This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Ellucian designs technology that powers the educational mission of colleges and universities around the world. Inspired by that goal, Ellucian employees thrive as part of a high-performing global team committed to delivering a modern, connected, industry-leading experience for today's students and higher education institutions. More than 2,500 institutions in 50 countries around the world look to Ellucian for the ideas and insights that will move education forward, helping people everywhere discover their futures through learning. The individual in this position will be a contributor to DevSecOps and overall application security initiatives in Ellucian
Job Responsibility
Analyze the security of Ellucian applications and coding practices using a variety of tools and frameworks
Perform manual and automated application penetration testing
Provide guidance to development teams for remediating application security vulnerabilities
Develop innovative new DevSecOps solutions to application security problems
Act as an evangelist for DevSecOps and application security within Ellucian
Create and deliver application security training for product owners, business analysts, test engineers and developers
Lead ongoing process and policy improvement efforts
Provide mentoring to members of development teams
Conduct ongoing research of trends in application security practices, tools and utilities
Requirements
2 to 5 years of experience working as Application Security engineer or similar position
Thorough knowledge of SAST, DAST, SCA tooling
Extensive skills and experience performing application security / penetration testing using manual and automated tools including AI
Progressive application security and software development experience
Demonstrated technical skills, especially in the areas of enterprise application security, AI security testing, and secure development practices
A thorough understanding of OWASP application security tools, code libraries and documentation
Experience developing automated solutions to application security problems
Demonstrated ability to clearly communicate complex ideas verbally and in writing
Excellent troubleshooting, problem-solving, and analytical skills
Ability to occasionally work off-hours or extended hours in support of various projects
Nice to have
2-5 years in performing manual and tool driven penetration testing for web apps, APIs
Knowledge or experience of DevOps tooling such as Jenkins
Understanding of WAF, IAST & RASP
Understanding of containers, virtualization and orchestration tools
Experience securing Cloud applications in AWS
Application security certification such as CSSLP, GIAC GWAPT or similar