Talent.com
Cybersecurity Application Security Engineer
Cybersecurity Application Security EngineerNelnet • Lansing, MI, United States
[error_messages.no_longer_accepting]
Cybersecurity Application Security Engineer

Cybersecurity Application Security Engineer

Nelnet • Lansing, MI, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Nelnet is a diversified and innovative company committed to enriching lives through the power of service as a student loan servicer, professional services company, consumer loan originator and servicer, payments processor, renewable energy solutions, and K-12 and higher education expert. For over 40 years, Nelnet has been serving its customers, associates, and communities.

The perks of working at Nelnet go beyond our benefits package. When you join the Nelnet team, you're part of a community invested in the success of each individual. That support comes through in our work, as we are united by our mission of creating opportunities for people where they live, learn, and work.

We are seeking a highly skilled Application Security Engineer with strong experience across secure code review, penetration testing, automation, and modern SDLC practices-including emerging AI / LLM security. In this role, you will partner closely with engineering, cloud, and product teams to safeguard our applications, services, and AI-driven components from design through production. You will combine hands-on technical testing with scalable automation and developer enablement to mature our AppSec program and ensure secure, resilient applications at speed.

This position offers a hybrid work option. Nelnet values flexibility and understands the importance of work-life integration. Our hybrid work environment allows associates Living within 30 miles of an office location to work remotely for part of the week, while also fostering collaboration and team connection through in-office presence three days per week.

Please note that we are unable to provide visa sponsorship for this position. To be considered, candidates must already be authorized to work in the United States without the need for current or future sponsorship.

Job Description

Manual Source Code Review

SAST / DAST scanning

Expand the Security Champions program

Develop automated source code review processes

Work with product teams to ensure secure SDLC processes are in place

Provide detail vulnerability reports to businesses

EXPERIENCE :

2-4 years of hands-on application security experience

Experience integrating security tooling and automated checks into CI / CD pipelines

Familiarity and experience with OWASP Top 10 and web testing methodologies

Experience with effectively assessing and communicating risks and appropriate levels of urgency to management and engineering staff

Experience with technical report writing and communication

COMPETENCIES - SKILLS / KNOWLEDGE / ABILITIES :

Needs :

Strong manual code review experience in at least one major language (Java, JavaScript / TypeScript, C#, PHP, etc.)

Solid threat-modeling expertise (STRIDE, attack trees, misuse cases) for both traditional systems and AI / LLM-integrated features

Proficiency with SAST, SCA, DAST, web and mobile pentesting, container scanners, secrets-detection tools, and ideally AI-security scanning platforms

Experience integrating security tooling and automated checks into CI / CD pipeline

Scripting / automation skills (Python, Bash, Node) for building custom tooling and automating manual processes

Good understanding of AI / LLM attack surfaces including prompt injection, insecure output handling, model-data leakage, and RAG vulnerabilities

Strong knowledge of web / API security concepts (session management, secure storage, transport security)

Excellent organizational, presentation, verbal, and written communication skills

Ability to effectively assess and communicate risks and appropriate levels of urgency to management and engineering staff

Aptitude for self-study, setting and achieving long term goals

Actively seeks to remain technically current and increase expertise and abilities

Challenges prevailing assumptions when appropriate

Willing to adapt to changing technology and business landscapes

Considers change as opportunities to be challenged and grow

Ability to adapt style of communications to match audience and information sharing needs

Wants :

Experience performing secure code reviews or building internal developer tooling.

Previous work with AI or LLM-integrated applications , model security, or prompt safety.

Experience with mobile security , reverse engineering, or platform-specific secure coding.

Certifications such as OSWE, OSCP, GWAPT, GCSA, GCPN, or ML security certs (not required but beneficial).

Ability to mentor junior developers / engineers in secure design and coding practices.

Pay range for this role is $90,000-$125,000 annually, depending on experience.

#LI-CW1

#LI-Hybrid

#LI-REMOTE

Our benefits package includes medical, dental, vision, HSA and FSA, generous earned time off, 401K / student loan repayment, life insurance & AD&D insurance, employee assistance program, employee stock purchase program, tuition reimbursement, performance-based incentive pay, short- and long-term disability, and a robust wellness program. Click here to learn more about our benefits : LINK () .

Nelnet is committed to providing a welcoming and respectful workplace where all associates have the opportunity to succeed. As an Equal Opportunity Employer, we ensure that all qualified applicants are considered for employment. Employment decisions are made without regard to race, color, religion / creed, national origin, gender, sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military / veteran status, or any other status protected by federal, state, or local law. We value the unique contributions of every team member and believe that a positive work environment benefits everyone.

Qualified individuals with disabilities who require reasonable accommodations in order to apply or compete for positions at Nelnet may request such accommodations by contacting Corporate Recruiting at 402-486-5725 or corporaterecruiting@nelnet.net .

Nelnet is a Drug Free and Tobacco Free Workplace.

You may know Nelnet as the nation's largest student loan servicer - but we do more than that. A lot more. We're also a professional services company, consumer loan originator and servicer, payment processor, renewable energy innovator, and K-12 and higher education expert (and that's just a shortlist). For over 40 years, we've been serving our customers, associates, and communities to make dreams possible.

