Назад
Company hidden
2 дня назад

Application Security Engineer (C#)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Security Engineer (C#): Assessing desktop and web applications, services, code, and builds to identify vulnerabilities and design flaws with an accent on threat modeling, automated and manual security testing, and secure software development practices. Focus on guiding developers through remediation, analyzing low-level and web vulnerabilities, and supporting bug bounty programs.

Location: Full-time, permanent, in-office position based in Dundee, Scotland

Company

hirify.global creates large-scale entertainment experiences through collaborative game development projects.

What you will do

  • Track security community trends and emerging threats affecting development studios, gaming, and players.
  • Provide technical application security guidance to developers, team leads, and producers.
  • Create and maintain threat models for applications and features to prioritize security controls.
  • Conduct automated and manual security assessments of applications and services using static analysis, dynamic analysis, and software composition analysis.
  • Drive remediation of internally and publicly identified vulnerabilities.
  • Support hirify.global' public and private bug bounty programs.

Requirements

  • 3+ years of experience identifying and remediating security bugs or flaws in a professional, academic, or research environment.
  • Strong knowledge of manual and automated application security assessments for desktop and web applications.
  • Knowledge of OWASP Top 10, web attack techniques, remediation strategies, low-level vulnerabilities, and common mitigations.
  • Understanding of networking and web technologies including WebSockets, HTTPS, TCP/IP, and UDP, plus relevant security controls.
  • Familiarity with Windows, Linux, and the software development lifecycle.
  • Practical experience with Burp Suite, Fiddler, Bruno, Procmon, Strings2, and Dependencies, plus proficiency in C# and strong communication skills.

Nice to have

  • Computer science degree or related academic background.
  • Reverse engineering, exploit research and development, and tools such as Ghidra, IDA, x64dbg, and WinDbg.
  • Scripting, process automation, secure SDLC practices, OAuth2, OIDC, and bug bounty or responsible disclosure experience.
  • Proficiency in C++ and JavaScript/TypeScript.

Culture & Benefits

  • Inclusive, highly motivated environment focused on learning and collaboration.
  • Work alongside experienced specialists on large-scale creative projects.
  • Equal opportunity workplace committed to dignity and respect.
  • Reasonable accommodations are available for qualified applicants and employees with disabilities.

Hiring process

  • Submit a CV and cover letter demonstrating the required skills.
  • If selected to proceed, a Rockstar recruiter will explain the next steps.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →