yandex
Страна
США
Зарплата
177 300 $ – 265 900 $
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
SeniorУдалённоПолная занятость

Senior Application Security Engineer

Оценка ИИ

Работа в Sony Interactive Entertainment (PlayStation) — это престижный бренд, работа с передовыми технологиями и очень конкурентоспособная заработная плата. Вакансия предлагает отличный пакет льгот и гибкость в выборе формата работы (удаленно).


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Высокая сложность обусловлена требованиями к глубокому техническому стеку (Java, C++, Python, Go), опыту работы с облачными архитектурами и необходимостью иметь более 7 лет опыта в ИБ. Роль подразумевает не только техническую экспертизу, но и лидерские качества для управления процессами threat modeling и внедрения DevSecOps.

Анализ зарплаты

Медиана210 000 $
Рынок165 000 $ – 250 000 $
Оценка ИИ

Предлагаемый диапазон ($177k - $265k) находится на уровне или даже выше рыночных ожиданий для Senior AppSec позиций в США, особенно учитывая возможность удаленной работы. Верхняя граница диапазона соответствует топовым технологическим компаниям (Big Tech).

Сопроводительное письмо

I am writing to express my strong interest in the Senior Application Security Engineer position at Sony Interactive Entertainment. With over 7 years of experience in information security and a solid background in software development, I have consistently demonstrated my ability to lead security initiatives and integrate robust security practices into the SDLC. My expertise in threat modeling, cloud-native architectures (AWS/Kubernetes), and modern CI/CD automation aligns perfectly with PlayStation's commitment to securing its innovative gaming infrastructure.

Throughout my career, I have successfully partnered with engineering teams to balance business agility with rigorous security requirements. I am particularly drawn to this role because it combines deep technical challenges with the opportunity to mentor others and influence security culture at a global scale. I am eager to bring my proactive leadership and 'attacker mindset' to the Product Security team to help protect the products and services that millions of players enjoy worldwide.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в sonyinteractiveentertainmentglobal уже сейчас

Присоединяйтесь к команде PlayStation и защищайте игровую экосистему мирового уровня — подайте заявку сегодня!

Описание вакансии

Why PlayStation?

PlayStation isn’t just the Best Place to Play — it’s also the Best Place to Work. Today, we’re recognized as a global leader in entertainment producing The PlayStation family of products and services including PlayStation®5, PlayStation®4, PlayStation®VR, PlayStation®Plus, acclaimed PlayStation software titles from PlayStation Studios, and more.

PlayStation also strives to create an inclusive environment that empowers employees and embraces diversity. We welcome and encourage everyone who has a passion and curiosity for innovation, technology, and play to explore our open positions and join our growing global team.

The PlayStation brand falls under Sony Interactive Entertainment, a wholly-owned subsidiary of Sony Group Corporation.

Do you want to help bring PlayStation technology to a worldwide audience? Are you passionate about securing infrastructure that constantly pushes the boundary of the gaming industry? Are you ready to work with innovative technology, forward-thinking engineers, and a passionate security team? If so, join us!

The role is a senior-level application security position combining strong technical expertise with leadership, initiative, and collaboration. You will provide strategic mentorship and hands-on support in designing, implementing, and testing secure solutions that strengthen PlayStation products and services.

As a technical leader within Product Security, you’ll guide practices and influence multiple teams to embed security throughout the software development lifecycle.

Key Responsibilities

  • Lead security initiatives across the SDLC and improve development practices through scalable automation.
  • Conduct and guide threat modeling and security requirements early in design phases.
  • Partner with developers, architects, and product managers to align business goals with security needs.
  • Lead security architecture and code reviews for distributed systems.
  • Perform hands-on testing to identify risks and drive remediation with vulnerability and incident response teams.
  • Advance the Product Security strategy through multi-functional initiatives and cultural influence.
  • Balance business and security risks through technically grounded, pragmatic recommendations.
  • Translate lessons learned into reusable organizational assets that enhance overall security posture.
  • Mentor engineers and practitioners, promoting secure-by-default thinking and shared accountability.
  • Demonstrate proactive leadership, coordinating teams to deliver measurable security and business impact.

Qualifications

  • 7+ years in information security and 3+ years in software development.
  • Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent.
  • Effective communication and leadership abilities; capable of influencing technical and non-technical collaborators including management.
  • Dedicated and proactive, finding opportunities and leading initiatives independently.
  • Deep understanding of enterprise and cloud-native architectures and their secure design.
  • Expertise in network and web protocols (TCP/IP, TLS, HTTPS, OAuth 2.0, OpenID Connect) and common attack vectors.
  • Proven expertise in guiding security development and code evaluations and providing actionable, risk-based recommendations.
  • Skilled in multiple programming languages (e.g., Java, C/C++, JavaScript, Python) and mitigating vulnerabilities such as OWASP Top 10.
  • Experience integrating SAST, DAST, and dependency scanning into CI/CD pipelines.
  • Familiar with Agile, DevOps, and modern delivery practices.
  • Hands-on experience with cloud technologies (AWS, Azure, GCP, Kubernetes, service mesh, CDN) including secure configuration and identity management.

Desired Experience

  • Strong analytical and problem-solving skills with an attacker perspective — able to anticipate and simulate real-world attacks.
  • Experience in penetration testing, automated testing, or testing frameworks (JUnit, pytest, REST Assured, Playwright).
  • Security certifications preferred (GIAC, OSCP, CEH, CISSP, CCSP, or equivalent).

