Senior Application Security Engineer

Blackbaud
Remote, Kentucky, US
Remote
Full-time

We’re hiring on the Blackbaud Application Security team!

As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built and / or used by Blackbaud.

You can expect to work closely with software development teams as well as third-party organizations to ensure that security, privacy, and compliance requirements are planned for, designed, and built into software applications at Blackbaud.

In addition to securing software, you will be expected to stay up-to-date on what’s happening in the Cyber Security industry in order to optimize and align our application security processes and systems throughout the Software Development Life Cycle (SDLC) at Blackbaud.

The Application Security Engineering team focuses on building automation for security self-service and vulnerability management to reduce unnecessary toil.

What you will be doing :

Identifying solutions for difficult security problems while participating in a broader agile Application Security team.

Building comprehensive solutions to conduct consolidation, aggregation, and notification of security findings to respective stakeholders.

Conducting threat modeling, secure design reviews, and providing direct guidance to development teams.

Promoting, designing, and evaluating application security in all phases of the SDLC and constantly looking for innovative ways to improve processes.

Influencing, building, and assisting with information security challenges within applications.

What we'll want you to have :

You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and engineering.

3+ plus years experience with open source and commercial application security testing and analysis tools for DAST, SAST, SCA, and Attack Surface Management, e.

g. Burp Suite, OWASP Zap, Rapid 7 InsightAppSec, AppScan, Fortify, Checkmarx, Coverity, Semgrep, OWASP Dependency Check, Mend, Blackduck, OWASP Amass, Spiderfoot, and various programming language linters.

3+ years experience with Python, Bash, and / or PowerShell.

3+ years experience in integrating security solutions into CI-CD pipelines and automating tooling orchestration.

Experience partnering with development and systems engineers on impactful security initiatives.

Understanding of software development; how it is designed, built, and can be broken is critical.

Understand DevSecOps cultural mindsets, and an engineering focused approach to solving complex security problems.

Strong verbal and written communication skills to translate security objectives and requirements to specific engineering outcomes.

The Application Security team at Blackbaud is committed to ensuring security issues are prevented, discovered, and remediated in collaboration with our engineering partners across the business.

If that description fits your approach to security, we’d love to chat with you about what you can do to help our mission!

LI-REMOTE

Blackbaud is a remote-first company which embraces a flexible remote work culture. Blackbaud supports hiring and career development for all roles from the location you are in today!

19 days ago
Related jobs
Promoted
Zantech
Fort Knox, Kentucky

Zantech is looking for a talented Senior Cyber Security Engineer to serve as the Government’s point of contact and to provide assistance in designing, and evaluation of products, as well as collaboration with production management for an upcoming contract. The Senior Cyber Security Engineer will be ...

Promoted
Trane Technologies
Lexington, Kentucky

Senior Custom Application Engineer. Application Engineer will interface directly with outside sales teams and their clients in day-to-day activities of order procurement and act as a product expert to direct and review selections, specifications, and drawings. The Application Engineer will also be r...

AKIMA
Fort Knox, Kentucky

AGT is looking for a Senior Application Programmer to work in Fort Knox, Kentucky. Under general supervision, modifies moderately complex applications programs from detailed specification. Competent to work on most phases of applications programming activities but requires instruction and guidance i...

Buildertrend
Louisville, Kentucky
Remote

Security Engineer or Cloud Engineer, with a focus on public cloud security and network security required. Work closely with Cloud Engineers and Site Reliability Engineers to implement and manage advanced security technologies and tools on public cloud platforms, such as identity and access managemen...

The Maven Group, LLC
Buffalo, Kentucky

The chosen Network Security Engineer will be a lead member of the cybersecurity engineering team, providing subject matter expert level support for the enterprise Network Security design and monitoring activities. Our 70-year-old global Aerospace & Defense client has asked The Maven Group to locate ...

The Maven Group, LLC
Buffalo, Kentucky

The chosen Network Security Engineer will be a lead member of the cybersecurity engineering team, providing subject matter expert level support for the enterprise Network Security design and monitoring activities. Our 70-year-old global Aerospace & Defense client has asked The Maven Group t...

Yum! Brands
Louisville, Kentucky

Partner with Pizza Hut US teams to provide security guidance as a subject matter expert around application security and operate YUM! application security services for the brand. YUM! is looking for an Applications Security Engineer to join our Pizza Hut Security Team in Louisville, Kentucky! . Lever...

Ryder System, Inc.
Frankfort, Kentucky
Remote

Conduct security assessments that require expertise of our organization's applications using both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies. The Application Security Engineer must understand development, coding, security engineering, and...

Zantech
Fort Knox, Kentucky

Zantech is looking for a talented Senior Cyber Security Engineer to serve as the Government's point of contact and to provide assistance in designing, and evaluation of products, as well as collaboration with production management for an upcoming contract. The Senior Cyber Security Engineer will be ...

Semtech
US, Kentucky

The Senior Applications Engineer will be responsible for providing engineering consultation and technical support to customers and trusted partners, integrating Sierra Wireless WWAN modules, and helping commercialize a variety of customer platforms. Minimum of a bachelor’s degree in electrical engin...