Defining what it means to build and deliver the most extraordinary sports & entertainment experiences.The Crown is Yours
Senior Security Engineer, Software
Location
United States
Posted
43 days ago
Salary
$136K - $170K / year
Seniority
Senior
Job Description
Senior Security Engineer, Software
DraftKings Inc.
At DraftKings, AI is becoming an integral part of both our present and future, powering how work gets done today, guiding smarter decisions, and sparking bold ideas. It's transforming how we enhance customer experiences, streamline operations, and unlock new possibilities. Our teams are energized by innovation and readily embrace emerging technology. We're not waiting for the future to arrive. We're shaping it, one bold step at a time. To those who see AI as a driver of progress, come build the future together. The Crown Is Yours As a Senior Security Engineer, you will help shape how we build and scale secure systems across DraftKings, working closely with security engineers and developers to embed secure by default into everything we ship while owning key areas of security functionality and turning strategy into scalable solutions. You bring deep technical expertise, a builder's mindset, and the ability to influence how we approach security across the business, all while collaborating with a global, cross disciplinary team that moves fast, supports one another, and values every perspective from day one. What You'll Do - Design and evolve our secure development lifecycle (SDLC), building the rules, processes, and platforms that keep our systems resilient. - Build and integrate custom and off-the-shelf security tools to automate vulnerability detection across applications and infrastructure. - Act as a subject matter expert on our SDLC, partnering with Detection and Response (DART) to strengthen investigation capabilities. - Lead and influence remediation of complex, cross-functional security issues across teams and systems. - Stay ahead of the threat landscape-identifying risks, tools, and mitigation strategies that keep our platforms secure at scale. - Share knowledge, mentor teammates, and help build a culture where security is a shared responsibility. What You'll Bring - 5+ years of engineering experience building and operating production systems with a security-first mindset. - Strong coding experience in one or more languages; .NET experience is a plus. - Broad technical depth across systems, operating systems, file systems, networking, cloud security, and automation. - A genuine drive to protect the privacy and security of our players and teammates. - Clear, thoughtful communication skills and a collaborative approach to solving complex challenges. - The ability to prioritize, adapt, and deliver in a fast-moving, high-impact environment. Join Our Team We're a publicly traded (NASDAQ: DKNG) technology company headquartered in Boston. As a regulated gaming company, you may be required to obtain a gaming license issued by the appropriate state agency as a condition of employment. Don't worry, we'll guide you through the process if this is relevant to your role. The US base salary range for this full-time position is 136,000.00 USD - 170,000.00 USD, plus bonus, equity, and benefits as applicable. Our ranges are determined by role, level, and location. The compensation information displayed on each job posting reflects the range for new hire pay rates for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific pay range and how that was determined during the hiring process. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Benefits
- 401(K), 401(K) matching, Adoption Assistance, Childcare benefits, Commuter benefits, Company equity, Company-sponsored outings, Continuing education stipend, Customized development tracks, Dedicated diversity and inclusion staff, Dental insurance, Disability insurance, Volunteer in local community, Employee stock purchase plan, Family medical leave, Fitness stipend, Flexible Spending Account (FSA), Flexible work schedule, Generous parental leave, Company-sponsored happy hours, Health insurance, Job training & conferences, Open door policy, Life insurance, Charitable contribution matching, Mentorship program, Online course subscriptions available, Open office floor plan, Paid holidays, Onsite office parking, Partners with nonprofits, Performance bonus, Pet insurance, Promote from within, Recreational clubs, Lunch and learns, Relocation assistance, Remote work program, Free snacks and drinks, Team based strategic planning, OKR operational model, Tuition reimbursement, Unlimited vacation policy, Vision insurance, Wellness programs, Some meals provided, Mental health benefits, Home-office stipend for remote employees, Diversity employee resource groups, Fertility benefits, Employee resource groups, Employee-led culture committees, Quarterly engagement surveys, Hybrid work model, In-person all-hands meetings, Employee awards, Pay transparency, Transgender health care benefits, Abortion travel benefits, Meditation space, Mother's room, Personal development training, Virtual coaching services, Flexible time off, Bereavement leave benefits
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Director of Security Partnerships
Infatica.ioGlobal data intelligence partner offering advanced web scraping & ethical proxies. 🌎 Worldwide IP locations since 2019
Infatica.io is a global provider of proxy and DaaS solutions. Now we are looking for an experienced Director of Security Partnerships in information security. Role Overview The role’s objective is to build and develop trusted relationships with leading antivirus vendors and other players in the cybersecurity ecosystem, shaping joint strategies, integrations, and business initiatives
• Lead information security for client solutions and Practice Area technology, partnering with key stakeholders to deliver secure products and services to clients, including on‑premises and cloud infrastructure components. • Embed security controls, patterns, and tooling into product and solution teams across all stages of the secure development lifecycle (SDLC), with a strong focus on shift-left practices. • Oversee security assurance for products and solutions, evaluating the implementation and effectiveness of security controls. • Identify, assess, and manage security weaknesses, vulnerabilities, and risks from multiple sources (e.g. security testing, threat intelligence and audits), ensuring appropriate response and management of these issues (e.g. treatment plans, remediation actions, and risk acceptance where applicable). • Lead Practice Area delivery of relevant global security and transformation initiatives, ensuring successful execution and alignment with Practice Area priorities and client requirements. • Provide Practice Area incident support to Cyber Operations, acting as a security subject matter expert (SME) for the business division and supporting investigations. • Support client security requests, including (but not limited to) RFIs, audits and security questionnaires.
• Develop an agent health and remediation process by which endpoints with deficient endpoint security health are identified and remediated • Lead global agent health monitoring and remediation activities • Leverage IT security tooling to deploy and remove software applications • Collect and document the health criteria for each respective endpoint security agent and report on health metrics globally • Leverage automation to ensure the deployment, monitoring, and logging of endpoint security technology globally
• Integrate automated security scanning (SAST, DAST, SCA) directly into our CI/CD pipelines. • Design and enforce security policies across our primary cloud environment. • Pioneer security strategies for our LLM and machine learning workloads. • Build and monitor security observability tools. • Act as an embedded security consultant to our engineering and product teams. • Drive and maintain compliance initiatives relevant to our enterprise AEC clients.




