跳到内容

通用信息

地点:Bucharest, Romania 
角色 ID
212076
工作人员类型
Regular Employee
工作室/部门
CT - Security
弹性工作安排
Hybrid

描述和要求

Electronic Arts 打造更高层次的娱乐体验,激励世界各地的玩家和粉丝。在这里,每个人都是故事的主角。活跃社群,畅联全球。这里充满创造力,鼓励新观点,注重好创意。这是一支人人都能让游戏成为现实的团队。

Central Technology is a dynamic community of experts, innovators, and change-makers united by a single, shared vision: To revolutionize interactive entertainment and inspire creativity through transformative technology. Our industry-leading services and solutions are developed collaboratively with teams across EA to enhance creativity and improve outcomes for our partners and players.

Central Technology is a force multiplier, working at the intersection of creativity, technology, and play to power our enterprise. Our teams develop EA's proprietary game engine, drive cutting-edge research, manage innovative infrastructures, create safety and security, and transform data into inspiration. Together, we keep EA moving so it can do what it does best — build unforgettable experiences for people who love games.

The EA Security team makes sure that play is fair and protected, so it stays fun and exciting. We defend not only our players, but EA itself: our people's work, our games, our data, and our infrastructure. Powered by deep technical expertise, we use cutting-edge engineering, automation, and intelligence to tackle threats at global scale. Whether it's securing game services, combating fraud, or supporting fair play, we're at the frontline of protecting the future of interactive entertainment. Join us and help keep the world of play — and EA — secure.

The Senior AppSec Analyst will report to the Senior Manager of the Verification & Pentest team. This is a hybrid role, reporting to the EA office in Bucharest 3x per week.

Responsibilities

  • You search and analyze logs for Indicators of Compromise, create detections, and contribute to incident response investigations.
  • You lead and conduct application security investigations across EA products (web, mobile, console, and PC), including static/dynamic testing and architectural review to identify vulnerabilities and validate bad actor activity.
  • You partner with product, studio, and security teams to remediate vulnerabilities, providing clear technical guidance.
  • You identify systemic vulnerability trends and lead scalable improvements across EA's security ecosystem, including sharing insights through internal presentations and research reviews.
  • You own security automation and SOAR workflows (primarily in Splunk), build integrations for diverse data sources, and lead AI-driven detection proof-of-concepts.

Requirements 

  • You have 5+ years of hands-on application security assessment experience across multiple platforms or programming languages.
  • You can identify and remediate common vulnerabilities (e.g., CWE Top 25, OWASP Top 10) using manual analysis and security tools.
  • You are proficient in querying logs and building detections using platforms such as Splunk, Loki Grafana, or DataDog.
  • You have experience developing security automation or SOAR workflows, including data-source integrations and prototype automation or AI-based detection logic.
  • You bring expertise in at least one technical domain (e.g., cloud architecture, networking, web frameworks, mobile architecture) and associated exploitation techniques (e.g., injection, IDOR, misconfigurations).


Electronic Arts
我们拥有全面的游戏组合和丰富的体验,在世界各地设有分支机构,而且在整个 EA 提供大量机会。我们非常重视适应能力、韧性、创造力和好奇心。我们提供领导岗位让您发挥潜力,为学习和尝试提供空间,赋能您出色地完成工作并寻求成长的机会。

我们对福利计划采用整体方法,强调身体、情感、财务、职业和社区健康,以支持平衡的生活。我们的套餐专为满足当地需求而量身定做,可能包括医疗保险、心理健康支持、退休储蓄、带薪休假、家事休假、免费游戏等。我们营造和谐的环境,让各个团队始终都能尽展所能。

Electronic Arts 是一个注重机会平等的雇主。在聘用员工时不会考虑其种族、肤色、国籍、血统、生理性别、社会性别、性别认同或表达、性取向、年龄、遗传信息、宗教、身心障碍、医疗状况、怀孕状况、婚姻状况、家庭状况或兵役状况,或任何受法律保护的其他特征。我们也会遵守相关法律,考虑招聘有过犯罪记录的合格应聘者。EA 还会根据适用法律的要求,为合资格的残障人士提供工作场所的便利。