Supercell Information Security team is looking for a Senior Application Security Engineer.
At the Supercell Information Security team, we provide information security insight, services and solutions for the whole company. We take our part in upholding the Supercell culture of team autonomy and openness very seriously, and do our utmost to help each team develop and choose the solutions that best fit their needs.
Here at Supercell, we value right outcomes, not adherence to complex policies. We put our players first to ensure we provide fun, secure and safe experiences for all players to earn the trust of our players and community every day. For us, information security must never be an obstacle but a part of the mindset, enabling our development to move fast while staying secure and allowing the company to choose the risks it wants to take.
As an Application Security Engineer, you will work closely with our game and other engineering teams to identify and address gaps in application security. You will digest technical details into an actionable understanding to keep our players and the company safe. You develop automation and tooling, but also realize a major part of security is not achievable with systems but in human-to-human interaction. You know when it’s necessary to act fast, as well as when to step back and look at the bigger picture in a more analytical fashion.
If you are passionate about designing and implementing robust and secure systems and advancing our culture, this is the right job for you.
Responsibilities
Participate in defining what information security means at Supercell, on both strategic and tactical level
Develop relationships with game, data and other engineering teams to understand and help with their security needs
Help teams integrate security throughout the development lifecycle in a non-blocking way
Stay on top of advances in your field, translate that knowledge to preventing and finding vulnerabilities in our systems and code and, if necessary, write proof-of-concept exploits
Facilitate security assessments, remediations and drive projects forward
Work with external consultants to implement parts of our information security toolkit
Take part in Incident Response activities
Requirements
5+ years of applicable experience in an application/product security role
Experience in software development and CI/CD pipelines with at least one major programming language (e.g. Java, C, C++, Node.js)
Experience with static and dynamic security testing and analysis tools and interpreting the results for software teams
Able to evaluate risk and design measured mitigations
Comfortable with working in an international, fast-paced, challenging and stimulating organization
Able to communicate with both technical and non-technical people alike
Proactivity and a curious mind
Nice-to-haves
Familiar with information security requirements, processes, frameworks and tools
Experience with security tooling and infrastructure automation (e.g. Terraform) on AWS or GCP
Experience with obfuscation, encryption and other anti-reverse-engineering methods
Familiar with large-scale distributed systems
Benefits and Compensation Luring you in with glitter, glamour, and gems is not what we seek to do. We develop Supercell as an employer for you to do your best work and to call this the best experience in your professional life. We want you to enjoy your time here fully, so we structure our compensation and benefits to serve this purpose. It starts with perceiving you as a human being, not a resource. Read More
About Supercell
We are a game company based in Helsinki, Finland, with offices in San Francisco, Seoul and Shanghai. Since our launch in 2010, we've released five games globally – Hay Day, Clash of Clans, Boom Beach, Clash Royale and Brawl Stars. To make five games, we've killed dozens along the way. That's because we're obsessed with quality. Our goal is to make the best games – played by millions, enjoyed for years and remembered forever. To achieve this goal, we create the best possible teams and give them the freedom and independence that are core to our success. Read More
You Might Love It Here...
If you love to think, talk, play and make games, Supercell is the place for you. We're made up of proactive, independent teams with the freedom to do what they think is best for their players, our games and the company. We know it takes more than independence to make great games, so we also take good care of our people, providing them with the compensation, work environment and resources they need to succeed. Read More
This position is in Helsinki, but you're not?
Luckily, moving to Helsinki is easier than you might think. No matter where you would be moving from, our dedicated people will help you from beginning to end. We're here to make sure the process is as smooth as possible for you, your family and whoever and whatever you're bringing along. Read More
Interested? Then just apply here
We’re looking forward to hearing from you. It’s always exciting to receive thoughtful applications with more than just a blurry image of a cat. Although we do love cats.