Minimum 5 years of experience in application security and testing tools., Proficiency in Python, Bash, and PowerShell for automation., Experience with DevSecOps and integrating security into CI/CD pipelines., Relevant security certifications such as Security+, CEH, or CSSLP are a plus..
Key responsibilities:
Identify solutions for complex security problems within an agile team.
Build and improve processes for security findings aggregation and notification.
Conduct threat modeling and secure design reviews with development teams.
Promote and evaluate application security throughout the Software Development Life Cycle.
Report this Job
Help us maintain the quality of our job listings. If you find any issues
with this job post, please let us know. Select the reason you're reporting
this job:
Blackbaud (NASDAQ: BLKB) is the leading software provider exclusively dedicated to powering social impact. Serving the nonprofit and education sectors, companies committed to social responsibility, and individual change makers, Blackbaud’s essential software is built to accelerate impact in fundraising, nonprofit financial management, digital giving, grantmaking, corporate social responsibility and education management.
With millions of users and $100 billion donated, granted, and invested through its platforms every year, Blackbaud’s solutions are unleashing the potential of the people and organizations who change the world.
Blackbaud has been named to Newsweek’s list of America’s Most Responsible Companies, Quartz’s list of Best Companies for Remote Workers, and Forbes’ list of America’s Best Employers. A remote-first company, Blackbaud has operations in the United States, Australia, Canada, Costa Rica and the United Kingdom, supporting users in 100+ countries. Learn more at blackbaud.com or follow us on LinkedIn, Twitter and Instagram.
We’re hiring on the Blackbaud Application Security team!
As a member of the Cyber Security organization at Blackbaud, the Application Security Engineer is a specialized position that plays a key role in securing software built andor used by Blackbaud. You can expect to work closely with software development teams as well as thirdparty organizations to ensure that security, privacy, and compliance requirements are planned for, designed, and built into software applications at Blackbaud. In addition to securing software, you will be expected to stay up to date on what’s happening in the Cyber Security industry to optimize and align our application security processes and systems throughout the Software Development Life Cycle (SDLC) at Blackbaud. The Application Security Engineering team focuses on building automation for security selfservice and vulnerability management to reduce unnecessary toil.
What you will be doing:
Identifying solutions for difficult security problems while participating in a broader agile Application Security team.
Building comprehensive solutions to conduct consolidation, aggregation, and notification of security findings to respective stakeholders.
Conducting threat modeling, secure design reviews, and providing direct guidance to development teams.
Promoting, designing, and evaluating application security in all phases of the SDLC and constantly looking for innovative ways to improve processes.
Influencing, building, and assisting with information security challenges within applications.
What well want you to have:
You are either a securityminded software engineer who has been building modern services using a microservice architecture in an agile development environment or a developmentinterested security practitioner who understands security best practices but wants to get closer to development and engineering.
5+ plus years of experience with application security and relevant testing tools for:
3+ years of experience with Python, Bash, andor PowerShell.
3+ years of experience in DevSecOps integrating security solutions into CICD pipelines and automated tooling orchestration.
Relevant certifications include CompTIA Security+ or CASP+, EC Council CEH, ISC2 CSSLP are a plus.
Experience partnering with development and systems engineers on impactful security initiatives.
Understanding of software development; how applications and systems are designed, built, and break is critical.
Understand DevSecOps cultural mindsets, and an engineeringfocused approach to solving complex security problems.
Strong verbal and written communication skills to translate security objectives and requirements to specific engineering outcomes.
The Application Security team at Blackbaud is committed to ensuring security issues are prevented, discovered, and remediated in collaboration with our engineering partners across the business.