Application Security Engineer
Core
Identify and remediate security flaws in complex software designs for large-scale creative gaming projects.
Role type
Application Security Engineer
Builds
Secure desktop and web applications for Rockstar Games
Domain
Gaming / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Manual and automated application security assessments, OWASP Top 10 vulnerabilities, low-level vulnerabilities (use-after-free, buffer overflows), networking protocols (WebSockets, HTTPS, TCP/IP, UDP), Windows/Linux fundamentals, SDLC security, Burp Suite/Fiddler/Bruno, C#
Preferred skills
Reverse engineering and exploit research, scripting and process automation, OAuth2/OIDC authentication protocols, bug bounty program experience, C++ and JavaScript/TypeScript
Technologies
Burp Suite, Fiddler, Bruno, Ghidra, IDA, x64dbg, WinDbg, C#, C++, JavaScript, TypeScript, WebSockets, HTTPS, TCP/IP, UDP
Responsibilities
Track emerging security threats and trends, provide technical security guidance to developers, create and maintain threat models, conduct automated and manual security assessments, drive remediation of identified vulnerabilities, support public and private bug bounty programs
Seniority
Mid-level, hands-on IC