Develop and maintain applications to support our application security concepts
Develop security reference implementations
Integrate security into our build and deploy pipelines
Maintain security controls and measure implementation across technology platforms, .NET, Java, Cloud, etc
Enable controls to monitor our development supply chain (i.e.third party dependencies)
Remediate and facilitate the resolution of vulnerabilities
Participate and facilitate Risk Assessment and Threat Modeling
Serve as an auditing, consulting, and training resource to all Nelnet product teams
Perform appropriate vulnerability scanning – static and dynamic analysis
Work with external entities that are performing vulnerability scans
Participate in tool and vendor selection process from a security perspective.
Create and update learning resources for application security
Develop and present on application security topics for a wide variety of audiences
Stay informed about application security best practices across Nelnet development platforms including web, mobile, and cloud
Requirements
BS / MS in Computer Science, Engineering, related discipline or equivalent experience
Minimum 2 years of experience in web application software development.
Minimum 1 years of experience focused on Application Security.
Understanding of a variety of application development architectures, platforms, methodologies, and supporting operating system
Experience identifying and protecting against web application and web-service security vulnerabilities including those found in the OWASP Top 10 and CWE Top 25
Knowledge of authentication and authorization, cryptography, and API security
Ability to identify, triage, manage, and remediate security vulnerabilities
Experience with build processes and CI/CD
Knowledge of cloud technologies
Experience with web and API development technologies such as .NET, Java, NPM, Angular, React
Cloud & Application Security Engineer building security - first culture across the firm. Working with development and operations teams to remediate vulnerabilities and drive security practices.
Kafka Engineer managing real - time streaming pipelines with a focus on scaling and fault tolerance. Collaborating with DevOps teams to automate deployments and monitoring for enterprise systems.
Module Application Engineer focusing on developing suspension systems for major OEMs. Collaborating with technology partners to enhance vehicle performance and reliability.
Product Application Engineer for Danfoss Power Solutions segment. Providing technical support and training for products and customers in Xuzhou, China.
Senior Application Engineer providing technical and product support across the Asia Pacific region. Supporting installations, troubleshooting, and customer training for HVAC systems.
Application Engineer consulting clients on solutions in automation and adhesive fields. Involves customer relationship management and participation in industry events.
Product Application Engineer identifying solutions for customers with hydraulic valves and pumps at Danfoss, driving technical excellence and collaborative problem - solving.
Senior GIS Application Engineer designing and maintaining ESRI - based GIS infrastructure for impactful geospatial solutions at TfL. Supporting the organization with reliability and performance of GIS systems.
Application Support Engineer responsible for production support and improving application performance at Brillio, enhancing customer satisfaction through technical expertise.