Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Engineer, Application Security

$120k - $140k

GameChanger Media

About GameChanger:

We believe in the life changing impact youth sports have on and off the field. Sports encourage leadership, teamwork, responsibility, and confidence - important life lessons that have the power to propel our youth toward meaningful futures. We recognize that without coaches, parents, and volunteers, organized youth sports could not exist. By building the first and best place to experience the youth sports moments important to our community, we are helping families elevate the next generation through youth sports.

So if you love sports and their community building potential, or building cool products is your sport, GameChanger is the team for you. We are a remote first, dynamic tech company based in New York City, and we are solving some of the biggest challenges in youth sports today.

The Position:

We're looking for a Security Engineer to join our InfoSec team and become the primary security partner for our software engineering organization. Reporting to the Security Engineering Manager, you'll operate application security across the SDLC, champion secure design and development practices, and bring DevSecOps discipline to how we build and ship software. This is a high-impact, highly collaborative role. You'll work closely with platform and product engineers to make security a part of how we build and deliver. You will also be a member of our weekly on-call rotation.

What You'll Do:

Application security
  • Embed security into every phase of the SDLC
  • Champion security requirements for the responsible and secure integration of Gen AI and agentic AI tools within our product stack
  • Conduct security-by-design engagements for new features, APIs, platform initiatives, and infrastructure changes
  • Perform secure code reviews providing engineers with clear, actionable findings and remediation guidance
  • Partner with architecture and platform teams to establish secure API patterns (REST and GraphQL)
  • Contribute to and maintain secure coding guidelines, API security standards, and security architectural patterns that serve as the "paved roads" for all engineering teams
  • Give useful code review feedback, write documentation that outlasts the ticket, and run the occasional workshop or lunch-and-learn for engineers
DevSecOps
  • Integrate and maintain security tooling across CI/CD pipelines
  • Enforce security quality gates in delivery pipelines
  • Harden the CI/CD platform components, including configuration and hardening of GitHub Actions and runner environments
  • Identify opportunities to leverage AI for increasing engineering productivity and agentic security workflows
  • Work alongside DevOps engineers to ensure cloud infrastructure is defined and deployed securely via IaC (terraform, k8s)
  • Implement and validate security controls for containerized workloads
  • Support the implementation of application-layer network security controls, such as Web Application Firewalls (WAFs) and CDN security, to protect application endpoints
Vulnerability & Risk Management
  • Operate the application vulnerability management lifecycle
  • Triage and prioritize findings from our sources (including; GHAS, NowSecure, Wiz, BugCrowd, penetration tests) by business impact and exploitability
  • Proactively identify systemic risks and facilitate cross-functional initiatives to address root causes
  • Track security-specific KPIs (e.g., MTTR, vulnerability density, and security coverage of CI/CD pipelines) and translate them into actionable insights for engineering and business leadership
  • Effectively communicate security risk clearly to both engineering and business leaders
What You'll Bring:
  • 3+ years in application security engineering
  • Proven experience building and operating internal security developer platforms or tooling that reduces developer friction
  • Demonstrated ability to use AI/ML-driven tools to enhance security effectiveness and scalability
  • Hands-on experience leading threat modeling engagements and designing paved roads
  • Proven track record integrating security tooling into CI/CD pipelines
  • Working knowledge of OWASP Top 10s (web, mobile, API, LLM)
  • Hands-on experience securing deployments in AWS with container and Kubernetes security, IaC scanning, and policy-as-code approaches
  • Demonstrated expertise in security-by-design in TypeScript, Swift, and/or Kotlin
  • Track record of implementing secure primitives in mobile ecosystems (iOS/Android)
  • Beneficial certifications: AWS Certified Security Specialty, CKS, GWEB, GMOB, or equivalent.
Who You Are:
  • Pragmatic defender. You understand that security must enable the business, not block it. You look for "secure by default" solutions and know how to make the right path the easy path for engineers.
  • Force multiplier. You don't solve every security problem yourself. You coach, document, and build systems that make the engineers around you more secure by default.
  • Clear communicator. You can trace a BOLA vulnerability chain to a frontend engineer and translate the same risk into business terms for a VP; and you know which conversation you're in.
  • Automation-first. If you have to do it twice, you'd rather write the script.
  • Long-view oriented. You think about medium-to-long-term system health, not just the current sprint, and you proactively address root causes rather than patching symptoms repeatedly.
  • Collaborative and cross-functional. You bring product, business, and operational context into your security decisions, not just security best practices in isolation.
  • Approachable. You foster open dialogue, encourage diverse perspectives, and make it easy for engineers to surface security concerns without fear of judgment or friction.
Perks:
  • Work remotely throughout the US* or from our well-furnished, modern office in Manhattan, NY.
  • Unlimited vacation policy.
  • Paid volunteer opportunities.
  • Technology stipend - $4,000 every 2 years after your start to make sure you have the latest and greatest technology.
  • WFH stipend - $500 annually to make your WFH situation comfortable.
  • Monthly physical, mental, wellness & learning stipend offered through Holisticly.
  • Monthly lifestyle stipend offered through Fringe.
  • Full health benefits - medical, dental, vision, prescription, FSA, HRA, HSA, and coverage for family/dependents.
  • Retirement savings - Traditional and Roth 401K plans are offered through Vanguard, with an immediate company match.
  • Life insurance - basic life, supplemental life, and dependent life.
  • Disability leave - short-term disability and long-term disability.
  • Company paid parental leave - up to 20 weeks for birthing parents and up to 12 weeks for non-birthing parents.
  • Family building benefits offered through Progyny.
  • DICK'S Sporting Goods and their family of brands teammate discount.

