Application Security Engineer safeguarding applications and AI-driven components at Nelnet. Collaborating closely with engineering, cloud, and product teams to ensure security at speed.
Responsibilities
Manual Source Code Review
SAST/DAST scanning
Expand the Security Champions program
Develop automated source code review processes
Work with product teams to ensure secure SDLC processes are in place
Provide detail vulnerability reports to businesses
Requirements
2–4 years of hands-on application security experience
Experience integrating security tooling and automated checks into CI/CD pipelines
Familiarity and experience with OWASP Top 10 and web testing methodologies
Experience with effectively assessing and communicating risks and appropriate levels of urgency to management and engineering staff
Experience with technical report writing and communication
Strong manual code review experience in at least one major language (Java, JavaScript/TypeScript, C#, PHP, etc.)
Solid threat-modeling expertise (STRIDE, attack trees, misuse cases) for both traditional systems and AI/LLM-integrated features
Proficiency with SAST, SCA, DAST, web and mobile pentesting, container scanners, secrets-detection tools, and ideally AI-security scanning platforms
Experience integrating security tooling and automated checks into CI/CD pipeline
Scripting/automation skills (Python, Bash, Node) for building custom tooling and automating manual processes
Good understanding of AI/LLM attack surfaces including prompt injection, insecure output handling, model-data leakage, and RAG vulnerabilities
Strong knowledge of web/API security concepts (session management, secure storage, transport security)
Excellent organizational, presentation, verbal, and written communication skills
Ability to effectively assess and communicate risks and appropriate levels of urgency to management and engineering staff
Ability to mentor junior developers/engineers in secure design and coding practices
Experience performing secure code reviews or building internal developer tooling.
Previous work with AI or LLM-integrated applications, model security, or prompt safety.
Certifications such as OSWE, OSCP, GWAPT, GCSA, GCPN, or ML security certs (not required but beneficial).
Technical Lead working within a cross - functional scrum team at Vanguard. Lead and coach developers, ensuring viability of IT deliverables with strong programming background.
Technical Architect designing application architectures for SAS Viya solutions on Azure and AWS. Collaborating with teams to deliver reliable and scalable cloud - based solutions.
Technical Customer Support Engineer at congatec providing support throughout the software product design lifecycle. Ensuring customer satisfaction and collaborating closely with various teams.
Field Application Engineer providing technical support throughout the product lifecycle for congatec software products. Ensure high customer satisfaction through technical support and customer trainings.
Application Support Engineer managing application support for pharmaceutical production systems in Indianapolis. Partnering with global teams to ensure reliability and compliance in a regulated environment.
Mid - level Application Support Engineer providing Tier 2 / Tier 3 support for manufacturing applications at PA Solutions. Strong SQL experience needed to ensure system reliability in a regulated environment.
Application Security Engineer providing expertise in cybersecurity for government projects. Collaborating within a team to perform security assessments and enhance secure development practices.
Applications Engineer providing pre - sales technical support for robotics solutions at Brooks Automation. Supporting OEMs and distributors with expertise in motion control and collaborative robotics technology.
Senior Quantum Applications Engineer working with partners on quantum algorithms and applications. Mapping solutions to Atom Computing hardware and guiding fault tolerant algorithm development.
Technical liaison for valued customers in the beverage - focused application engineering role. Support sales and provide solutions while traveling to customer sites across North America.