Develop and maintain applications to support our application security concepts
Develop security reference implementations
Integrate security into our build and deploy pipelines
Maintain security controls and measure implementation across technology platforms, .NET, Java, Cloud, etc
Enable controls to monitor our development supply chain (i.e.third party dependencies)
Remediate and facilitate the resolution of vulnerabilities
Participate and facilitate Risk Assessment and Threat Modeling
Serve as an auditing, consulting, and training resource to all Nelnet product teams
Perform appropriate vulnerability scanning – static and dynamic analysis
Work with external entities that are performing vulnerability scans
Participate in tool and vendor selection process from a security perspective.
Create and update learning resources for application security
Develop and present on application security topics for a wide variety of audiences
Stay informed about application security best practices across Nelnet development platforms including web, mobile, and cloud
Requirements
BS / MS in Computer Science, Engineering, related discipline or equivalent experience
Minimum 2 years of experience in web application software development.
Minimum 1 years of experience focused on Application Security.
Understanding of a variety of application development architectures, platforms, methodologies, and supporting operating system
Experience identifying and protecting against web application and web-service security vulnerabilities including those found in the OWASP Top 10 and CWE Top 25
Knowledge of authentication and authorization, cryptography, and API security
Ability to identify, triage, manage, and remediate security vulnerabilities
Experience with build processes and CI/CD
Knowledge of cloud technologies
Experience with web and API development technologies such as .NET, Java, NPM, Angular, React
Application Security Engineer focused on securing proprietary data and systems. Collaborating on cybersecurity strategies and improving software security measures.
Senior Applications Engineer designing high density 400V+ DCDC isolated converters. Collaborating with cross - functional teams for application support and technical training.
Applications Engineer delivering cost - effective solutions for CNC machining and injection molding at a leading digital manufacturing platform. Evaluating RFQs and collaborating with teams on design and production.
Software Application Engineer at Warner Music Group maintaining and upgrading technical systems. Collaborating in a hybrid environment with varied tech stacks and ensuring system reliability.
Cloud & Application Security Engineer building security - first culture across the firm. Working with development and operations teams to remediate vulnerabilities and drive security practices.
Kafka Engineer managing real - time streaming pipelines with a focus on scaling and fault tolerance. Collaborating with DevOps teams to automate deployments and monitoring for enterprise systems.
Module Application Engineer focusing on developing suspension systems for major OEMs. Collaborating with technology partners to enhance vehicle performance and reliability.
Product Application Engineer for Danfoss Power Solutions segment. Providing technical support and training for products and customers in Xuzhou, China.