Company logo

Skillz is hiring a

Lead Application Security Engineer

👈 Back to all jobs

Read by 28 job seekers.

Location: Las Vegas, Nevada, United States

Job Description

About the job

If you want to build, develop, and see your impact, join Skillz and level up your Career!

Skillz, the first publicly-traded mobile eSports platform that hosts billions of casual mobile gaming tournaments for millions of players worldwide, is revolutionizing the gaming industry. By fostering social competition within games, the Skillz platform helps developers build multi-million dollar franchises by enabling real-money activity in their games and providing operational support while connecting players through fair, enjoyable, and meaningful competition.

At Skillz, we understand the thrill of achievement and the satisfaction of overcoming challenges. Want to join a team made up of alums from Apple, Amazon, Google, Microsoft, Tesla, Twitter (X), Roblox, Zynga, Samsung, Lyft, EA, Riot, Nexon, Gameskraft, PlayStation, Unity, Scopely, Tinder, Intel, Deloitte, EY, Twitch, DraftKings, Wynn Resorts and more? Learn more to see if Skillz is the right fit for your next career move!

Why Skillz

  • Culture of Impact: Join a united team of builders, creators, innovators, and entrepreneurs driven by the desire to win. At Skillz, we create value, obsess over our product, and make a difference in the world.

  • Comprehensive Benefits: Enjoy peace of mind with our comprehensive benefits package, which includes 100% coverage for medical, dental, and vision expenses for both you and your dependents. Additionally, take advantage of our 401K matching, equity incentives, pre-tax benefit options, and more.

  • Wellness Support: Enhance your well-being with our array of wellness initiatives, including meditation and mental health resources, physical fitness coaching and classes, family planning assistance, health and parenting guidance, virtual therapy sessions, and more.

  • Time off: We offer competitive paid time off (PTO) & company holidays, including a company-wide shutdown between Christmas and New Years, to help you recharge and pursue your passions.

  • Las Vegas Headquarters: Skillz strongly believes in a five-day a week, collaborative office environment at our 36,000+ square foot headquarters. Enjoy free daily breakfast and catered lunch, snacks,a full-size gym with showers, commuter benefits, insurance, team bonding events and many more. 

  • Recognized Success: Skillz has earned recognition as one of Fast Company's Most Innovative Companies, CNBC's Disruptor 50, San Francisco Business Times' Best Places to Work, Forbes' Next Billion-Dollar Startups, and the #1 fastest-growing company in America on the Inc. 5000 list, and many more.

  • Development Opportunities: We hold our employees to high standards while providing them with professional growth opportunities. We operate like a startup, and encourage all of our employees to collaborate and voice feedback about our product and ways we can improve as a business. We believe in never settling, and that also pertains to your growth. 

Responsibilities:

As the Lead Application Security Engineer - you'll spearhead the technical vision and strategy for the Application Security organization. Your role involves shaping the technical direction for our infrastructure, supporting the growth of our core business, and venturing into new domains. 

  • Own and manage security infrastructure, identifying cost-saving opportunities.
  • Triage and address security incidents, including authentication issues and account vulnerabilities.
  • Improve and execute PCI and SOX compliance processes efficiently.
  • Conduct security reviews of new platform features.
  • Monitor emerging security threats and implement best practices.
  • Collaborate with cross-functional teams to enhance platform security.

Key Competencies:

  • Proficiency in Programming Languages: Strong expertise in one or more general-purpose languages such as Golang, Java, or Python.
  • Distributed Systems & Containerized Environments: Ability to analyze and secure distributed, multi-tiered, containerized systems, including microservices architectures and managing Kubernetes environments with multiple ingress points.
  • Cloud Security Expertise: In-depth knowledge of securing cloud resources and network devices on public cloud platforms such as AWS or GCP.
  • Security Best Practices Across SDLC: Experience in integrating security best practices throughout the development lifecycle, from design reviews and threat modeling to ensuring proper security in CI/CD pipelines and feature development.
  • Penetration Testing & Vulnerability Management: Skilled in securing public-facing endpoints through regular penetration testing (including white, black, and grey box testing), DAST, SAST, fuzz testing, and utilizing EDR (Endpoint Detection and Response) tools.
  • Application Security Advocacy: Strong understanding of industry-leading coding practices and application design principles, with the ability to promote and advocate these practices within the team.
  • Continuous Learning & Awareness: Keeps up-to-date with the latest security trends, vulnerabilities, and frameworks (e.g., OWASP Top 10, NIST SP 800-53, CWE Top 25).
  • Problem-Solving & Debugging: Exceptional problem-solving abilities and expertise in debugging and troubleshooting complex security and application issues.

Experience

  • Software Development: Over 7 years of experience in software development, with a strong focus on building scalable and secure applications.

  • Application Security Expertise: 4+ years of hands-on experience in application security roles, including securing web and mobile applications, network security, and infrastructure security.

  • Compliance Experience: Familiarity with regulatory compliance frameworks such as SOX and PCI, and experience ensuring application security meets these requirements.

  • Security Tooling Proficiency: Practical experience with leading application security tools, including Burp Suite, Semgrep, and TruffleHog for vulnerability scanning, code analysis, and secrets detection.

  • Education: BA/BS in Computer Science or a related technical field, or equivalent practical experience.

Total Starting Compensation including Base + Bonus + Equity: 188000

Location: Las Vegas HQ - Onsite for 5 days per week

Join Skillz and Let's Redefine the Boundaries of Gaming!

Together, we'll create a world where skill, passion, and innovation thrive. We look forward to having you on board!

Skillz embraces diversity and is proud to be an equal opportunity employer. As part of our commitment to diversifying our workforce, we do not discriminate on the basis of age, race, sex, gender, gender identity, color, religion, national origin, sexual orientation, marital status, citizenship, veteran status, or disability status, and we operate in compliance with the San Francisco Fair Chance Ordinance.

#LI-JM1

#ONSITE

Skillz embraces diversity and is proud to be an equal opportunity employer. As part of our commitment to diversifying our workforce, we do not discriminate on the basis of age, race, sex, gender, gender identity, color, religion, national origin, sexual orientation, marital status, citizenship, veteran status, or disability status, and we operate in compliance with the San Francisco Fair Chance Ordinance.

See more jobs at Skillz

Related Jobs

Company logo

Data Engineer Lead

Action Network

New York, New York

Company logo

Lead Software Engineer

Hudl

London

Company logo

Lead Platforms Engineer

Real

Remote

Company logo

Graphics Engineer - Central Tech (Senior to Lead)

Bungie

Hybrid / Bungie-Approved Remote Locations