Software Engineer II
Listed on 2026-02-16
-
IT/Tech
Cybersecurity
Job Summary
At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company is a world‑class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses.
Uniting each endeavor is a commitment to creating and delivering unforgettable experiences— and we’re constantly looking for new ways to enhance these exciting experiences.
- Secure the Magic by protecting information systems and platforms within TWDC
- Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to TWDC and our guests
- Enable the business through optimizing execution, application, and technology used to protect TWDC
- Innovate! We strive to strategically invest in building core capabilities to advance operational efficacy
Global Information Security (GIS) supports all of Disney’s business segments, including Disney Entertainment & ESPN (DE&E). DE&E encompasses the operations of Disney’s streaming services—Disney+, Hulu, and ESPN+—as well as Disney’s broadcast and cable networks, including ABC, ESPN, FX, Disney Channels, and National Geographic. DE&E sits at the intersection of entertainment, sports, and technology, striving to connect viewers with beloved stories while advancing the streaming industry with consumer‑first innovations.
Security professionals supporting DE&E work with industry‑leading technologies to deliver world‑class, highly secure services to customers.
We are seeking a Software Engineer to design, build, and maintain internal applications and integrations that enhance the organization’s core cybersecurity operations. This role bridges security engineering and software development, focusing on automating compliance, improving risk visibility, and accelerating security workflows through infrastructure‑as‑code and AI‑driven modeling. This role will work closely with compliance analysts, infrastructure teams, and service owners across the enterprise to develop secure, scalable solutions supporting continuous compliance, risk modeling, and operational visibility.
- Design and develop internal cybersecurity tools and services to support compliance, visibility, and risk modeling functions.
- Build and maintain integrations between legacy, in‑house, and cloud‑based systems using APIs and SDKs.
- Implement and manage IaC frameworks to automate security configuration and auditing workflows.
- Collaborate with compliance teams to translate audit and control requirements (SOX, PCI, etc.) into code‑based solutions and enhancements in existing applications.
- Contribute to data ingestion and analytics pipelines that improve visibility across cloud and on‑prem environments.
- Develop AI/ML models to assist with automated risk categorization, configuration detection, or control validation.
- Work with Dev Ops and Security Engineering to maintain consistent RBAC, IAM, and policy enforcement across multi‑cloud and Kubernetes environments.
- Build, document, and maintain runbooks specific to internal APIs, service architecture, and developed frameworks.
- Stay up to date on cybersecurity trends, industry standards (ISO, NIST, CIS), and regulatory requirements.
- Provide mentorship and technical guidance to engineers and analysts, ensuring secure design and operational excellence.
- Minimum of 3+ years of experience in software development
- Experience with modern security tooling, Dev Sec Ops , and AI/ML in cybersecurity
- Required Knowledge of:
- AWS: IAM, RBAC modeling, API and SDK‑based resource discovery, Systems Manager (SSM)
- Git & Git Hub: version control, branching strategies, and CI/CD pipelines
- Linux: security models, permissions, and bash scripting
- SQL: relational data modeling, queries, and integration with back‑end systems
- Programming
Languages:
Python, C#, and/or Ruby - Infrastructure as Code:
Terraform
- Understanding of:
- Databases: user permission models for MSSQL, MySQL, Postgre
SQL, Couchbase, and MemSQL - Operating Environments:…
- Databases: user permission models for MSSQL, MySQL, Postgre
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).