Application Security Analyst II

1 Month ago • 3-5 Years

About the job

SummaryBy Outscal

This role requires 3+ years of experience in application security, with expertise in CWE Top 25 and OWASP Top 10 vulnerabilities. You'll investigate security incidents, implement proactive monitoring, and partner with developers to fix issues. Knowledge of log aggregation platforms and vulnerability disclosure programs is essential.

We are looking for an Application Security Analyst to help us actively defend EA’s products, data, and players. This remote-friendly role will report to the Senior Manager of the Verification and Pentest (VAP) team within the Secure Product Engineering and Anti-cheat Response (SPEAR) organization. You will work with a diverse set of timezones working most closely with a Europe-based counterpart.

Responsibilities

  • You will triage and investigate cases reported through our Coordinated Vulnerability Disclosure (CVD) program and partner with developers to guide remediations

  • You will use your application security knowledge to identify proactive monitoring opportunities to detect future abuse across our applications

  • You will investigate daily alerts, search logs for Indicators of Compromise (IoCs) and create or enhance detections

  • You will identify systemic vulnerability trends and patterns, and engage EA security teams to prevent these at scale

  • You will correctly rate the security impact of discovered vulnerabilities, articulate remediation steps to product teams, and report impact to leadership

  • You will deliver talks and presentations within EA, including internal conferences

Qualifications

  • At least three years hands-on experience of full stack Application Security reviews that span multiple platforms and programming languages

  • Experience discovering and remediating CWE Top 25 and OWASP Top 10 vulnerabilities

  • Experience querying logs and setting up detections through a log aggregation platform, such as Grafana

  • Experience handling coordinated vulnerability disclosure programs

  • Hands-on experience with security assessment tools and understanding of their applicability and limitations in different assessment scenarios

  • Knowledge in multiple of the following domains and expertise in at least one: Networking, OS Internals, Cloud Architecture, Web Frameworks, or Mobile Architecture

  • Knowledge of best practices and common pitfalls in one or more of: cryptography, authentication mechanisms, authorization controls and network configurations

  • Knowledge of multiple of the following exploitation techniques and expertise in at least one: XSS, SQLi, IDOR, MitM, DoS, BOF, or ROP

  • Excellent verbal and written English skills

  • Bachelor’s degree or Master’s Degree in Computer Science or Information Security, or equivalent industry experience

About Electronic Arts

Everything we do is designed to inspire the world to play. Through our cutting-edge games, innovative services, and powerful technologies, we bring worlds with infinite possibilities to millions of players and fans around the globe.

We’re looking for collaborative and inclusive people with diverse perspectives who will enrich our culture and challenge us. We take a holistic approach with our benefits program, focusing on physical, emotional, financial, career, and community wellness to support our people through every chapter of life. We provide comprehensive benefit packages and support for a balanced life with paid time off and new parent leave, plus free games and so much more. Our goal is to provide a safe and respectful workplace that empowers you to thrive in both work and life.

Electronic Arts is an equal opportunity employer. All employment decisions are made without regard to race, color, national origin, ancestry, sex, gender, gender identity or expression, sexual orientation, age, genetic information, religion, disability, medical condition, pregnancy, marital status, family status, veteran status, or any other characteristic protected by law. We will also consider employment qualified applicants with criminal records in accordance with applicable law. EA also makes workplace accommodations for qualified individuals with disabilities as required by applicable law.

About The Company

We exist to inspire the world to play. We put our people first, and we thrive off their diversity in our innovative technology and immersive storytelling. We’re doing the work to give everyone the space to be their full selves while giving back to our community, no matter where you’re working from. We’re looking for problem-solvers, game-changers, innovators, dreamers, doers—people that are ready to move the needle and transform the future of gaming. Join us.

Shanghai, China (On-Site)

England, United Kingdom (On-Site)

Telangana, India (On-Site)

Shanghai, China (On-Site)

Telangana, India (Hybrid)

View All Jobs

Similar Jobs

Playtech - T1 Security Analyst

Sportyvna Square, Kyiv, Ukraine (On-Site)

Ubisoft - Physical Security Analyst

Bucharest, Romania (Hybrid)

Smarsh - Information Security Analyst I

California, United States (Hybrid)

Accurate - Information Security Analyst

Telangana, India (Hybrid)

USE Insider - Security Analyst - Blue Team

İstanbul, Türkiye (Remote)

Nielsen - Lead Security Analyst

Karnataka, India (Hybrid)

Similar Skill Jobs

PlayerUnknown Productions - IT Manager (Part-Time)

North Holland, Netherlands (Hybrid)

ByteDance - Data Center System Software Engineering Manager

California, United States (On-Site)

Garena - Esports Operations

Casablanca-Settat, Morocco (On-Site)

Zynga - Product Manager 2

Karnataka, India (On-Site)

PlayStation Global - Senior Site Reliability Engineer

California, United States (On-Site)

Jobs in Austin, Texas, United States

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug