Senior Application Security Engineer

Blackbaud
Remote, Indiana, US
Remote
Full-time

We’re hiring on the Blackbaud Application Security team!

As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built and / or used by Blackbaud.

You can expect to work closely with software development teams as well as third-party organizations to ensure that security, privacy, and compliance requirements are planned for, designed, and built into software applications at Blackbaud.

In addition to securing software, you will be expected to stay up-to-date on what’s happening in the Cyber Security industry in order to optimize and align our application security processes and systems throughout the Software Development Life Cycle (SDLC) at Blackbaud.

The Application Security Engineering team focuses on building automation for security self-service and vulnerability management to reduce unnecessary toil.

What you will be doing :

Identifying solutions for difficult security problems while participating in a broader agile Application Security team.

Building comprehensive solutions to conduct consolidation, aggregation, and notification of security findings to respective stakeholders.

Conducting threat modeling, secure design reviews, and providing direct guidance to development teams.

Promoting, designing, and evaluating application security in all phases of the SDLC and constantly looking for innovative ways to improve processes.

Influencing, building, and assisting with information security challenges within applications.

What we'll want you to have :

You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and engineering.

3+ plus years experience with open source and commercial application security testing and analysis tools for DAST, SAST, SCA, and Attack Surface Management, e.

g. Burp Suite, OWASP Zap, Rapid 7 InsightAppSec, AppScan, Fortify, Checkmarx, Coverity, Semgrep, OWASP Dependency Check, Mend, Blackduck, OWASP Amass, Spiderfoot, and various programming language linters.

3+ years experience with Python, Bash, and / or PowerShell.

3+ years experience in integrating security solutions into CI-CD pipelines and automating tooling orchestration.

Experience partnering with development and systems engineers on impactful security initiatives.

Understanding of software development; how it is designed, built, and can be broken is critical.

Understand DevSecOps cultural mindsets, and an engineering focused approach to solving complex security problems.

Strong verbal and written communication skills to translate security objectives and requirements to specific engineering outcomes.

The Application Security team at Blackbaud is committed to ensuring security issues are prevented, discovered, and remediated in collaboration with our engineering partners across the business.

If that description fits your approach to security, we’d love to chat with you about what you can do to help our mission!

LI-REMOTE

Blackbaud is a remote-first company which embraces a flexible remote work culture. Blackbaud supports hiring and career development for all roles from the location you are in today!

2 hours ago
Related jobs
Promoted
Highmark Health
Indianapolis, Indiana

The Identity & Access Management Senior Security Engineer is responsible for acting as resource, leader, and peer coach with other engineers in the development, testing, implementation, and integration of Identity and Access Management systems and solutions. Experience working within an information ...

Promoted
Facebook
Indianapolis, Indiana

Summary: Facebook is seeking a data center Critical Facility Engineer to join our Data Center Facility Operations team. The Critical Facility Engineer will be a part of the Facility Operations team responsible for operating and maintaining critical systems in our data centers. Required Skills: Criti...

Group 1001
Zionsville, Indiana

The Application Security Engineer at Group 1001 will lead efforts to integrate security best practices into the software development lifecycle, ensuring the security and integrity of our applications from design to deployment. Job Title: Senior Application Security Engineer. This role requires exper...

Blackbaud
Remote, Indiana, US
Remote

You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and enginee...

Arrow Electronics, Inc.
Indianapolis, Indiana
Remote

This position is responsible for combination of security design and implementation work, as well as design, implementation, and enhancements of Arrow corporate security infrastructure. Liaise between engineering and other departments on security related items. Knowledge of Private Cloud based secure...

Group 1001
Zionsville, Indiana

The Network Security Engineer at Group 1001 will play a pivotal role in fortifying our network infrastructure against emerging threats, implementing robust security protocols, and strategically supporting cybersecurity resilience. Job Title: Senior Network Security Engineer. Deploy, maintain availab...

Arrow Electronics, Inc.
IN, United States

Senior Security Infrastructure Engineer. This position is responsible for combination of security design and implementation work, as well as design, implementation, and enhancements of Arrow corporate security infrastructure. Liaise between engineering and other departments on security related items...

KPMG-UnitedStates
Indianapolis, Indiana

Advanced knowledge and understanding of security engineering, system and network security, authentication and security protocols, cryptography, or application security. Minimum ten years of recent experience with at least three of the following: Security Architecture, threat modelling experience, id...

Highmark Health
Indianapolis, Indiana

The Identity & Access Management Senior Security Engineer is responsible for acting as resource, leader, and peer coach with other engineers in the development, testing, implementation, and integration of Identity and Access Management systems and solutions. Experience working within an information ...

Barnes & Thornburg
Indianapolis, Indiana

Under the direct supervision of the Director of Information Security the Information Security Senior engineer will assist with the design, deployment and operationalization of information security and cyber security technologies. The Information Security Senior Engineer will have very strong interpe...