The target salary range for this position is between $120,000 and $140,000. This is part of a total compensation package that includes incentive, equity, and benefits for eligible roles. Individual pay may vary from the target range and is determined by several factors including experience, internal pay equity, and other relevant business considerations. We constantly review all teammate pay to ensure a great compensation package that is fair and equal across the board.

* DICK'S Sporting Goods has company-wide practices to monitor and protect the company from significant compliance and monetary implications as it pertains to employer state tax liabilities. Due to said guidelines put in place, we are unable to hire in AK, DE, HI, IA, LA, MS, MT, OK, and SC.

We are an equal opportunity employer and value diversity in our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

IMPORTANT NOTICE: All official recruitment communications from GameChanger will come from an email address ending in @gc.com or View email address on click.appcast.io. If you receive communication from any other domain, please be cautious, as it is likely fraudulent.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Engineer, Application Security in United States vacancy
  • $100k - $120k

     ...transform the world for good. Your impact The Endpoint Security & Exposure Management Engineer is responsible for the design, implementation,...  ...reducing organizational cyber risk through effective application control, privilege management, vulnerability management... 
    Application
    Full time

    Jacobs

    Dallas, TX
    23 hours ago
  • $165k - $242k

     ...more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing...  ..., contractors, and critical business applications protected in a modern, cloud-native...  ...join.About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and... 
    Application
    Permanent employment
    Full time
    Temporary work
    For contractors
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    New York, NY
    2 days ago
  • $159.3k - $212.8k

    The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services...  ...accommodation or adjustment during the application and hiring process, including support for... 
    Application
    Internship
    Flexible hours

    Amazon

    New York, NY
    2 days ago
  • $200k - $220k

     ...they rely on every day.We are looking for a hands-on Corporate Security Engineer to own and improve the technical controls that keep our...  ...gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Notion considers qualified... 
    Application
    Work at office
    Local area

    Notion Labs

    New York, NY
    2 days ago
  •  ...that enhance maritime operations through autonomous and intelligent platforms.Security at Saronic is a force multiplier, not a blocker. We’re looking for a Security Engineer for Application Security to empower our teams to ship fast without trading away safety to secure... 
    Application
    Permanent employment

