Job Title: Sr. Security Engineer
Location: Remote (PST)
Duration: 6+ Contract
Role Summary
We are looking for a senior security engineer to perform advanced testing on our streaming platform and content delivery systems. The focus is on preventing piracy, testing DRM enforcement, device attestation, and ensuring CDN/WAF resilience against application-layer attacks.
Must-Have Skills / Requirements
โข Strong experience in application-layer (L7) security testing
โข Hands-on knowledge of CDN and WAF testing (CloudFront, Fastly, Akamai)
โข Deep expertise in DRM systems: Widevine, PlayReady, FairPlay
โข Experience with device ID attestation and spoofing tests
โข Proficiency with reverse engineering / debugging tools (Frida, Burp Suite, mitmproxy)
โข Understanding of video streaming pipelines, secure playback, and encryption
โข bility to design and execute realistic attack simulations without impacting network infrastructure
Nice-to-Have Skills / Preferences
โข Experience with OTT platforms or large-scale video streaming services
โข Familiarity with mobile and web player security
โข Knowledge of anti-piracy mechanisms and content protection best practices
โข Familiarity with DRM license and key management systems
Responsibilities
โข Conduct application-layer DDoS testing targeting CDN/WAF systems
โข Evaluate DRM enforcement and attempt to bypass content protections
โข Test device attestation mechanisms and security tier enforcement
โข Provide detailed reports and actionable recommendations to protect premium content