Loading jobs…
Loading jobs…
Atari, Inc. — Newcastle upon Tyne England
About Atari Atari is an interactive entertainment company and an iconic gaming industry brand recognized worldwide for its multi-platform games and licensed products. Atari owns and/or manages a portfolio of more than 400 games and franchises, including globally recognized brands such as Asteroids® , Centipede® , Missile Command® , Pong® , and RollerCoaster Tycoon® . The Atari family of brands includes Digital Eclipse, Nightdive Studios, Infogrames, AtariAge, MobyGames, as well as Coatsink, Early Morning Studios, and Stormteller Games—spanning game development, publishing, and community experiences worldwide.
Atari operates internationally with offices in the US, UK, in France, Germany, Sweden, and India. Overview This is a hands-on individual-contributor role centered on security hardening: making Atari’s systems harder to attack by designing, implementing, and advising on technical security controls and secure configuration across our cloud and on-premise environment. You own the technical security posture on top of that, including detection and incident response, oversight of external testing, and the security of new environments brought into Atari.
Penetration testing is delivered by specialist vendors you scope and oversee, and after-hours monitoring is supported by tooling and managed services, so this is not a one-person, round-the-clock SOC.
What You’Ll Do
Hardening & Secure Configuration (Primary Focus) Design, implement, and continuously improve security controls and secure baselines across cloud (AWS, Azure, GCP) and on-premise environments. Review infrastructure changes and new deployments through a security-architecture lens and recommend hardening before they ship. Verify controls are effective and drive misconfigurations and weaknesses to closure.
Vulnerability Management & Testing Oversight Scope and oversee penetration-testing and vulnerability-assessment vendors, ensuring comprehensive coverage. Run hands-on scans of Atari’s infrastructure and platforms (vulnerability, cloud-posture, and configuration checks) and act on the results. Triage and prioritize findings and drive remediation of critical issues to closure.
Conduct targeted vulnerability assessments and internal security audits of systems, applications, and services. Application & Service Security Work directly with development teams on secure coding practices. Review code for vulnerabilities and give developers actionable guidance (OWASP Top 10, application security).
Integrate security into DevSecOps pipelines and CI/CD workflows. Detection & Incident Response (Owned and Led) Own detection and response: set detection priorities mapped to MITRE ATT&CK and direct tuning of monitoring/SIEM and managed-service coverage. Lead technical incident response end to end (investigation, containment, eradication, recovery, root-cause analysis) and turn findings into preventive hardening.
Run targeted threat hunting; act as primary technical responder during business hours, backed by tooling and managed services after hours. Security of New Environments Assess the security of new companies, systems, or environments brought into Atari, surfacing risk before and during integration. Maintain an authoritative asset inventory and attack-surface map, and bring new environments up to Atari’s hardening standards.
Security Automation & AI Tooling Use and integrate AI-powered security tools for detection, hardening, and daily security operations, and evaluate new AI tooling as it emerges. Develop scripts and tooling (Python, Bash, PowerShell) to automate and scale hardening, detection, and routine operations. Stay current with emerging threats and attack techniques and fold them into controls and detections.
Requirements
for development teams; dir