FanDuel Group is a world-class team of brands and products all built with one goal in mind — to give fans new and innovative ways to interact with their favorite games, sports, teams, and leagues. That’s no easy task, which is why we’re so dedicated to building a winning team. And make no mistake, we are here to win, but we believe in winning right. That means we’ll never compromise when it comes to looking out for our teammates. From our many opportunities for professional development to our generous insurance and paid leave policies, we’re committed to making sure our employees get as much out of FanDuel as we ask them to give.

FanDuel Group is based in New York, with offices in California, New Jersey, Florida, Oregon and Scotland. Our brands include:

  • FanDuel — A game-changing real-money fantasy sports app
  • FanDuel Sportsbook — America’s #1 sports betting app
  • TVG — The best-in-class horse racing TV/media network and betting platform
  • FanDuel Racing — A horse racing app built for the average sports fan
  • FanDuel Casino & Betfair Casino — Fan-favorite online casino apps
  • FOXBet — A world-class betting platform and affiliate of FanDuel Group
  • PokerStars — The premier online poker product and affiliate of FanDuel Group


Our roster has an opening with your name on it

We are looking for a Security Engineer to implement and provide ongoing hands-on support for the FanDuel Group hybrid cloud based customer platform and internal corporate environment. Utilize a variety of computing architectures (e.g., cloud (AWS, O365, GCP). Collaborate with developers, staff, IT colleagues, and vendors to identify security requirements, assess available technologies, and recommend solution options. We're looking for a self-starter with highly technical skills in the field.

Everyone on our team has a part to play

  • Responsible for configuring, maintaining and supporting customer facing applications, internal company infrastructure, and 3rd party vendors.
  • Responsible for implementing and maintaining the security for a large scale customer facing hybrid environment, and internal workplace.
  • Work with IPS and various firewalls to secure the environment
  • Work with multiple DMZ's to secure data flow between them
  • Maintain contact with vendors, industry peers, and professional associations to keep informed of existing and evolving industry standards, technologies, and cyber threats
  • Assist in design of enhancements to the hybrid security strategy for identifying and alerting on appropriate event types
  • Responsibilities may include Active Directory, Linux, containerized applications in GCP and AWS security
  • Identify, evaluate and conduct proof-of-concepts for new technologies and lead development of core architectural components
  • Develop business relationships and integrate activities with other departments to ensure successful implementation and support project efforts.
  • Mentor information technology organization in understanding and adhering to architecture design standards and guidelines. Promote knowledge sharing within the technical communities
  • Foster and maintain good relationships with colleagues to meet expected customer service levels
  • Manage bug bounty program end to end, confirming issues and getting them fixed
  • Security incident response, including supporting the identification and remediation of infrastructure related security incidents.
  • Penetration and vulnerability testing
  • Design, develop, integrate, and implement security solutions to defend against advanced cyberattacks, hacking and persistent threats
  • Maintain, support and improve security architecture
  • Be central point of contact for assigned platform/workplace and interface with business, and developers to ensure security.  
  • Be responsible for all aspects of security and ensure remediation of issues and/or automated methods to inhibit violations of security
  • Continuous Improvement
  • Move as much of the work as possible to detectors.
  • Automate alert collection, prioritization, tasks and processes, periodic audits and control


