Application Security Engineer

| Remote, OR, USA | Remote
Employer Provided Salary: 150,000-210,000 Annually
Salary data is provided by the employer. Please note this is not a guarantee of compensation.
Sorry, this job was removed at 5:15 p.m. (EST) on Wednesday, May 1, 2024
Find out who's hiring in Greater NYC Area.
See all Cybersecurity + IT jobs in Greater NYC Area
By clicking Apply Now you agree to share your profile information with the hiring company.

Collectors is the leading creator of innovative technology that provides value-added services for collectors worldwide. We grade, authenticate, vault and sell millions of record-setting collectibles, all while modernizing and digitalizing the process to further our mission of helping collectors pursue their passions. We’re always on the lookout for talented people to join our growing team. Our services span collectible coins, trading cards, Funko Pops!, video games, event tickets, autographs, and memorabilia. Our subsidiaries include PSA, PCGS, WATA, Card Ladder, Goldin, and the Long Beach Expo collectibles trade show.Since our founding in 1986, we have graded and authenticated millions of items. We employ more than 1,700 people across our headquarters in Santa Ana and offices in Jersey City, Seattle, Hong Kong, Paris, Shanghai, and Tokyo. 

We’re transforming the collecting experience with technology that brings authentication, grading, and trading into the modern era. Our products are equalizing the playing field by providing tools that make complex research analytics — including pricing, scarcity reports, and historic sales data — accessible to every collector, old or new. Our engineering mission is to democratize technology while promoting innovation, collaboration, and continuous learning throughout the organization. We're seeking engineers to utilize advanced technology in agile settings, with a focus on improving the customer experience for every collector. Collectors Cybersecurity team is committed to utilize cybersecurity, risk and privacy best practices on our platforms, leveraging signal intelligence and observability at scale to protect our customers, employees and our brand.

As a “hands-on” SecurityEngineer, you will develop and deliver operational security solutions, automations, and services to keep Collector’s platforms and services secure. You will work with teams across Collectors to understand the technology team’s security and compliance needs, select and build tools, create processes and train colleagues to deliver a broad portfolio of projects and services. .We are looking for a highly skilled and motivated Application Security Engineer to join our team. The primary responsibility of the Application Security Engineer will be to ensure the security of our software applications throughout the development lifecycle. You’ll leverage practical DevOps experience to deploy and maintain security tooling (both open source and commercial) to improve our security posture. You’ll focus on wide-ranging, cross-functional application and architecture projects that improve our overall security capability and reduce security friction across the organization. You will be a go-to resource for architectural consultation and will provide guidance for both internal and external teams in secure application development and fortification practices. Understanding the methods and techniques of the organization’s security adversaries, you will find and foresee critical vulnerabilities in the operational environment and work to mitigate or eliminate them entirely. You’ll report to the VP of Cybersecurity team. 

Remote or hybrid candidates will also be considered. We believe that there is significant value in in-person collaboration. If you live within a 1 hour commuting distance to one of our offices, you will be required to be onsite most of the time. This will be discussed further as part of the recruiting process.

What You’ll Do:

  • Design, implement, and maintain secure application architectures. Provide expert guidance on security best practices for application development.
  • Collaborate with development teams to integrate security into the software development lifecycle.
  • Conduct code reviews and assist in implementing secure coding standards. Provide security guidance and support to development teams, including reviewing architecture designs, providing security training, and assisting with security-related technical challenges.
  • Stay up-to-date on emerging security threats and vulnerabilities, and recommend appropriate countermeasures and solutions.
  • Design, develop, deploy, maintain, and support cybersecurity frameworks, automations, and solutions using various commercial, open source, and internally developed tools using languages or environments such as Bash, Go, Python, Jupyter Labs, Rust, Java, VRL, etc.
  • Evolve Collector’s Universe security benchmarks, standards, and response method.
  • Provide technical expertise for security and compliance tool selection, process definition, automation creation, and staff training.
  • Establish credibility throughout the organization by earning the reputation for being a proactive leader and change agent.
  • Utilize DevOps skillet (Ansible, Terraform, Docker, Kubernetes, GitHub, CI/CD tooling) to deploy and maintain core security tooling (open source and commercial).
  • Produce, compile and maintain  technical documentation of security services for internal teams.
  • Effectively manage cross-functional internal and external team collaboration, and communications.
  • Respond to and assist with due diligence and internal / external audit requests.
  • Able to threat hunt, automate mundane security tasks and when required find the root cause of security incidents
  • Be a  subject matter expert in the organization’s infrastructure and architecture.

