Unknown Company

Information Security Engineer

dallas, tx • Posted 3 days ago
Hybrid Full Time General

Information Security EngineerProbablyMonsters is currently seeking an Information Security Engineer to help secure the data, assets, and systems that enable us to make world-class games and ensure they remain available for our players. Do you enjoy tackling unique challenges and creating solutions to empower your team's workflow while reducing risk? Are you looking for an opportunity to leave your mark on the world around you?

If so, we may be looking for you! Our Information Security Engineering team supports organizations across our family of studios to provide architectural feedback, analyze systems and policies, maintain and deploy new information security systems, provide user education, and respond to security incidents in studio and production environments. Join our family of studios and build solutions and systems to protect the availability and integrity of our teams, our assets, and our customers.You are a security professional who is comfortable working in dynamic, technology-heavy environments.You are an effective communicator with experience working across teams and departments, seeking ways to promote a culture of trust and respect.You are a team player who enjoys collaborating to solve problems.You are someone with strong time management and prioritization skills.You are an automation and systems advocate that's always on the lookout for ways to eliminate manual processes.You are comfortable working with light supervision and in situations with ambiguous requirements.

You are a gamer or someone familiar with video gaming and the games industry.You enjoy engaging with teams to identify their needs and provide them with insight.You are curious and delighted by discoveries and trends in the security space.Selection, implementation, and refinement of existing and new information security systems; to include vulnerability management solutions, security event management, endpoint security and antivirus, network security monitoring and content filtering, and forensics capabilities within the infrastructure; developing and utilizing automation where possibleReview and monitor existing network, systems, and tools for compliance with company security standardsEvaluate new technologies and processes that enhance security capabilitiesConfer with users to discuss issues such as access needs, evaluating new tools, and investigating security violationsTrain users and promote security awareness to ensure system security and to improve server and network efficiencyAssess and govern the security posture of AI/ML systems in use across studios, including LLM integrations, AI-assisted development tools, and generative AI platforms; develop and enforce AI usage policies to mitigate risks such as data leakage, prompt injection, model abuse, and insecure AI outputsImplement and maintain a Zero Trust security architecture across studio and cloud environments, including identity-centric access controls, micro-segmentation, and continuous verification principlesLead security operations center (SOC) functions including threat detection, triage, and response using SIEM, SOAR, and XDR platforms; develop and maintain playbooks for common incident typesIn-depth understanding of information technology and information security practices, including the areas of application security, policy development, security-related research, physical security, systems integrity, and disaster recoveryAbility to rapidly learn new technologies and business functions. Good analytical skills and the ability to multi-taskExperience selecting, maintaining, configuring, and operating vulnerability management, security event management, endpoint security and antivirus, firewall, network security monitoring, and content filtering solutionsExperience implementing security applications, including installation, configuration, and automation of processesExperience with networking technologies, such as firewalls, routers, load balancers, and proxiesKnowledge of network-based protocols such as TCP/IP, HTTP, HTTPS, DNSKnowledge of datacenter and cloud live production best practices and experience working in live high availability customer-facing production environmentsExperience with securing Microsoft Windows environments, Active Directory controls, and permissions, and group policiesExperience configuring, hardening, and maintaining Linux and Windows server operating systemsAbility to be flexible with changing needs and priorities and the ability to proactively detect and resolve problems or issues with systems, tools, and processesFoundational understanding of AI/ML security risks, including prompt injection, model inversion, training data poisoning, and insecure API integrations; ability to evaluate and enforce safe use policies for generative AI tools such as GitHub Copilot, ChatGPT, and similar platformsExperience with identity and access management (IAM) including privileged access management (PAM), multi-factor authentication (MFA), single sign-on (SSO), and identity governance in hybrid environmentsFamiliarity with data privacy regulations and frameworks (GDPR, CCPA, NIST CSF, SOC 2) and experience translating compliance requirements into technical controlsHands-on experience with CrowdStrike Falcon platform modules, including Endpoint Detection and Response (EDR/Falcon Insight), Identity Protection (Falcon Identity Threat Protection), Cloud Security (Falcon Cloud Security/CSPM), Exposure Management and Vulnerability Management (Falcon Spotlight), and SaaS Security (Falcon SaaS Security Posture Management); ability to configure, tune, and operationalize detections and policies across these modules

Back to Job Search