What we’re looking for in our next teammate

  • Minimum of 5 years of experience working in an Information Security role of increasing responsibility preferred
  • Minimum of 3 years of experience securing hybrid cloud and containerized applications is required
  • Minimum of 2 years of experience working with large, complex networks and systems preferred
  • At least one of the following certifications with combined experience:   CISSP, CCSK, CCSP, CEH, OSCP
  • Python, bash, and/or powershell scripting.
  • Knowledge of working with vendor API’s to automate task
  • SumoLogic/Splunk query, alerts, and integration capabilities.
  • Experience in a hands-on role setting up and supporting hybrid cloud based customer applications, O365, along with and/or CCSK/CCSP.
  • Subject matter expert on leading multiple cyber security projects.
  • In depth knowledge and understanding of Intrusion Prevention Systems, Firewalls, and associated best practices for securing internet facing databases as well as communication between the Internet, multiple DMZ's, and cloud based services.
  • Hands-on experience administering, securing and working with O365, AWS, and GCP servers, and containerized applications at scale.
  • In depth knowledge of cloud security and design of security on large scale applications supporting high throughput dynamic loads.
  • Understanding of Database security a plus.
  • Programming/scripting experience.
  • Ideal candidate will have an intimate understanding of technology and be motivated to constantly learn new technologies.
  • Knowledge of Vulnerability scanning and/or internal penetration testing.
  • PCI/CCPA/PII/GDPR rules, and compliance.
  • Excellent organizational and analytical skills.
  • Ability to communicate clearly and professionally with all levels of an organization.
  • Excellent verbal and written communication skills.
  • Effective interpersonal skills.
  • Skilled in problem diagnosis and resolution
  • Proficiency in multi-tasking and prioritizing projects.
  • Excellent time management skills and be accustomed to working within prescribed deadlines.
  • Knowledge of the OWASP Top 10 web application security risks and how to minimize them

We treat our team right

Competitive compensation is just the beginning. As part of our team, you can expect:

  • An exciting and fun environment committed to driving real growth
  • Opportunities to build really cool products that fans love
  • Mentorship and professional development resources to help you refine your game
  • Flexible vacation allowance to let you refuel
  • Hall of Fame benefit programs and platforms

FanDuel Group is an equal opportunities employer. Diversity and inclusion in FanDuel means that we respect and value everyone as individuals. We don't tolerate bias, judgement or harassment.  Our focus is on developing employees so that they reach their full potential.

Apply for this Job

* Required


U.S. Equal Opportunity Employment Information (Completion is voluntary)

Individuals seeking employment at FanDuel are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation. You are being given the opportunity to provide the following information in order to help us comply with federal and state Equal Employment Opportunity/Affirmative Action record keeping, reporting, and other legal requirements.

Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Form CC-305

OMB Control Number 1250-0005

Expires 05/31/2023

Voluntary Self-Identification of Disability

Why are you being asked to complete this form?

We are a federal contractor or subcontractor required by law to provide equal employment opportunity to qualified people with disabilities. We are also required to measure our progress toward having at least 7% of our workforce be individuals with disabilities. To do this, we must ask applicants and employees if they have a disability or have ever had a disability. Because a person may become disabled at any time, we ask all of our employees to update their information at least every five years.

Identifying yourself as an individual with a disability is voluntary, and we hope that you will choose to do so. Your answer will be maintained confidentially and not be seen by selecting officials or anyone else involved in making personnel decisions. Completing the form will not negatively impact you in any way, regardless of whether you have self-identified in the past. For more information about this form or the equal employment obligations of federal contractors under Section 503 of the Rehabilitation Act, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

You are considered to have a disability if you have a physical or mental impairment or medical condition that substantially limits a major life activity, or if you have a history or record of such an impairment or medical condition.

Disabilities include, but are not limited to:

  • Autism
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, or HIV/AIDS
  • Blind or low vision
  • Cancer
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or hard of hearing
  • Depression or anxiety
  • Diabetes
  • Epilepsy
  • Gastrointestinal disorders, for example, Crohn's Disease, or irritable bowel syndrome
  • Intellectual disability
  • Missing limbs or partially missing limbs
  • Nervous system condition for example, migraine headaches, Parkinson’s disease, or Multiple sclerosis (MS)
  • Psychiatric condition, for example, bipolar disorder, schizophrenia, PTSD, or major depression

1Section 503 of the Rehabilitation Act of 1973, as amended. For more information about this form or the equal employment obligations of Federal contractors, visit the U.S. Department of Labor's Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.