Enable job alerts via email!

Senior Application Security Engineer

Blackbaud

Roseville (CA)

Remote

USD 90,000 - 130,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking an Application Security Engineer to enhance software security within their Cyber Security organization. This role involves collaborating with development teams to integrate security practices throughout the Software Development Life Cycle (SDLC). You'll tackle complex security challenges, conduct threat modeling, and promote security best practices. The company champions a remote-first culture, offering flexibility and support for career development. If you're passionate about bridging the gap between security and software development, this is an exciting opportunity to make a significant impact!

Qualifications

  • 3+ years experience with application security testing tools.
  • Strong understanding of software development and security best practices.

Responsibilities

  • Identify solutions for security challenges in an agile environment.
  • Conduct threat modeling and secure design reviews.

Skills

Application Security Testing
Python
Bash
PowerShell
DevSecOps
Threat Modeling
Secure Design Reviews
Agile Development
Communication Skills

Tools

Burp Suite
OWASP Zap
Rapid 7 InsightAppSec
AppScan
Fortify
Checkmarx
Coverity
Semgrep
OWASP Dependency Check
Mend
Blackduck
OWASP Amass
Spiderfoot

Job description

We’re hiring on the Blackbaud Application Security team!

As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built and/or used by Blackbaud. You can expect to work closely with software development teams as well as third-party organizations to ensure that security, privacy, and compliance requirements are planned for, designed, and built into software applications at Blackbaud. In addition to securing software, you will be expected to stay up-to-date on what’s happening in the Cyber Security industry in order to optimize and align our application security processes and systems throughout the Software Development Life Cycle (SDLC) at Blackbaud. The Application Security Engineering team focuses on building automation for security self-service and vulnerability management to reduce unnecessary toil.

What you will be doing:

  1. Identifying solutions for difficult security problems while participating in a broader agile Application Security team.
  2. Building comprehensive solutions to conduct consolidation, aggregation, and notification of security findings to respective stakeholders.
  3. Conducting threat modeling, secure design reviews, and providing direct guidance to development teams.
  4. Promoting, designing, and evaluating application security in all phases of the SDLC and constantly looking for innovative ways to improve processes.
  5. Influencing, building, and assisting with information security challenges within applications.

What we'll want you to have:

  1. You are either a security-minded software engineer who has been building modern services using a microservice architecture in an agile development environment or a development-interested security practitioner who understands security best practices, but wants to get closer to development and engineering.
  2. 3+ years experience with open source and commercial application security testing and analysis tools for DAST, SAST, SCA, and Attack Surface Management, e.g. Burp Suite, OWASP Zap, Rapid 7 InsightAppSec, AppScan, Fortify, Checkmarx, Coverity, Semgrep, OWASP Dependency Check, Mend, Blackduck, OWASP Amass, Spiderfoot, and various programming language linters.
  3. 3+ years experience with Python, Bash, and/or PowerShell.
  4. 3+ years experience in integrating security solutions into CI-CD pipelines and automating tooling orchestration.
  5. Experience partnering with development and systems engineers on impactful security initiatives.
  6. Understanding of software development; how it is designed, built, and can be broken is critical.
  7. Understand DevSecOps cultural mindsets, and an engineering-focused approach to solving complex security problems.
  8. Strong verbal and written communication skills to translate security objectives and requirements to specific engineering outcomes.

The Application Security team at Blackbaud is committed to ensuring security issues are prevented, discovered, and remediated in collaboration with our engineering partners across the business.

If that description fits your approach to security, we’d love to chat with you about what you can do to help our mission!

LI-REMOTE

Blackbaud is a remote-first company which embraces a flexible remote work culture. Blackbaud supports hiring and career development for all roles from the location you are in today!

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Application Security Engineer

Promote Project

null null

Remote

Remote

USD 67 000 - 123 000

Full time

12 days ago

Senior Application Security Engineer

Babylon

null null

Remote

Remote

USD 100 000 - 150 000

Full time

Today
Be an early applicant

Senior Application Security Engineer

TRM Labs

null null

Remote

Remote

USD 120 000 - 160 000

Full time

Today
Be an early applicant

Senior Application Security Engineer

Hedera Hashgraph

null null

Remote

Remote

USD 100 000 - 150 000

Full time

Yesterday
Be an early applicant

Sr. Application Security Engineer (Remote)

Rula

Los Angeles null

Remote

Remote

USD 110 000 - 150 000

Full time

8 days ago

Senior Application Security Engineer - Virtual - USA

Kelly Services Inc.

null null

Remote

Remote

USD 100 000 - 130 000

Full time

10 days ago

Senior Application Security Engineer

Take-Two Interactive Software

null null

Remote

Remote

USD 100 000 - 140 000

Full time

11 days ago

[Hiring] Senior Application Security Engineer @Fortis Games

Fortis Games

null null

Remote

Remote

USD 100 000 - 150 000

Full time

19 days ago

MTA - Sr Application Security Engineer

McKesson

null null

Remote

Remote

USD 70 000 - 118 000

Full time

26 days ago