At Fortis Games we aspire to make great games that bring people together while redefining how game companies work. We believe in building a sense of belonging through our games, their communities, and how we operate and treat each other. Through our game communities, we will create powerful connections and lasting memories. We will foster a culture of diversity, equity, and belonging where our diverse skills, experiences, and backgrounds impact the games we make.
We are an early but mighty organization with a leadership team of game industry veterans. There are many opportunities for you to have a big impact on the products we'll be making as well as the overall direction of the company. If you're passionate about tackling difficult problems with direct and thoughtful communication and a team-first mentality, we may be the right place for you.
About the role
Fortis Games is hiring a Senior Applications Security Engineer to manage all aspects of the company’s application cybersecurity needs.
What you'll achieve
- Work with Application Security technology stack (SAST, DAST etc.) and associated processes and procedures to reduce code vulnerabilities
- Collaborate with engineers, consultants, and leadership to address security risks and provide mitigation recommendations within the Secure Software Development Lifecycle (SSDLC).
- Perform validation of security controls to ensure consistency with compliance and industry standard methodologies (OWASP Top10)
- Track project progress through project management software such as ClickUp, Notion, and Google Suite.
- Build relationships with cross-functional teams to execute projects on time and with high quality.
- Perform audits and assessments to identify risks and create remediation plans.
- Build reports and communicate security posture to all levels of the organization.
What you’ll need to be successful
Prior experience working on an Application Security team (experience at a mobile gaming organization is a plus)Very comfortable with code analysis, automation, and scriptingExpert knowledge with architecting and implementing security solutions into SSDLC and CI / CD pipelines (GitHub Actions) in microservice environments involving KubernetesBuilding and architecting build & deploy processes, infrastructure-as-code (IaC), and CI / CD pipelinesAnalyzing critical parts of the codebase with the ability to define and review high-risk code for vulnerabilitiesExperience implementing, tuning, and helping software teams understand output from SCA, SAST, DAST toolsDefine security test strategies for complex systems, identifying vulnerabilitiesExperience with international security and privacy requirements such as GDPRKnowledge of automated attack tools and developing mitigation techniquesDetect and remedy security issues such as OWASP Top 10Firm understanding of enterprise application architectures that are highly scalable and reliable, with the expertise to secure themReasons to join us
We believe we are changing how game studios operate and are committed to making great games that create a connected communityWe're about building communities where our people belong. Fortis is a thriving environment that celebrates diversity, embraces inclusivity, and fosters growth.
Build and grow with a seasoned team of accomplished talent who have made impactful contributions both in and out of gaming.
Fortis is an Equal Opportunity Employer. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, gender expression, national origin, protected veteran status, or disability.
J-18808-Ljbffr