At a Glance
- Tasks: Identify security flaws in software designs and collaborate with talented teams.
- Company: Join Rockstar Games, a leader in world-class entertainment experiences.
- Benefits: Enjoy a competitive salary, inclusive culture, and opportunities for growth.
- Other info: Dynamic studio environment in Dundee with excellent career advancement opportunities.
- Why this job: Make a real impact on gaming security while working on exciting projects.
- Qualifications: 3+ years in application security with strong knowledge of vulnerabilities.
The predicted salary is between 45000 - 60000 £ per year.
At Rockstar Games, we create world-class entertainment experiences. Become part of a team working on some of the most rewarding, large-scale creative projects to be found in any entertainment medium - all within an inclusive, highly-motivated environment where you can learn and collaborate with some of the most talented people in the industry. Rockstar is on the lookout for a passionate Application Security Engineer who possesses a passion for diving into complex software designs to identify security flaws and vulnerabilities. This is a full-time, permanent and in-office position based in Rockstar’s unique game development studio in the heart of Dundee, Scotland.
WHAT WE DO
The Rockstar Games Application Security team partners with numerous development teams across the company to incorporate security practices throughout the software development lifecycle. We strive to understand the threat landscape affecting our development studios, the gaming industry, and the world at large to define secure development standards and guidelines to safeguard our business and protect our players. We independently assess our application code and builds through various techniques (static analysis, dynamic analysis, software composition analysis, etc.) to identify potential vulnerabilities and design flaws and work with development teams to remediate.
RESPONSIBILITIES
- Track trends in the security community and stay abreast of emerging threats.
- Provide technical security guidance to developers, team leads and producers.
- Create and maintain threat models of applications and features to systematically understand how they can be attacked to prioritize control development.
- Conduct automated and manual security assessments of applications and services.
- Drive remediation efforts behind internally and publicly identified vulnerabilities.
- Support maintaining Rockstar Games’ public and private bug bounty programs.
REQUIREMENTS
- 3+ years of experience working in a professional, academic or research environment identifying and remediating security bugs/flaws.
- Strong knowledge of the principles and techniques for both manual and automated application security assessments of desktop and web applications.
- Good knowledge of common web security vulnerabilities (e.g., OWASP Top 10), attack techniques and remediation tactics/strategies.
- Good understanding of common low-level vulnerabilities (e.g. use-after‑free and buffer overflows) and common mitigations.
- Good understanding of networking and web technologies (e.g. WebSockets, HTTPS, TCP/IP, UDP) and security controls relevant to them.
- Familiarity with Windows and Linux operating systems fundamentals.
- Familiarity with the software development lifecycle (SDLC) and working knowledge of components to secure the SLDC.
- Practical experience with client network traffic testing tools and techniques e.g., Burp Suite, Fiddler and Bruno.
- Proficiency in C#.
- Excellent communication skills.
PLUSES
Please note that these are desirable skills and are not required to apply for the position.
- BSc/MSc in a computer science or related field.
- Background in reverse engineering and exploit research.
Application Security Engineer employer: Rockstar Games
Contact Detail:
Rockstar Games Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Application Security Engineer
✨Tip Number 1
Network, network, network! Get out there and connect with folks in the gaming and security industries. Attend meetups, conferences, or even online webinars. You never know who might have a lead on your dream job at Rockstar!
✨Tip Number 2
Show off your skills! Create a portfolio that highlights your experience with application security assessments and any cool projects you've worked on. This is your chance to demonstrate your passion and expertise to potential employers.
✨Tip Number 3
Don’t just apply blindly! Tailor your approach for Rockstar by researching their games and security practices. Mention specific projects or security challenges they face in your conversations to show you’re genuinely interested.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re serious about joining the Rockstar team. Let’s get you that Application Security Engineer role!
We think you need these skills to ace Application Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Application Security Engineer role. Highlight your experience with security assessments and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Share your passion for application security and why you want to join Rockstar Games. Let us know how your background makes you a great fit for our team.
Showcase Your Skills: Don’t forget to mention specific tools and techniques you’ve used in your previous roles, like Burp Suite or Fiddler. We love seeing practical experience, so be sure to include any relevant certifications or training too!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. We can’t wait to see what you bring to the table!
How to prepare for a job interview at Rockstar Games
✨Know Your Security Fundamentals
Make sure you brush up on your knowledge of common web security vulnerabilities, especially the OWASP Top 10. Be ready to discuss how you've identified and remediated these issues in past roles, as this will show your practical experience and understanding of application security.
✨Familiarise Yourself with the SDLC
Since the role involves working within the software development lifecycle, it’s crucial to understand how security fits into each phase. Prepare examples of how you've integrated security practices into development processes in your previous jobs.
✨Show Off Your Technical Skills
Be prepared to talk about your experience with tools like Burp Suite or Fiddler. If you have practical examples of conducting security assessments, share those stories! This will demonstrate your hands-on expertise and problem-solving abilities.
✨Stay Updated on Emerging Threats
The security landscape is always changing, so make sure you’re aware of the latest trends and threats in the industry. Bring up recent news or developments during your interview to show that you’re proactive and engaged in the field.