Senior Appsec Engineer

at  theScore

Toronto, ON, Canada -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate27 Dec, 2024Not Specified30 Sep, 20245 year(s) or aboveGood communication skillsNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

theScore, a wholly-owned subsidiary of PENN Entertainment , empowers millions of sports fans through its digital media and sports betting products. Its media app ‘theScore’ is one of the most popular in North America, delivering fans highly personalized live scores, news, stats, and betting information from their favorite teams, leagues, and players. theScore’s sports betting app ‘theScore Bet Sportsbook & Casino’ delivers an immersive and holistic mobile sports betting and iCasino experience. theScore Bet is currently live in the Company’s home province of Ontario. theScore also creates and distributes innovative digital content through its web, social and esports platforms.
About the Role & Team
As part of the theScore team, you will be working with a team of smart, friendly, and dedicated Engineers, Product Managers and Designers determined to deliver some of the best apps the market has to offer. We want you to be challenged and to get the full experience of what it is like to work at theScore! We are looking for a Senior Application Security Engineer to join our Application Security team. Our team takes a hands-on approach to solving complex security problems in conjunction with writing policies and procedures. You will work cross-functionally across the entire engineering organization. You will share your unique expertise with the team and be able to grow and expand that expertise. We have a wide variety of security challenges, and we are looking for someone who is excited to tackle them. Come join us and help us build the best sports apps in the world!
About the Work
Collaborate with release and change management, SRE, Engineering, and compliance teams
Work with security/internal/external/state auditors to demonstrate compliance
Maintain a working knowledge of OWASP top 10 and MITRE top 25 CWE
Develop standards for security tooling focused on the application layer (SAST, DAST, SCA, MAST, RASP)
Build/implement secure artifact workflows in the SDLC to ensure governance and compliance standards are being met
Create technical approaches to implementing Application Security control technologies
Contribute to theScore’s Application Security program to support our continued growth
Define and report on security metrics, their delivery, and improvements
Work with service teams to conduct threat models of theScore’s internal and customer facing applications
Assist service teams in understanding and remediating security findings (code bashing)
Other duties as required.
About You
5+ years of Application Security or DevOps experience
5+ years of GCP or AWS experience
Experience with software supply chain security (SBOMs, Artifact Signing, Attestations)
Programming experience in Python or Go
Experience with implementing security tooling in CI/CD
Experience creating complex CI/CD workflows (building for multiple architectures, local caching, making automated source code changes based on workflow output)
Experience supporting RESTful APIs and securing containerized workloads (GKE, EKS)
Experience working in regulated environments (PCI-DSS, SOC 2, etc.)
Experience leading technical projects and seeing them through to completion
Excellent communication skills and a history of working well with other teams
Optional: Experience maintaining Kubernetes clusters, or managing Kubernetes deployments
What We Offer
Competitive compensation package.
Fun, relaxed work environment.
Education and conference reimbursements.
Parental leave top
Opportunities for career progression and mentoring others.

Responsibilities:

Please refer the Job description for details


REQUIREMENT SUMMARY

Min:5.0Max:10.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Software Engineering

Graduate

Proficient

1

Toronto, ON, Canada