Search jobs > New York, NY > Remote > Senior application security

Senior Application Security Engineer

Blackbaud
Remote, New York, US
Remote
Full-time

We’re hiring on the Blackbaud Application Security team!

As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built and / or used by Blackbaud.

You can expect to work closely with software development teams as well as third-party organizations to ensure that security, privacy, and compliance requirements are planned for, designed, and built into software applications at Blackbaud.

In addition to securing software, you will be expected to stay up-to-date on what’s happening in the Cyber Security industry in order to optimize and align our application security processes and systems throughout the Software Development Life Cycle (SDLC) at Blackbaud.

The Application Security Engineering team focuses on building automation for security self-service and vulnerability management to reduce unnecessary toil.

What you will be doing :

Identifying solutions for difficult security problems while participating in a broader agile Application Security team.

Building comprehensive solutions to conduct consolidation, aggregation, and notification of security findings to respective stakeholders.

Conducting threat modeling, secure design reviews, and providing direct guidance to development teams.

Promoting, designing, and evaluating application security in all phases of the SDLC and constantly looking for innovative ways to improve processes.

Influencing, building, and assisting with information security challenges within applications.

What we'll want you to have :

You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and engineering.

3+ plus years experience with open source and commercial application security testing and analysis tools for DAST, SAST, SCA, and Attack Surface Management, e.

g. Burp Suite, OWASP Zap, Rapid 7 InsightAppSec, AppScan, Fortify, Checkmarx, Coverity, Semgrep, OWASP Dependency Check, Mend, Blackduck, OWASP Amass, Spiderfoot, and various programming language linters.

3+ years experience with Python, Bash, and / or PowerShell.

3+ years experience in integrating security solutions into CI-CD pipelines and automating tooling orchestration.

Experience partnering with development and systems engineers on impactful security initiatives.

Understanding of software development; how it is designed, built, and can be broken is critical.

Understand DevSecOps cultural mindsets, and an engineering focused approach to solving complex security problems.

Strong verbal and written communication skills to translate security objectives and requirements to specific engineering outcomes.

The Application Security team at Blackbaud is committed to ensuring security issues are prevented, discovered, and remediated in collaboration with our engineering partners across the business.

If that description fits your approach to security, we’d love to chat with you about what you can do to help our mission!

LI-REMOTE

Blackbaud is a remote-first company which embraces a flexible remote work culture. Blackbaud supports hiring and career development for all roles from the location you are in today!

30+ days ago
Related jobs
Promoted
VirtualVocations
New York, New York

A company is looking for a Network Cyber Security Engineer to enhance their cybersecurity infrastructure. ...

Promoted
Capital One
New York, New York

Senior Platform Engineer, Workday (Security). The Workday Security Platform Engineer will be responsible for leading the design, implementation, and maintenance of security measures to protect Capital One HR Workday environment. The WD Security Engineer will act as a subject matter expert in Workday...

Promoted
VirtualVocations
Queens, New York

A company is looking for a Senior Security Operations Engineer II. ...

Promoted
SSH Communications Security
New York, New York

SSH Communications Security is a European defensive cybersecurity company and a pioneer of secure communications. Senior Professional Services Engineer. Senior Professional Services Engineer. Our solutions gatekeep access and defend secrets when people, applications and systems need to communic...

Promoted
VirtualVocations
New York, New York

A company is looking for a Senior Platform Engineer, Infrastructure & Security. ...

Promoted
QUEENS DISTRICT ATTORNEY'S OFFICE
Queens, New York

The Office of the Queens County District Attorney (QDA) is seeking an experienced Senior Cyber Security Engineer whose responsibilities will include, but are not limited to:. If you are considering sending an application, make sure to hit the apply button below after reading through the entire descr...

SoFi
New York, New York

As a Senior Application Security Engineer, you will be responsible for building and implementing security tools and services to support the development of SoFi’s platforms, products, and services. SoFi Application Security team assists and partners with engineering, product and design organizations....

Palantir
New York, US

As a Senior Front End Software Engineer focused on application development in Foundry, you will be responsible for crafting the tools used by thousands of users to build the sophisticated applications that power their businesses. We're transforming the way organizations securely integrate their data...

Datadog
New York, New York

You have prior experience in Development Operations, Software Engineering, Systems Engineering, Security Architecture, Cloud Security or Offensive Security. We work closely with engineers across various domains of the Datadog infrastructure stack, driving a culture of empowering engineers to have st...

Justworks
New York, New York

Justworks is looking for a hands-on Senior Security Engineer with an Identity and Access Management (IAM) focus within Digital Security’s Security Architecture & Engineering (SAE) function. As a Senior Security Engineer, how results are achieved is paramount for your success and ultimately result in...