Application Security Engineer at Nelnet enhancing application security and development processes. Collaborating with IT teams to implement security measures across platforms for a secured tech environment.
Responsibilities
Develop and maintain applications to support our application security concepts
Develop security reference implementations
Integrate security into our build and deploy pipelines
Maintain security controls and measure implementation across technology platforms, .NET, Java, Cloud, etc
Enable controls to monitor our development supply chain (i.e.third party dependencies)
Remediate and facilitate the resolution of vulnerabilities
Participate and facilitate Risk Assessment and Threat Modeling
Serve as an auditing, consulting, and training resource to all Nelnet product teams
Perform appropriate vulnerability scanning – static and dynamic analysis
Work with external entities that are performing vulnerability scans
Participate in tool and vendor selection process from a security perspective.
Create and update learning resources for application security
Develop and present on application security topics for a wide variety of audiences
Stay informed about application security best practices across Nelnet development platforms including web, mobile, and cloud
Requirements
BS / MS in Computer Science, Engineering, related discipline or equivalent experience
Minimum 2 years of experience in web application software development.
Minimum 1 years of experience focused on Application Security.
Understanding of a variety of application development architectures, platforms, methodologies, and supporting operating system
Experience identifying and protecting against web application and web-service security vulnerabilities including those found in the OWASP Top 10 and CWE Top 25
Knowledge of authentication and authorization, cryptography, and API security
Ability to identify, triage, manage, and remediate security vulnerabilities
Experience with build processes and CI/CD
Knowledge of cloud technologies
Experience with web and API development technologies such as .NET, Java, NPM, Angular, React
Senior Business Systems Engineer for WMS team at Grainger optimizing supply chain tech. Leading integrations with ConnectShip and FedEx while ensuring operational excellence.
Application Engineer focusing on 2nd line support for business - critical application infrastructure. Working with international teams for application and system stability in a global setting.
Technical Application Engineer supporting the commercial and operations teams in Grid Automation projects. Involves customer interaction and technical support in the UK and Nordics region.
Application Engineer providing technical expertise in Protection & Control including IEC 61850. Collaborating with international teams and representing OMICRON at events and industry conferences.
Associate Application Support Engineer providing top tier application support at Lighthouse. Collaborating with IT for system improvements and handling client relationships in India.
Senior Application Engineer at Baker Hughes leading tendering efforts for subsea production systems. Engaging in design, compliance, and execution phases while collaborating with project teams.
Lead Application Engineer for Gas Power Services Complex focused on global energy technologies. Develop technical solutions and collaborate with commercial and sales teams for ITO process.
Applications Engineer preparing DCS proposals for power industry projects at Emerson. Leading power project offers for new generation, retrofits, and renewable power applications.
System & Application Engineer at Anglian Water applying Systems Thinking to manage hydraulic systems performance metrics. Collaborating with teams and ensuring quality in OT data and telemetry management.
Application Security Engineer in Accurate Background's Global Information Security team supporting SAST and DAST operations. Collaborating with teams to ensure proper application vulnerability assessments and remediation.