Senior Application Security Engineer

Blackbaud
Remote, Arizona, US
Remote
Full-time

We’re hiring on the Blackbaud Application Security team!

As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built and / or used by Blackbaud.

You can expect to work closely with software development teams as well as third-party organizations to ensure that security, privacy, and compliance requirements are planned for, designed, and built into software applications at Blackbaud.

In addition to securing software, you will be expected to stay up-to-date on what’s happening in the Cyber Security industry in order to optimize and align our application security processes and systems throughout the Software Development Life Cycle (SDLC) at Blackbaud.

The Application Security Engineering team focuses on building automation for security self-service and vulnerability management to reduce unnecessary toil.

What you will be doing :

Identifying solutions for difficult security problems while participating in a broader agile Application Security team.

Building comprehensive solutions to conduct consolidation, aggregation, and notification of security findings to respective stakeholders.

Conducting threat modeling, secure design reviews, and providing direct guidance to development teams.

Promoting, designing, and evaluating application security in all phases of the SDLC and constantly looking for innovative ways to improve processes.

Influencing, building, and assisting with information security challenges within applications.

What we'll want you to have :

You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and engineering.

3+ plus years experience with open source and commercial application security testing and analysis tools for DAST, SAST, SCA, and Attack Surface Management, e.

g. Burp Suite, OWASP Zap, Rapid 7 InsightAppSec, AppScan, Fortify, Checkmarx, Coverity, Semgrep, OWASP Dependency Check, Mend, Blackduck, OWASP Amass, Spiderfoot, and various programming language linters.

3+ years experience with Python, Bash, and / or PowerShell.

3+ years experience in integrating security solutions into CI-CD pipelines and automating tooling orchestration.

Experience partnering with development and systems engineers on impactful security initiatives.

Understanding of software development; how it is designed, built, and can be broken is critical.

Understand DevSecOps cultural mindsets, and an engineering focused approach to solving complex security problems.

Strong verbal and written communication skills to translate security objectives and requirements to specific engineering outcomes.

The Application Security team at Blackbaud is committed to ensuring security issues are prevented, discovered, and remediated in collaboration with our engineering partners across the business.

If that description fits your approach to security, we’d love to chat with you about what you can do to help our mission!

LI-REMOTE

Blackbaud is a remote-first company which embraces a flexible remote work culture. Blackbaud supports hiring and career development for all roles from the location you are in today!

30+ days ago
Related jobs
Promoted
Axway
Scottsdale, Arizona

Senior Cloud Security Engineer. Performs architectural reviews of cloud solutions, including the application of security principles and development of security requirements. Assesses the risk of vulnerabilities and security designs to ensure the security of Axway and its customers' applications and ...

Promoted
VirtualVocations
Tempe, Arizona

A company is looking for a Senior EndPoint Security Engineer. ...

95-2566122 First American Title Insurance Co
USA, Arizona, Remote
Remote

This is a collaborative role and requires an interdisciplinary technical background with skillsets in systems and application administration, data engineering, security operations, and detection engineering. Provide guidance and support to junior security engineers and platform users. This role is r...

Promoted
VirtualVocations
Tempe, Arizona

A company is looking for a Senior Application Security Engineer. ...

Raytheon
Tucson, Arizona

Experience in the fields of System Security Engineering, computer technology reverse engineering, Anti Tamper, cybersecurity, or embedded security. Advanced Degree in Electrical Engineering, Systems Engineering, Mechanical Engineering, Engineering Mechanics, Computer Science, Engineering Science, Bu...

Promoted
VirtualVocations
Glendale, Arizona

A company is looking for a Senior Cloud Security Engineer to enhance the security posture of their cloud infrastructure. ...

Charles Schwab
Phoenix, Arizona

Security Production Engineering (SPE) is a pivotalponent of our organizations’ cyber security resilience, acting as a core contributor in enhancing the efficiency, effectiveness, scalability, and resilience of our cyber security infrastructure. You'll address technical security issues, manage cyber ...

RTX (Formerly Raytheon Technologies)
Tucson, Arizona

Advanced Degree in Electrical Engineering, Systems Engineering, Mechanical Engineering, Engineering Mechanics, Computer Science, Engineering Science, Business Administration, and/or Robotics. Senior Principal Systems Security Engineer - Anti-Tamper. We want you to fulfill a systems engineer role dev...

New Relic
Queen Creek, Arizona
Remote

New Relic's Information Security Team is searching for a Senior Security Response Engineer! If you enjoy a work environment where you're part of a successful distributed team that collaborates to achieve successful outcomes, we would love to talk to you! In this role, you will use your background an...

CGI
Phoenix, Arizona

CGI Global Infrastructure Solutions is looking for a Senior Network Security Engineer to join our growing team. The successful candidate will provide strategic, tactical, and operational network and security support of our large multi-tenant data center and network. Work with other infrastructure, s...