EEO Info () | EEO Letter () | EPPA Info () | FMLA Info ()

[job_alerts.create_a_job]

Application Security Engineer • Lansing, MI, United States

[internal_linking.similar_jobs]
Remote Side Hustle Evaluator - Flexible Online Gig Work

Remote Side Hustle Evaluator - Flexible Online Gig Work

Finance Buzz • Albion, Michigan, US
[filters.remote]
[job_card.temporary]
Are you looking to earn extra income from the comfort of your home? We're seeking motivated individuals to explore and test a variety of remote side hustle opportunities featured on FinanceBuzz.Thi...[show_more]
[last_updated.last_updated_1_day] • [promoted]
IT Security Architect 3 - Lansing, MI (Hybrid)

IT Security Architect 3 - Lansing, MI (Hybrid)

Sunrise Systems • Lansing, Michigan, United States
[job_card.full_time]
[filters_job_card.quick_apply]
Job Title : IT Security Architect 3.Duration : 1 year with possible extension.This resource will provide cybersecurity architecture, design, and consulting services to the Client's through the Depart...[show_more]
[last_updated.last_updated_30]
Cyber Security - IT Security Auditor

Cyber Security - IT Security Auditor

Sunrise Systems • Dimondale, Michigan, United States
[job_card.full_time]
[filters_job_card.quick_apply]
Minimum of 5+ years of total IT related experience.Federal, Industry and Open-Source Security Guidance and Secure Coding Practices (OWASP Top 10, SANS, CERT, CWE Top 25, Critical Security Controls,...[show_more]
[last_updated.last_updated_30]
Cybersecurity Specialist

Cybersecurity Specialist

Ladgov Corporation • Lansing, MI, US
[job_card.full_time]
[filters_job_card.quick_apply]
Supports protection of exercise-related systems, communications, and data.Develops information products and manages secure information flow. Lansing, MI Duties : Apply cybersecurity policies during e...[show_more]
[last_updated.last_updated_30]
Lansing, MI - IT - DTMB - Agency Services - MSP - IT Security Architect 2

Lansing, MI - IT - DTMB - Agency Services - MSP - IT Security Architect 2

Sunrise Systems • Dimondale, Michigan, United States
[job_card.full_time]
[filters_job_card.quick_apply]
Job Title : Security Architect 2.Duration : 12 months of contract.Top Skills & Years of Experience : .Strong knowledge of - NIST SP800-53 Rev 4 & 5, HIPAA, FERPA, etc.Willingness to serve as a ...[show_more]
[last_updated.last_updated_30]
Applied Scientist 4

Applied Scientist 4

Oracle • Lansing, MI, United States
[job_card.full_time]
We are looking for a Principal Applied Scientist to join our Security Engineering organization and help define the future of security operations for Oracle's SaaS ecosystem.This role offers a rare ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Risk Consulting - Cloud Risk - Manager - Multiple Cities

Risk Consulting - Cloud Risk - Manager - Multiple Cities

EY • Lansing, MI, United States
[job_card.full_time]
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. At EY, you’ll have the chance to build a career as unique as you are...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Side Hustle Project Lead

Side Hustle Project Lead

Finance Buzz • Dewitt, Michigan, US
[job_card.full_time] +1
We’re offering a role for someone who wants to lead their own side-income project in their spare time.You’ll explore various proven side hustles, select the ones that fit your lifestyle, and run th...[show_more]
[last_updated.last_updated_1_day] • [promoted]
Senior Manager, Security Architecture

Senior Manager, Security Architecture

Oracle • Lansing, MI, United States
[job_card.full_time]
We are seeking an experienced, passionate, and talented Senior Manager, Security Architecture who has genuine excitement and interest in application, cloud, and network security.You must relish the...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Applied Scientist (Pricing)

Senior Applied Scientist (Pricing)

Coinbase • Lansing, MI, United States
[job_card.full_time]
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Auditor

Security Auditor

Kaav Inc. • Lansing, MI, United States
[job_card.full_time]
Senior Full Stack Application Development Security Auditor who is passionate about designing and building secure platforms and applications through Dynamic, Static and Software Composition Analysis...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Sr. Manager - Services Presales - Cybersecurity

Sr. Manager - Services Presales - Cybersecurity

SHI GmbH • Lansing, MI, United States
[job_card.full_time]
Since 1989, SHI International Corp.We've grown every year since, and today we're proud to be a $16 billion global provider of IT solutions and services. Over 17,000 organizations worldwide rely on S...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Payments Risk Analyst II, Operations

Payments Risk Analyst II, Operations

Coinbase • Lansing, MI, United States
[job_card.full_time]
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Manager, Risk Analytics

Manager, Risk Analytics

Coinbase • Lansing, MI, United States
[job_card.full_time]
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Applied Scientist 3

Applied Scientist 3

Oracle • Lansing, MI, United States
[job_card.full_time]
Security Engineering organization and help.As a Senior IC, you will architect and develop.You will work directly with massive, noisy, and adversarial telemetry. build models that must operate at ex...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
IT Security Analyst 3

IT Security Analyst 3

Global Information Technology • Windsor Charter Township, MI, USA
[job_card.full_time]
[filters_job_card.quick_apply]
Job Title : IT Security Analyst 3.Job Location : Dimondale, MI (Hybrid).Plans, schedules, implements and maintains scalable vulnerability scans using modern vulnerability management scanning tools fo...[show_more]
[last_updated.last_updated_30]
Project Manger (Hybrid)

Project Manger (Hybrid)

A-Line Staffing Solutions LLC • Lansing, MI, US
[job_card.full_time]
Location : Lansing, MI (Hybrid).Note : This is a W2 contract role – 1099, C2C, and 3 rd party candidates will NOT be considered. This Senior Project Manager (PM3) position will assist the State of Mic...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Applied Scientist 5

Applied Scientist 5

Oracle • Lansing, MI, United States
[job_card.full_time]
We are looking for a Principal Applied Scientist to join our Security Engineering organization and help define the future of security operations for Oracle's SaaS ecosystem.This role offers a rare ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]