Warner Bros. Discovery-posted 20 days ago
Full-time • Mid Level
Hybrid • Atlanta, GA

As an Application Security Engineer, you will be an important member of the Warner Bros. Discovery Global Information and Content Security (GICS) team. This is a key role that will be focused on application security and secure SDLC practices for a broad range of WBD apps and services. The Application Security Engineer will be a valued partner to development and engineering teams to ensure secure architectures, patterns, and solutions are created and maintained. This person will work closely with WBD’s product teams and will build relationships with engineering groups to support effective security solutions for our products.

  • Work with teams across the organization on security initiatives
  • Be creative and solve problems with solutions that can scale
  • Maintain knowledge of current and emerging secure application technologies/products/trends
  • Build, maintain, and utilize security tools for the Application Security program
  • Review and contribute to application designs and solutions
  • Collaborate with development teams to ensure secure coding best practices are followed
  • Perform security and risk assessments for consumer-facing applications and services
  • Identify and define application security requirements and security baselines
  • Actively and continuously share role-specific knowledge with team members and product teams
  • Stay up to date with the latest application security threats, vulnerabilities, and exploits
  • 3 to 5 years proven software engineering experience developing and maintaining scalable, Cloud-native software solutions, including familiarity with container technologies, AWS, and infrastructure-as-code such as Terraform, Cloud Formation, etc.
  • A strong desire to help engineering teams build consumer applications securely
  • Proven experience building tools and automation to support an Application Security team
  • Proven experience in secure software development principles in various languages (Java, Go, JavaScript, Python, etc.)
  • Strong understanding of software development methodologies and secure coding practices
  • Strong understanding of the SDLC and CI/CD pipelines
  • Strong understanding of application security standards and practices, such as the OWASP Top 10
  • Knowledge of practical threat modeling for consumer applications
  • Hands-on experience working with DevOps and Agile-driven product teams
  • Excellent written and verbal communication skills
  • Knowledge of API security architecture and technologies
  • Knowledge of cloud architecture and security principles
  • Bachelor’s degree in IT, Computer Science, or Information Security preferred
  • ISC2 CSSLP, GIAC (GWEB, GCSA), or other Security Certifications
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service