Salary
💰 $221,000 - $247,000 per year
About the role
- Guide the strategy and execution of security initiatives that protect our games, services, and players at global scale.
- Partner with game teams, Online Services, Central Tech, and external vendors to embed security best practices throughout our development lifecycle.
- Assess requirements and risks across projects, and build alignment with the product security team and diverse stakeholders to identify the right security investments.
- Lead a Security Engineering team, a Security Analyst team, and a Machine Learning / Data Science team focused on the security space.
- Own the technical vision for security architecture across Bungie’s games and player-facing services.
- Conduct threat modeling, risk assessments, and design reviews; translate findings into actionable roadmaps.
- Partner with engineers to embed secure coding standards, automated checks, and vulnerability remediation into our pipelines.
- Collaborate with Legal and Compliance teams across Bungie.
- Mentor and grow high-performing security engineering, security analyst, and MLDS teams; forecast staffing needs and help recruit top talent.
- Track emerging threats, oversee research of new defensive techniques, and champion a security-focused culture within Central Tech and the game teams.
- Communicate risk and mitigation plans to leadership, and external partners with clarity and influence.
Requirements
- Experience leading security engineering or application security programs for large-scale online services or games.
- Deep knowledge of game security architectures and associated security controls.
- Hands-on expertise with common attack vectors, secure SDLC, and automated vulnerability management.
- Strong technical and architectural ability (C++, C#, or similar) to advise and oversee technical implementations and maintain alignment.
- Demonstrated ability to align diverse stakeholders, balance risk versus velocity, and drive projects to completion.
- Excellent written and verbal communication skills, with an emphasis on clear, actionable guidance.
- Experience protecting live, large-scale multiplayer games (Nice-to-Have Skills).
- Familiarity with anti-cheat, fraud prevention, or abuse mitigation technologies (Nice-to-Have Skills).
- Security certifications (e.g., CISSP, OSCP, CSSLP) or equivalent real-world expertise (Nice-to-Have Skills).