams.
- Must be able to work standard hours aligned with U.S. Eastern Time.
Preferred Qualifications
- Experience supporting large-scale, high-traffic applications or e-commerce platforms, including incident response and root cause analysis related to network or application security.
- Familiarity with automation platforms such as Tines, Torq, or other SOAR workflows.
- Experience building or governing agentic AI systems — including MCP servers, LLM tool use, prompt and skill engineering — with access scoping and audit controls.
- Golang system engineering experience, including building or integrating automation and telemetry services.
- Experience with Kubernetes and AWS cloud environments, including networking, IAM, and security services.
- Working knowledge of CI/CD pipelines and infrastructure-as-code for security configuration management.
WORK LOCATION
Hybrid: The primary place of performance of this role is the Company's office located in Hyderabad, India, subject to the Company's current hybrid work policy. This role currently requires in-office presence {{IN-OFFICE SCHEDULE — e.g. "Tuesday, Wednesday, Thursday" or "3 days per week"}}.
At Fan