Who You Are:

  • 5+ years of experience in application security roles, with a focus on securing diverse application environments.
  • Proficient in secure coding practices and knowledgeable about common application security vulnerabilities.
  • Experience with application security testing tools and methodologies (SAST, DAST, penetration testing).
  • Be passionate in the pursuit of securing Collectors’ data and critical assets, staying well-informed on adversary behavior. 
  • Able to work in a remote team and be proactive rather than reactive.
  • Extensive IaaS experience (AWS-preferred, Azure, GCP), protocols, tools, and technologies. 
  • Deep understanding of current industry infrastructure standards and practices, along with a process oriented background.
  • Capable of leveraging DevOps approach to solve practical day-to-day security automation challenges using languages such as Python, Bash, Go, Ansible, GitHub, etc.
  • Thorough understanding of networking and system administration.
  • Familiarity with major compliance frameworks including PCI, NIST, ISO, SOX, with experience performing or assisting in audits.
  • Bachelors in CS, Cybersecurity or related fields and certifications such as GCIH, CISSP, CSSLP, GSSP or any other professional or Specialty AWS certification (e.g., AWS Solutions Architect Professional or Security Specialty) is good to have

The salary range for this position is $150,000-$210,000. Actual compensation varies based on a variety of non-discriminatory factors, including location, job level, experience, and skill set.

Reasons To Join Us: 

  • Health Insurance: All full-time employees are eligible to enroll in Medical, Dental, and Vision 
  • 401(K) Matching Plan: We are proud to offer a competitive 401k matching plan to our employees to support their future financial goals 
  • Vacation: All full-time employees are eligible for a flexible paid vacation 
  • Holiday Pay: All regular, full-time employees are eligible for nine company paid holidays  Employee Discounts: Employees receive discounts on select grading services for approved submissions 
  • Flexible Hours: Many of our teams offer flexible schedules with varying shifts and will work with you to accommodate your needs 
  • Fun Working Environment: Our team members are invited to participate in celebrations, holiday events, and team building activities
  • Additional BenefitsFull-time employees are eligible for fertility, commuter, and educational assistance benefits

Candidates must be authorized to work in the United States.

Collectors may use e-verify to validate your ability to work legally in the United States.

We are aware that there are instances where individuals are receiving job offers that fraudulently allege to be from Collectors or one of our business units. This type of fraud can be carried out through false websites, through fake e-mails claiming to be from the company or through social media. We never ask for personal information such as your bank account, Social Security numbers or National IDs, nor do we send or request payments for the purchase of business-related equipment. If you suspect fraud, please reach out to [email protected].

We are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, national origin, gender, sex, gender identity or expression, sexual orientation, age, citizenship, marital or parental status, disability, veteran status, or other class protected by applicable law. We believe that a team that represents a variety of backgrounds, perspectives, and skills will better service the diverse community of collectors we support.

If you require an accommodation to apply or interview with us due to a disability or special need, please email [email protected]. 

U.S. residents: for disclosures relating to personal information we collect during the employment application and recruitment process, please see our Privacy Notice for U.S. Applicants.
Explore other available openings at

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.


10 Woodbridge Center Drive, Woodbridge, NJ 07095

More Jobs at Collectors

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about CollectorsFind similar jobs like this