    Saronic Technologies

    Austin, TX
    23 hours ago
  • $159.3k - $202.4k

    Amazon Healthcare Security's (HealthSec) Detections & Monitoring team is hiring a Security Engineer II to design, build, and operate detection and monitoring capabilities...  ...(AHS) across cloud infrastructure, applications, endpoints, and AI-powered systems. You will... 
    Application
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  • $159.3k - $212.8k

     ...have a broad understanding of proactive security, have past experience leading security...  ...have the ability to work with product and engineering teams in designing secure systems. In...  ...play a crucial role in ensuring that applications across numerous Ads platforms are designed... 
    Application
    Internship
    Flexible hours

    Amazon

    New York, NY
    2 days ago
  • $159.3k - $202.4k

     ...you passionate about delivering innovative security solutions and protecting millions of customers...  ...and paved paths? The Customer Service Application Security team is looking for a talented and results-driven Security Engineer to help shape how Amazon protects customer... 
    Application
    Flexible hours

    Amazon

    Seattle, WA
    1 day ago
  • $159.3k - $202.4k

    Amazon Healthcare Security's (HealthSec) Security Operations team is hiring a Security Engineer to be the first line of defense to our most critical customer data. You...  ...workplace accommodation or adjustment during the application and hiring process, including support for the... 
    Application
    Flexible hours

    Amazon

    Austin, TX
    2 days ago
  • $159.3k - $212.8k

     ...every direction using the globe’s largest AWS deployment.As a Security Engineer, you will collaborate with software development teams to...  ...novel services. In a given day, you might be inspecting an application’s code for security issues, building a new framework to help... 
    Application
    Internship
    Flexible hours

    Amazon

    New York, NY
    3 days ago
  • $159.3k - $202.4k

     ...world.Have you wanted an opportunity to secure an advanced satellite based broadband telecom...  ....Export Control RequirementDue to applicable export control laws and regulations, candidates...  ...to become security advocates & security engineers via 1-1 sessions & office hours.You will... 
    Application
    Permanent employment
    Internship
    Work at office
    Flexible hours

    Amazon

    Redmond, WA
    4 days ago
  • $166.6k - $212.8k

    The Ads Security organization at Amazon is dedicated to creating innovative technical solutions...  ...secure. We are seeking a talented engineer to join our team, where you will have...  ...to contribute to securing web applications and services critical to delivering exceptional... 
    Application
    Local area
    Flexible hours

    Amazon

    Sunnyvale, CA
    2 days ago
  • $159.3k - $202.4k

    Amazon is seeking qualified Security Engineers to join our innovative, high energy Information Security team. In this role you will work...  ...solving security challenges at scale, working to protect the applications powering the most sophisticated e-commerce platform ever... 
    Application
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    23 hours ago
  • $174k - $252k

    Identify security issues and implement and design security controls, tools, and services...  ....5 years of experience with security engineering, computer and network security and security...  ...various layers (OS, network, and application) to enforce security invariants and reduce... 
    Application

    Google

    New York, NY
    4 days ago
  • $159.3k - $202.4k

    The Corporate Services Security (CPSS) Finance and Communication Security (FCS) Team is responsible for securing the applications, infrastructure and data developed across Finance & Global...  ...and share that benefit with all our engineers globally.Contribute to recruiting... 
    Application
    Flexible hours

    Amazon

    Boston, MA
    2 days ago
  • $159.3k - $202.4k

    We're looking for a Security Engineer to join the team that secures the foundational compute and networking systems powering AWS — the systems...  ...at the ideation and design stage to embed security into applications from the start, providing guidance on secure architecture... 
    Application
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    4 days ago
  • $195k - $240k

    Here at Datadog, we think about offensive security a little bit differently. We embrace...  ...environment, and we expect our offensive engineers to build the tooling that makes that...  ...manage complexity at scale. It brings applications, infrastructure, data, models, and security... 
    Application
    Work at office

    Datadog

    New York, NY
    2 days ago
  • $178.4k - $226.7k

    The Senior Security Engineer is a senior individual contributor responsible for independently driving security initiatives across multiple...  ...services and teams. This role requires deep technical expertise in application security, threat modeling, and secure system design,... 
    Application
    Internship
    Flexible hours

