Riot Games Logo

Riot Games

Security Engineer II - Security Risk Engineering

Posted 17 Days Ago
Be an Early Applicant
In-Office
Los Angeles, CA
Senior level
In-Office
Los Angeles, CA
Senior level
As a Senior Security Engineer, you'll enhance the TPRM program and implement security solutions focusing on risk assessment and automation.
The summary above was generated by AI

We are looking for a Senior Security Engineer focused on security risk engineering to help mature and expand our existing program. You will report to the third party risk management (TPRM) manager and your primary goal will be continuously evolving our TPRM program through automation and technology.

While the core objective is to level up our TPRM program, you will also contribute to build out our foundation in security risk engineering at Riot. Riot is an adaptive, global organization that leverages both existing and emerging technologies, internal talents and external partners to provide quality content to hundreds millions of players around the world. Thus, Riot’s profile and unique attack surface bring complex challenges for the team to effectively manage security, privacy, regulatory and reputational risk from an engineering perspective. You would have a broad technical background across a wide range of security disciplines, expertise in risk engineering, automation and have excellent reporting, writing, communication, and customer interface skills.

Responsibilities:
  • Conduct risk assessments on wide range of critical suppliers, external technologies, and system integrations
  • Provide practical, technical and/or administrative security recommendations for secure engagements and implementations 
  • Support supplier lifecycle management programs and initiatives as a technical security SME 
  • Partner with key stakeholders to mature the TPRM process through system integration and automation 
  • Contribute to our remote secure access strategy by implementing and optimizing secure access solutions for vendor workers and contractors
  • Contribute to our continuous monitoring program on critical third-party infrastructure by implementing monitoring solutions and exploring synergies among existing toolsets
  • Contribute to our security risk engineering foundation by implementing automated tests on critical infrastructure and controls, optimizing risk remediation and producing effective, centralized risk reporting
  • Maintain and improve existing automations and integrations for security systems and platforms
Required Qualifications: 
  • Ability to communicate technical concepts to non-technical audiences
  • Experience in designing and implementing secure, automated TPRM controls and lifecycle management process including vendor onboarding, monitoring, offboarding, and issue management
  • Experience in implementing industry standard security frameworks and best practices at scale
  • Experience in implementing security engineering tooling that enables automated control validation
  • Experience in implementing system integrations between different security and IT systems to drive automation and security risk reduction 
  • Experience in reviewing the security posture across a wide -range of third- party service providers, technologies, and system integrations
  • 3~5 years of experience in Information Security Engineering roles
  • 3~5 years of experience in Security Risk Management roles
  • Proficiency in at least one programming/scripting language (Python, Go, PowerShell, etc.)
  • Hands-on knowledge of cloud platforms (e.g., AWS, GCP, Azure) and their security models
  • Experience with automation tooling (e.g., Terraform, workflow automation platforms)
Desired Qualifications:
  • Working knowledge of access control and identity management systems (IAM)
  • Working knowledge of cloud security and open source security
  • Background in securing AI workflows and tools
  • Strong ability to drive risk reporting through quantification, and data visualization
  • CISSP, CISA, CRISC, or similar certifications
  • Experience with GRC platforms (OneTrust, ProcessUnity, Archer, or similar)

For this role, you'll find success through craft expertise, a collaborative spirit, and decision-making that prioritizes your fellow Rioters, who are the customers of your work. Being a dedicated fan of games is not necessary for this position!


Our Perks:

Riot focuses on work/life balance, shown by our open paid time off policy and other perks such as flexible work schedules. We offer medical, dental, and life insurance, parental leave for you, your spouse/domestic partner, and children, and a 401k with company match. Check out our benefits pages for more information.

At Riot Games, we put players first. That mission drives every decision in our quest to create games and experiences that make it better to be a player. Whether you’re working directly on a new player-facing experience or you’re supporting the company as a whole, everyone at Riot is part of our mission. And just like in our games, we’re better when we work together. Our goal is to create collaborative teams where you are empowered to bring your unique perspective everyday. If that sounds like the kind of place you want to work, we’re looking forward to your application.


It’s our policy to provide equal employment opportunity for all applicants and members of Riot Games, Inc. Riot Games makes reasonable accommodations for handicapped and disabled Rioters and does not unlawfully discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, handicap, veteran status, marital status, criminal history, or any other category protected by applicable federal and state law. We consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with applicable federal, state and local law, including the California Fair Chance Act, the City of Los Angeles Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, the San Francisco Fair Chance Ordinance, and the Washington Fair Chance Act.

Per the Los Angeles County Fair Chance Ordinance, the following core duties may create a basis for disqualifying candidates with relevant criminal histories:

  • Safeguarding confidential and sensitive Company data
  • Communication with others, including Rioters and third parties such as vendors, and/or players, including minors
  • Accessing Company assets, secure digital systems, and networks
  • Ensuring a safe interactive environment for players and other Rioters

These duties are directly related to essential operations, safety, trust, and compliance obligations within our organization. Please note that job duties may evolve based on business needs and additional responsibilities may be assigned as necessary to maintain operational efficiency and security. 

Top Skills

AWS
Azure
GCP
Go
Powershell
Python
Terraform

Riot Games Los Angeles, California, USA Office

12333 W Olympic Blvd, Los Angeles, CA, United States, 90064

Similar Jobs

8 Minutes Ago
Easy Apply
In-Office
San Diego, CA, USA
Easy Apply
Senior level
Senior level
Machine Learning • Security • Software • Analytics • Defense
As a Lead Software Engineer, you'll design and develop advanced algorithms and software systems, providing technical leadership and mentoring throughout the software lifecycle. You'll work on tools for mission planning and autonomous systems using modern development practices in a collaborative environment.
Top Skills: Apache KafkaC++DockerGitlabJavaKubernetesProtobufPythonRestSonarqube
An Hour Ago
In-Office
Costa Mesa, CA, USA
113K-149K Annually
Senior level
113K-149K Annually
Senior level
Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
The Senior Program Analyst manages supply chain KPI tracking, data analytics, reporting, and collaboration across teams to enhance operational efficiency.
Top Skills: Erp SystemsExcelPower BISQLTableau
An Hour Ago
In-Office
Costa Mesa, CA, USA
146K-194K Annually
Senior level
146K-194K Annually
Senior level
Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
Lead material characterization and analysis, engage with cross-functional teams to solve material-related issues, mentor junior engineers, and maintain up-to-date knowledge in materials science.
Top Skills: Cad SoftwareCtMaterials Simulation ToolsSem

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account