Warner Bros. Discovery
New York, NY
Hybrid

Application Security Engineer

Sorry, this job was removed at 12:50 p.m. (EST) on Thursday, February 25, 2021
Find out who's hiring in Greater NYC Area.
See all Cybersecurity + IT jobs in Greater NYC Area
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

As Discovery's portfolio continues to grow – around the world and across platforms – the Product Security team is building the people, technology and process to partner with Discovery’s direct-to-consumer, media technology, and IT systems to meet the world-class standard for which Discovery is known. 
 
Within the broader Information Security team, there has never been a busier or more urgent time to obtain the best talent we can for a function so critical to Discovery. The Information Security Team at Discovery is a growing group of cybersecurity professionals, that are using the latest tools and resources to protect the assets from our internal infrastructure to the shows we broadcast across the globe on Discovery Channel, Animal Planet, Discovery ID, TLC, EuroSport and more.  From the US to Singapore, India to LA, we are tasked with protecting, training, and implementing the best of the best in tools, resources, monitoring, threat detection, and more.

The Role

As an Application Security Engineer, you will work on a cross-functional Product Security team supporting Discovery’s Information Security and Direct-to-Consumer (DTC) organizations. This is a key role within the Information Security organization that will be focused on application security for our streaming media service and other supporting applications. The Application Security Engineer will be a valued partner to development and engineering teams to ensure secure architectures, patterns, and solutions are created and maintained. This person will work closely with Discovery’s DTC product teams and will build a community of practice with developers within DTC to support effective communication and collaboration. This person will be the subject matter expert for secure code development and will work with various application engineering teams to develop alternatives for remediation of vulnerabilities.

 

If you:

  • are passionate about web and mobile application security
  • want to work in an international, face-paced company
  • want to learn how to secure consumer-facing applications
  • would like to be a part of an experienced team of practitioners opened to sharing their knowledge
  • want to learn how to implement security into SDLC (CI\CD)
  • want to have a visible impact on the security of a large suite of products

 

Join us! 

Key Areas of Responsibility

  • Be creative and solve problems with solutions that can scale
  • Run, maintain, and utilize security tools for the Appsec program
  • Review and contribute to application designs and solutions
  • Collaborate with development teams to ensure secure coding best practices are followed
  • Assist with code reviews
  • Perform security and risk assessments for consumer-facing applications and services
  • Identify and define application security requirements and security baselines 
  • Work collaboratively and proactively across the organization with Product Teams on Application Security initiatives
  • Communicate Findings/Remediation Guidance/Security Design Patterns to development teams
  • Maintain knowledge of current and emerging secure application technologies/products/trends
  • Actively and continuously share role-specific knowledge with team members and product teams

Required Qualifications

  • 3+ years of experience with application security/penetration testing work
  • Thorough understanding of common security risks in web/mobile applications and web APIs
  • Experience building and deploying solutions with modern programming languages in a cloud environment
  • Experience in code reviews, business logic assessments, and application security testing
  • Solid understanding of security protocols, cryptography, authentication, authorization
  • Experience with application security tools like Burp Suite and ZAP 
  • Experience with testing methods such as SAST/DAST/IAST
  • Experience in secure coding and software development in various languages (Java, Go, JavaScript, Python, etc.)
  • Experience working with Agile development/Scrum teams
  • Experience incorporating security requirements into a SDLC 
  • Experience working in CI Systems such as Jenkins
  • Knowledge of practical threat modeling for consumer applications
  • Broad knowledge of IT Security technologies, processes, and techniques and a strong understanding of application security practices.
  • Must have the legal right to work in the United States

Preferred Qualifications

  • Bachelor’s degree in IT, Computer Science, or Information Security preferred.
  • Knowledge of cloud security principles
  • GPEN, GXPN, GMOB, CSSLP, or other similar Security Certifications
See More
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

What are Warner Bros. Discovery Perks + Benefits

Warner Bros. Discovery Benefits Overview

Warner Bros Discovery offers a comprehensive set of benefits and perks to support employees in their personal and professional lives. Some program highlights include:

• Local medical, dental, and vision programs in many countries around the world.
• On-site wellness and fitness centers across several of our office locations.
• Family support programs. In the U.S., additional services include on-site childcare in certain offices, backup childcare services, family caregiver leave, adoption, surrogacy, and cryopreservation assistance, and more.
• Tools and resources to support the mental wellbeing of our employees and their dependents, including mental health counselors and 24/7 access to free, confidential support through our Employee Assistance Program administrators.
• Products and services to support financial wellbeing including financial planning tools, and a 401(k) savings plan in the U.S.
• Flexible work arrangements around the globe, allowing employees to better balance work and personal commitments.
• Global learning, leadership & organization programs to inspire, equip, and empower our people to thrive. These programs and resources are accessible to everyone at whatever stage they are in their career.

Culture
Volunteer in local community
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Employee resource groups
Employee-led culture committees
Hybrid work model
In-person all-hands meetings
Summer hours
Employee awards
Flexible work schedule
Remote work program
Diversity
Documented equal pay policy
Dedicated diversity and inclusion staff
Mandated unconscious bias training
Diversity manifesto
Diversity employee resource groups
Hiring practices that promote diversity
Diversity recruitment program
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability insurance
Dental insurance
Vision insurance
Health insurance
Life insurance
Pet insurance
Wellness programs
Team workouts
Mental health benefits
Transgender health care benefits
Wellness days
Abortion travel benefits
Financial & Retirement
401(K)
401(K) matching
Company equity
Employee stock purchase plan
Performance bonus
Charitable contribution matching
Pay transparency
Child Care & Parental Leave Benefits
Childcare benefits
Generous parental leave
Family medical leave
Adoption Assistance
Company sponsored family events
Fertility benefits
Vacation & Time Off Benefits
Unlimited vacation policy
Paid volunteer time
Sabbatical
Paid holidays
Paid sick days
Flexible time off
Bereavement leave benefits
Company-wide vacation
Office Perks
Commuter benefits
Free snacks and drinks
Company-sponsored happy hours
Onsite office parking
Relocation assistance
Home-office stipend for remote employees
Meditation space
Mother's room
Onsite gym
Professional Development Benefits
Job training & conferences
Tuition reimbursement
Lunch and learns
Promote from within
Mentorship program
Continuing education stipend
Online course subscriptions available
Customized development tracks
Paid industry certifications
Personal development training
Virtual coaching services

More Jobs at Warner Bros. Discovery

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about Warner Bros. DiscoveryFind similar jobs like this