
// Open Role at Chess.com
Join Chess.com as a Security Engineer to protect our global gaming platform. Lead vulnerability management, conduct threat modeling, manage incident response, and integrate security best practices into our fast-paced, remote-first engineering environment.
About Us
Chess.com is one of the largest gaming sites in the world and the #1 platform for playing, learning, and enjoying chess.
We are a team of 600+ fully remote people in 60+ countries working hard to serve the global chess community. We are here to support 250M+ chess players worldwide with the best possible product, content, and tools to serve the community!
We are a tech company. A gaming company. A content company. And we do it all with passion and commitment to the game. Above all we prize our mission-driven, flat, life-celebrating, no-corporate culture, and we look forward to meeting you and learning more about what you can bring to the team.
About The Role
The Security Engineer plays a critical role in protecting our technology infrastructure and maintaining the security posture of our gaming platform. This position exists to proactively identify, assess, and mitigate security vulnerabilities while serving as a trusted security advisor to engineering teams across the organization. The role directly impacts our ability to safeguard user data, maintain platform integrity, and ensure secure development practices are embedded throughout our product development lifecycle.
This position is essential for building and maintaining robust security defenses in a fast-paced, remote-first technology environment where security expertise must be seamlessly integrated into daily engineering operations and strategic decision-making processes.
What you'll do
Qualifications
Preferred Skills and Qualifications
About the Opportunity
---
You can learn more about us here:
Bachelor's degree in Computer Science or related field, or equivalent experience; Minimum 3+ years in web application security; Expertise with security testing tools like Burp Suite; Strong written English communication skills; Experience in fully distributed/remote teams; Proven ability to collaborate with engineering teams; Preferred: Bug Bounty program experience, PHP/JavaScript programming, penetration testing, SIEM platforms, WAF configuration, SDLC knowledge, Jira experience.