Security Engineer
Speed Odds is looking for an experienced Security Engineer to join our technology team in Yerevan.
You will be responsible for helping secure our large-scale B2B iGaming platform, infrastructure, applications, integrations, and internal technology environment.
The platform includes sportsbook and casino applications, customer-facing websites, management systems, wallet and payment integrations, third-party gaming integrations, reporting systems, and other high-volume transactional services.
You will work closely with our backend, frontend, DevOps, QA, and IT teams to identify and address security risks throughout the development and production lifecycle. The ideal candidate should be comfortable working across application security, infrastructure security, network security, access control, vulnerability management, and security monitoring.
Identify, assess, and mitigate security vulnerabilities across applications, infrastructure, networks, and systems
Perform security assessments of web applications, APIs, servers, and third-party integrations
Conduct vulnerability assessments and coordinate remediation with engineering teams
Review application architecture and designs for security risks
Work with developers to identify and remediate application security vulnerabilities
Review authentication, authorization, session management, and access-control implementations
Assess REST APIs and external integrations for security vulnerabilities
Implement and maintain security controls for production infrastructure
Work closely with DevOps to secure servers, networks, deployments, and infrastructure
Establish secure configuration and hardening standards for Windows and Linux systems
Monitor security events, logs, alerts, and suspicious activity
Support incident detection, investigation, response, and root-cause analysis
Manage vulnerability scanning and security testing processes
Support penetration testing and coordinate remediation of identified vulnerabilities
Implement and maintain secrets, credentials, keys, and certificate-management practices
Review third-party software, APIs, and integrations from a security perspective
Help establish secure software-development practices and security requirements
Provide security guidance to engineering and IT teams
Maintain security documentation, policies, procedures, and risk registers
Support backup, disaster recovery, and business continuity security requirements
Stay current with emerging vulnerabilities, attack techniques, and security best practices
3+ years of professional experience in cybersecurity, application security, infrastructure security, or a related field
Strong understanding of web application security
Strong understanding of OWASP Top 10
Experience performing vulnerability assessments and security testing
Experience with API security and RESTful APIs
Strong understanding of authentication, authorization, session management, and access control
Experience with network security , including firewalls, VPNs, TCP/IP, DNS, HTTP/HTTPS, and network segmentation
Experience securing Windows Server environments
Working knowledge of Linux security
Experience with vulnerability scanning and security assessment tools
Experience with security monitoring, logging, and incident investigation
Understanding of encryption, hashing, TLS/SSL, certificates, and secure key management
Understanding of secure software-development practices
Experience working with developers and DevOps teams to remediate security vulnerabilities
Strong understanding of identity and access management principles
Strong problem-solving and analytical skills
Good written and spoken English
The preferred candidate should have:
Experience with penetration testing and tools such as Burp Suite, Nmap, Nessus, or similar
Experience with cloud security in AWS, GCP, Azure, or other cloud environments
Experience with SIEM platforms and security monitoring tools
Experience with DevSecOps and integrating security into CI/CD pipelines
Experience with container and virtualization security
Experience securing SQL Server and database environments
Experience with payment systems or financial applications
Experience with iGaming, sportsbook, casino, or other high-volume transactional platforms
Experience with PCI DSS or other security/compliance frameworks
Relevant security certifications such as Security+, CEH, OSCP, CISSP, or equivalent practical experience
Benefits
Competitive salary
Performance bonus
Career growth opportunities
International projects
Modern office in Yerevan
Friendly international team
Latest technologies
Long-term employment
Paid annual leave