    Amazon

    Boston, MA
    23 hours ago
  • $178.4k - $226.7k

    Corporate Services Security (CPSS) is the Amazon security team aligned with Finance & Global...  ...within CPSS supports a large number of applications built using AWS Services. Apart from work, we provide opportunities for our engineers to pursue projects they are passionate... 
    Application
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    23 hours ago
  • $136k - $184k

    The AWS Hardware Supply Chain Security (HSCS) Team is looking for a Security Engineer to help guide our global hardware supplier and manufacturing security...  ...workplace accommodation or adjustment during the application and hiring process, including support for the interview... 
    Application
    Internship
    Flexible hours
    Shift work

    Amazon

    Austin, TX
    3 days ago
  • $178.4k - $226.7k

     ...production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the...  ...and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding... 
    Application
    Internship
    Remote work
    Flexible hours

    Amazon

    Arlington, VA
    3 days ago
  • $237.6k - $297k

    We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and...  ...CD pipelines with a strong focus on security.Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing... 
    Application
    Full time

    Scale AI

    San Francisco, CA
    1 day ago
  • $147k - $210k

     ...advanced vulnerability research, defensive engineering, and mitigation strategies across the...  ...improve efficiency.Conduct deep-dive security research into Android vulnerabilities and...  ...on the Android platform or Android applications.2 years of experience with security engineering... 
    Application

    Google

    New York, NY
    1 day ago
  • $167.5k - $226.3k

     ...AreJustworks is looking for an experienced, hands-on Senior Security Engineer specializing in AI who will drive and execute the company’s...  ...architecture and design standards across Justworks applications and infrastructure to promote a standardized set of security... 
    Application
    Casual work
    Work at office
    Local area

    Justworks

    New York, NY
    2 days ago
  • $136k - $184k

     ...every direction using the globe’s largest AWS deployment.As a Security Engineer, you will collaborate with software development teams to...  ...novel services. In a given day, you might be inspecting an application’s code for security issues, building a new framework to help... 
    Application
    Internship
    Flexible hours

    Amazon

    Seattle, WA
    23 hours ago
  • $178.4k - $226.7k

    At Amazon Web Services (AWS), Security is our highest priority. We are looking for a passionate...  ..., innovative, results oriented Security Engineer. Security Escalations is responsible for...  ...with any combination of the following: application security frameworks, identity and access... 
    Application
    Internship
    Flexible hours

    AmazonWebServices

    Herndon, VA
    2 days ago
  • Position: Senior Security Engineer - PKI & Detection, Aircraft SecurityLocation: Fort Worth Texas (Hybrid - onsite Tuesday through Thursday...  ...importance of your privacy and security. We NEVER ASK job applicants to:Pay any fee to be considered for, submitted to, or selected... 
    Application
    Full time
    Remote work
    Monday to Friday

    Pinnacle Group

    Fort Worth, TX
    23 hours ago
  • $178.4k - $226.7k

    The Ads Security organization at Amazon is dedicated to creating innovative technical solutions...  ...are seeking a talented Senior Security Engineer to join our team, where you will have...  ...to contribute to securing web applications and services critical to delivering exceptional... 
    Application
    Flexible hours

    Amazon

    Bellevue, WA
    1 day ago
  • $136k - $184k

    Amazon’s Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering...  ...security challenges at scale and working to protect applications powering the most sophisticated e-Commerce platform ever built... 
    Application
    Internship
    Flexible hours
    Shift work

    Amazon

    Arlington, VA
    23 hours ago
  • $81k - $155k

     ...#VTeamLife.What you’ll be doing...The GN&T Network Security team is looking for a highly motivated and experienced Engineer to join the Network Security Defense team. The...  ...in security frameworks, particularly the application of CIS Benchmarks (Level 1 & 2 hardening) and... 
    Application
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office
    Work from home
    Flexible hours
    Shift work
    3 days per week

    Verizon

    Alpharetta, GA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Engineer, Application Security. Be the first to apply!