Application Security Engineer

Enjoy Gaming LLC

United States

Hybrid

USD 120,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Salary in EUR
Remote work
Medical insurance
Paid time off
Dev & cert support
Well-being perks

Job summary

Enjoy Gaming LLC is seeking an experienced Application Security Engineer to serve as the technical guardian for our games and platforms, conducting hands-on vulnerability hunting across web and desktop apps and collaborating with engineers to build resilient systems.

You will own security pipelines, perform tests on new platform features, and work with Architects, Studio, Slots, and Platform Developers to drive remediation and secure design.

Qualifications

  • 5+ years of Application Security Engineer experience.
  • Background in red teaming, penetration testing, application security, and software development.
  • Able to independently find vulnerabilities in web and desktop applications, triage them, and, where needed, fix them
  • Solid grounding in data structures, algorithms, and systems architecture designs.
  • Experience testing with Kafka/Redis/BullMQ/PubSub as message/streaming tools.
  • Codes independently, can navigate unfamiliar web application frameworks.
  • Experience using AI tools to aid with vulnerability hunting.
  • Comfortable talking to developers and turning findings into practical, actionable advice.

Responsibilities

  • Own and maintain our application security pipelines: SCA (Github/Trivy), DAST (Nessus, Acunetix, Wiz), and SAST.
  • Triage findings from these tools and drive them to remediation.
  • Perform penetration tests on new platform features, new internal applications, and new slots and live games.
  • Run basic red team activities, including leaked credential reviews and external attack surface audits.
  • Review complex auth flows with various third parties for cryptographic and security issues.
  • Review/Triage application code for security issues ( 85% NestJS / 15% .NET )
  • Own security risk in existing code and applications.
  • Act as the application-level security expert during incident response and be ready to deliver hotfixes yourself when needed
  • Prepare our quarterly SAST/DAST vulnerability scan reports for stakeholders/regulators and take part in audit meetings.
  • Own the Secure Coding and Application Security areas of our ISMS.
  • Meet regularly with development teams, learn about upcoming features early, and advise on secure design.

Skills

Application security
Red teaming
Software development
Vulnerability hunting
Data structures
Developer communication

Tools

Kafka
Redis
BullMQ
PubSub
Trivy
Nessus
Acunetix
Wiz

Job description

Enjoy Gaming is a software provider focused on creating high-quality digital entertainment experiences, including Slots and Live Games. Our team brings together experienced professionals in game development, product, and design, driven by a passion for innovation and quality. At Enjoy Gaming , we value ownership , excellence , and drive . These principles shape the way we work, collaborate, and build products. Join us and be part of our innovative journey in the gaming world! We're looking for a sharp Application Security Engineer to join our team and act as the technical guardian for our games and platforms. If you have an attacker's mindset but know how to build and defend alongside engineering teams, this role is for you. In this position, you won't just be sending reports to the teams or management. You'll be diving deep into web and desktop applications, hunting down game-level vulnerabilities, and collaborating closely with our Architects, Studio, Slots, and Platform Developers to engineer more resilient systems.

Requirements
  • 5+ years of Application Security Engineer experience
  • Background in red teaming, penetration testing, application security, and software development
  • Able to independently find vulnerabilities in web and desktop applications, triage them, and, where needed, fix them
  • Solid grounding in data structures, algorithms, and systems architecture designs
  • Previous security testing experience with Kafka/Redis/BullMQ/PubSub as message/streaming tools
  • Codes independently, can navigate unfamiliar web application frameworks
  • Experience using AI tools to aid with vulnerability hunting
  • Comfortable talking to developers and turning findings into practical, actionable advice
Nice to have
  • CRTO, OSCP, or OSWE certifications or similar
  • Knowledge of Cloud Platforms (GCP/AWS)
  • Understanding of CI/CD pipelines
  • Hands-on experience with Trivy, Nessus, Acunetix, or Wiz
  • Experience in iGaming or another regulated industry
What You Will Do
  • Own and maintain our application security pipelines: SCA (Github/Trivy), DAST (Nessus, Acunetix, Wiz), and SAST
  • Triage findings from these tools and drive them to remediation
  • Perform penetration tests on new platform features, new internal applications, and new slots and live games
  • Run basic red team activities, including leaked credential reviews and external attack surface audits
  • Review complex auth flows with various third parties for cryptographic and security issues
  • Review/Triage application code for security issues ( 85% NestJS / 15% .NET )
  • Own security risk in existing code and applications
  • Act as the application-level security expert during incident response and be ready to deliver hotfixes yourself when needed
  • Prepare our quarterly SAST/DAST vulnerability scan reports for stakeholders/regulators and take part in audit meetings
  • Own the Secure Coding and Application Security areas of our ISMS
  • Meet regularly with development teams, learn about upcoming features early, and advise on secure design
What We Offer
  • Competitive Salary in EUR : with annual performance reviews to recognize your growth
  • Flexible Remote Work : balance productivity and comfort
  • Comprehensive Benefits : including medical insurance, psychologist support, and Polish, Slovak-speaking clubs
  • Generous Paid Time Off : 20 working days of paid vacation, plus 10 additional paid days off, 10 paid sick days, and all national holidays in your country
  • Professional Development Support : reimbursement for courses, trainings, and certifications
  • Well-being Perks: support for language classes, sports, massages, or life coaching

Please note that feedback on your application will be provided within two weeks if a positive decision is made regarding your candidacy.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Softswiss • Town of Poland (NY)

On-site
USD 120,000 - 150,000
Private health insurance
Sports benefits
Free English lessons (online)
+3
General QA Engineer (gambling)
General QA Engineer (gambling)

Enjoy Gaming LLC • United States

Remote
USD 68,000 - 113,000
Competitive Salary
Flexible Remote Work
Comprehensive Benefits
+3
Senior Security Engineer (Cyber Defense)
Senior Security Engineer (Cyber Defense)

OpenBet • Kentucky

Hybrid
USD 120,000 - 160,000
Hybrid office
Flexible working
Career development
+1
Product Security Engineer
Product Security Engineer

GoMining • Town of Poland (NY)

On-site
USD 120,000 - 190,000
Professional growth support
Flexible hours
Vacation and holidays
Product Security Engineer
Product Security Engineer

GoMining • Georgia

On-site
USD 120,000 - 180,000
Professional growth
Remote or hybrid format
Vacation and holidays
+3
Remote Game Security Engineer: App Sec & Pentesting
Remote Game Security Engineer: App Sec & Pentesting

Enjoy Gaming LLC • United States

Hybrid
USD 120,000 - 190,000
Salary in EUR
Remote work
Medical insurance
+3
penetration tester in iGaming
penetration tester in iGaming

HireHi • United States

Remote
USD 110,000 - 180,000
Оплачиваемый отпуск
Больничные
Возможность профессионального роста
+1
Senior Application Security Engineer ID87004
Senior Application Security Engineer ID87004

AgileEngine, LLC. • Boston (MA)

On-site
USD 140,000 - 200,000
Professional growth
Competitive USD-based compensation
Flextime
Slots Game Mathematician (Junior-to-Middle)
Slots Game Mathematician (Junior-to-Middle)

Enjoy Gaming LLC • United States

Remote
USD 70,000 - 120,000
Flexible Remote Work
Medical insurance
Professional development support
+1
Staff Application Security Engineer
Staff Application Security Engineer

Jobgether SRL • United States

Remote
USD 183,000 - 215,000
Equity
Annual bonus potential
Remote work within United States