At a Glance
- Tasks: Join a dynamic team to secure innovative gaming projects and protect players.
- Company: Rockstar Games, a leader in the entertainment industry with a collaborative culture.
- Benefits: Competitive salary, inclusive environment, and opportunities for professional growth.
- Why this job: Make a real impact on game security while working with talented professionals.
- Qualifications: 5+ years in application security and strong knowledge of vulnerabilities.
- Other info: Exciting career growth in a state-of-the-art studio in Edinburgh.
The predicted salary is between 36000 - 60000 £ per year.
Become part of a team working on some of the most rewarding, large-scale creative projects to be found in any entertainment medium - all within an inclusive, highly-motivated environment where you can learn and collaborate with some of the most talented people in the industry. Rockstar is on the lookout for talented Senior Application Security Engineer who possess a passion for diving into complex software designs to identify security flaws and vulnerabilities. This is a full-time, permanent and in-office position based in Rockstar's state-of-the-art game development studio in Edinburgh, Scotland.
WHAT WE DO
The Rockstar Games Application Security team partners with numerous development teams across the company to incorporate security practices throughout the software development lifecycle. We strive to understand the threat landscape affecting our development studios, the gaming industry, and the world at large to define secure development standards and guidelines to safeguard our business and protect our players. We independently assess our application code and builds through various techniques (static analysis, dynamic analysis, software composition analysis, etc.) to identify potential vulnerabilities and design flaws and work with development teams to remediate.
RESPONSIBILITIES
- Track trends in the security community and keep abreast of emerging threats.
- Provide technical security guidance to developers, team leads and producers.
- Engage development teams to identify security requirements for new products and features while ensuring other requirements don't introduce an unintended security impact.
- Develop threat models of new applications and features to systematically understand how they can be attacked in order to prioritise control development.
- Conduct automated and manual security assessments.
- Drive remediation efforts behind internally and publicly identified vulnerabilities.
- Support maintaining Rockstar Games' public and private bug bounty programs.
REQUIREMENTS
- 5+ years of experience working in a professional, academic or freelance environment (e.g. bug bounty) identifying and remediating security bugs/flaws.
- Extensive knowledge of common software security vulnerabilities (e.g., OWASP Top 10), attack techniques and remediation tactics/strategies.
- Experience working in or establishing secure CI/CD pipelines and the concept of shifting security left in the SDLC.
- Working knowledge of the principles and techniques for both manual and automated application security assessments.
- Understanding of a variety of web technologies including: JSON, WebSockets, HTTP/2, DNS, RESTful APIs.
- Experience in results-oriented, retail driven environment with strict deadlines and ship dates.
- Strong written and verbal communication skills.
PLUSES
- Experience with scripting and process automation.
- An understanding of effective practices for securing the SDLC that considers developer experience, sustainability and compliments release velocity.
- Experience with penetration testing and offensive security tools and techniques, e.g., Burp Suite, Metasploit, Wireshark.
- Industry certifications preferred (CISSP, GSEC, OSCP, CEH, etc.).
- BSc/MSc in a computer science or related field.
HOW TO APPLY
Please apply with a CV and cover letter demonstrating how you meet the skills above. If we would like to move forward with your application, a Rockstar recruiter will reach out to you to explain next steps and guide you through the process. Rockstar is committed to creating a work environment that promotes equal opportunity, dignity and respect. In line with this commitment, Rockstar will provide reasonable accommodations to qualified job applicants with disabilities during the recruitment process in order for such applicants to be considered for the position for which they are applying, as well as to qualified employees to enable them to perform the essential functions of their roles. If you need more information about Rockstar's reasonable accommodation policies or process, or need to request an accommodation, please contact the Human Resources Department. If you've got the right skills for the job, we want to hear from you. We encourage applications from all suitable candidates regardless of age, disability, gender identity, sexual orientation, religion, belief, race, or any other protected category.
Senior Application Security Engineer in Edinburgh employer: Rockstar Games
Contact Detail:
Rockstar Games Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Application Security Engineer in Edinburgh
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current Rockstar employees on LinkedIn. A personal introduction can make all the difference when you're applying for that Senior Application Security Engineer role.
✨Tip Number 2
Show off your skills! If you’ve got a portfolio of projects or contributions to open-source security tools, make sure to highlight them during interviews. We want to see how you tackle real-world security challenges!
✨Tip Number 3
Prepare for technical interviews by brushing up on your knowledge of OWASP Top 10 and common vulnerabilities. We love candidates who can discuss their experience with security assessments and remediation strategies confidently.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining our team at Rockstar.
We think you need these skills to ace Senior Application Security Engineer in Edinburgh
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to highlight your experience in application security. We want to see how your skills align with the requirements listed in the job description, so don’t hold back on showcasing your relevant projects and achievements!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about application security and how your background makes you a perfect fit for our team. Let’s see your personality come through while keeping it professional.
Showcase Your Knowledge: We love seeing candidates who are up-to-date with the latest trends in security. Mention any recent developments or tools you’ve worked with that relate to the role. This shows us you’re proactive and engaged in the field!
Apply Through Our Website: Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the position. Plus, it’s super easy – just follow the prompts and you’ll be all set!
How to prepare for a job interview at Rockstar Games
✨Know Your Security Fundamentals
Make sure you brush up on the OWASP Top 10 and other common vulnerabilities. Being able to discuss these in detail will show your depth of knowledge and passion for application security.
✨Showcase Your Experience
Prepare specific examples from your past work where you've identified and remediated security flaws. Use the STAR method (Situation, Task, Action, Result) to structure your responses clearly.
✨Understand the Company’s Threat Landscape
Research Rockstar Games and their projects. Familiarise yourself with the types of threats they might face in the gaming industry, and be ready to discuss how you would approach securing their applications.
✨Communicate Effectively
Since strong communication skills are a must, practice explaining complex security concepts in simple terms. This will help you connect with developers and team leads during the interview.