Senior Application Security Engineer

Blackbaud
Remote, Ohio, US
Remote
Full-time

We’re hiring on the Blackbaud Application Security team!

As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built and / or used by Blackbaud.

You can expect to work closely with software development teams as well as third-party organizations to ensure that security, privacy, and compliance requirements are planned for, designed, and built into software applications at Blackbaud.

In addition to securing software, you will be expected to stay up-to-date on what’s happening in the Cyber Security industry in order to optimize and align our application security processes and systems throughout the Software Development Life Cycle (SDLC) at Blackbaud.

The Application Security Engineering team focuses on building automation for security self-service and vulnerability management to reduce unnecessary toil.

What you will be doing :

Identifying solutions for difficult security problems while participating in a broader agile Application Security team.

Building comprehensive solutions to conduct consolidation, aggregation, and notification of security findings to respective stakeholders.

Conducting threat modeling, secure design reviews, and providing direct guidance to development teams.

Promoting, designing, and evaluating application security in all phases of the SDLC and constantly looking for innovative ways to improve processes.

Influencing, building, and assisting with information security challenges within applications.

What we'll want you to have :

You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and engineering.

3+ plus years experience with open source and commercial application security testing and analysis tools for DAST, SAST, SCA, and Attack Surface Management, e.

g. Burp Suite, OWASP Zap, Rapid 7 InsightAppSec, AppScan, Fortify, Checkmarx, Coverity, Semgrep, OWASP Dependency Check, Mend, Blackduck, OWASP Amass, Spiderfoot, and various programming language linters.

3+ years experience with Python, Bash, and / or PowerShell.

3+ years experience in integrating security solutions into CI-CD pipelines and automating tooling orchestration.

Experience partnering with development and systems engineers on impactful security initiatives.

Understanding of software development; how it is designed, built, and can be broken is critical.

Understand DevSecOps cultural mindsets, and an engineering focused approach to solving complex security problems.

Strong verbal and written communication skills to translate security objectives and requirements to specific engineering outcomes.

The Application Security team at Blackbaud is committed to ensuring security issues are prevented, discovered, and remediated in collaboration with our engineering partners across the business.

If that description fits your approach to security, we’d love to chat with you about what you can do to help our mission!

LI-REMOTE

Blackbaud is a remote-first company which embraces a flexible remote work culture. Blackbaud supports hiring and career development for all roles from the location you are in today!

30+ days ago
Related jobs
Promoted
AEVEX Aerospace
Dayton, Ohio

A Senior Software Engineer is responsible for designing, developing, and maintaining software applications. Support both the evolution and continued development of existing applications and the design and delivery of new applications in an agile environment. Lead junior software engineers to design ...

Promoted
VirtualVocations
Toledo, Ohio

A company is looking for a Senior/Lead Security Engineer - IAM/IGA - Identity Governance and Administration. ...

Promoted
Physna
Columbus, Ohio

This is an exciting time to join Physna and make a personal difference in a rapidly growing space as a Security Engineer on a lean team. Familiarity with enterprise security controls and security best practices. Physna partners with large manufacturers and the Department of Defense to reduce risk in...

JPMorganChase
Columbus, Ohio

As a Senior Lead Security Engineer at JPMorgan Chase within the Employee Platforms - Core Data Risk Management team, you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing mis...

Fiserv
Columbus, Ohio

What does a successful Senior Security Engineer do at Fiserv?. Provide day-to-day leadership for a global engineering team that has engineering oversight responsibilities for enterprise endpoint security tools such as Tenable, Tanium and Crowdstrike. Define and implement security policy and procedur...

Vertiv
Westerville, Ohio

They will be responsible for ensuring that Vertiv products and applications (which are getting sold to end customer) are achieving required certifications and ensuring Engineering teams and Application owners stay in compliance with the security expectations of the global organization. Engineer, App...

Fiserv
Columbus, Ohio

Senior Open-Source Security Engineer. What does a successful Senior Open-Source Security Engineer do at Fiserv?. Familiarity with web application security principals and common vulnerabilities inkling OWASP Top Ten. You will design, implement, and maintain security measures for open-source software ...

TEKsystems
Pickerington, Ohio
Remote

Application security engineer*Some Devsecops/Vulnerability Engineer (NO AUTOMATION). RemoteDevelopment experience (prefer Java)SecurityOWASP Top 10Support all financial applicationsWill be responsible for molding, shaping, adhering to riskAPI, Asset Management, Etc. As an industry leader in Full-Sta...

Riverside Research
Beavercreek, Ohio

Riverside Research is seeking a Senior RF Engineer or Materials Scientist with experience in advanced military grade materials that support operations in extreme environments, e. Master’s degree in engineering discipline or related science, technology, engineering, and math (STEM) field. Riverside R...

Circle
Dublin, Ohio

Senior Security Engineer, Detection and ResponseCircle is a financial technologypany at the epicenter of the emerging internet of money, where value can finally travel like other digital data - globally, nearly instantly and less expensively than legacy settlement systems. Bachelor's degree inputer ...