Please refer to our Candidate Privacy Notice for more information about how we process your personal information, and your data protection rights.

At SIE, we consider several factors when setting each role’s base pay range, including the competitive benchmarking data for the market and geographic location. 

Please note that the base pay range may vary in line with our hybrid working policy and individual base pay will be determined based on job-related factors which may include knowledge, skills, experience, and location. 

In addition, this role is eligible for SIE’s top-tier benefits package that includes medical, dental, vision, matching 401(k), paid time off, wellness program and coveted employee discounts for Sony products. This role also may be eligible for a bonus package. Click here to learn more.

This is a flexible role that can be remote, with varying pay ranges based on geographic location. For example, if you are based out of Seattle, the estimated base pay range for this role is listed below.

$177,300—$265,900 USD

Please note, Sony Interactive Entertainment conducts background checks at the offer stage for all new employees (which may include criminal background checks for some roles) and will need to process personal information to support these checks.

Please refer to our Candidate Privacy Notice for more information about what personal information we collect, how we use it, who we share it with, and your data protection rights.

Equal Opportunity Statement:

Sony is an Equal Opportunity Employer. All persons will receive consideration for employment without regard to gender (including gender identity, gender expression and gender reassignment), race (including colour, nationality, ethnic or national origin), religion or belief, marital or civil partnership status, disability, age, sexual orientation, pregnancy, maternity or parental status, trade union membership or membership in any other legally protected category.

We strive to create an inclusive environment, empower employees and embrace diversity. We encourage everyone to respond.

PlayStation is a Fair Chance employer and qualified applicants with arrest and conviction records will be considered for employment.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • Java
  • C++
  • JavaScript
  • Python
  • AWS
  • Kubernetes
  • Docker
  • OAuth 2.0
  • OpenID Connect
  • SAST
  • DAST
  • CI/CD
  • Threat Modeling
  • DevSecOps
  • TCP/IP
  • TLS
  • HTTPS

Возможные вопросы на собеседовании

Проверка навыков стратегического планирования безопасности на ранних этапах разработки.

Расскажите о вашем опыте внедрения процессов моделирования угроз (threat modeling) в крупных распределенных системах. Как вы приоритизируете риски?

Оценка практического опыта автоматизации безопасности в CI/CD.

Какие инструменты SAST/DAST вы считаете наиболее эффективными для масштабируемой автоматизации и как вы боретесь с большим количеством ложноположительных срабатываний?

Проверка знаний в области безопасности современных облачных сред.

Опишите ваш подход к обеспечению безопасности в среде Kubernetes. На каких аспектах сетевой безопасности и управления идентификацией (IAM) вы фокусируетесь в первую очередь?

Оценка лидерских качеств и умения находить компромиссы.

Приведите пример ситуации, когда требования безопасности конфликтовали с бизнес-целями или сроками выпуска продукта. Как вы разрешили этот конфликт?

Проверка понимания современных протоколов аутентификации.

С какими наиболее распространенными уязвимостями в реализациях OAuth 2.0 и OpenID Connect вы сталкивались и как предлагали их устранять?

Похожие вакансии

HaaS Platform
от 400 000 ₽

Pentester (Offensive Security)

SeniorУдалённоРоссия
Pentesting · Linux · Python · Bash · Burp Suite · NMAP · OWASP Top 10 · Network Security · Red Team · Vulnerability Assessment · Go · JavaScript · C++
+13 навыков
СберАвто
200 000 ₽ – 350 000 ₽

Специалист по информационной безопасности

SeniorУдалённоРоссия
Fortinet · Palo Alto Networks · Check Point · ELK stack · Splunk · Cisco Prime · MaxPatrol · ArcSight · SolarWinds · VPN · PKI · OSPF · EIGRP · BGP · Kaspersky Security Center · Cortex XDR · Solar Dozor · Ansible · Terraform · Vulnerability Management · Patch Management
+21 навыков
СберАвто
Не указана

Application security specialist

SeniorУдалённоРоссия
SAST · DAST · IAST · RASP · SCA · WAF · SSDLC · DevSecOps · OWASP · Linux · Python · Go · Threat Modeling
+13 навыков
isccareers
150 000 $ – 180 000 $

Senior Cybersecurity Engineer

SeniorУдалённоСША
AWS · Terraform · Python · IAM · KMS · VPC · GuardDuty · SIEM · CloudFormation · GitHub Actions · GitLab · Network Security · Endpoint Security · Vulnerability Management · Container Security
+15 навыков
gongio
148 000 $ – 225 000 $

Sr. Manager, Identity & Access Management

SeniorУдалённоСША
Okta · IAM · SSO · MFA · RBAC · ABAC · SaaS · SOC 2 · ISO 27001 · SOX · Zero Trust · Google Workspace · Slack · Salesforce · Automation
+15 навыков
redcellpartners
175 000 $ – 215 000 $

Senior DevSecOps / Platform Security Engineer (AWS + Kubernetes)

SeniorУдалённоСША
AWS · Kubernetes · Docker · Terraform · Python · Go · Bash · CI/CD · IAM · SAST · SCA · CloudFormation · CDK · Pulumi · NIST · SRE
+16 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

Страна
США
Зарплата
177 300 $ – 265 900 $