Bonterra
Senior Product Security Engineer
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Bonterra
Bonterra is a leading social good software company, recognized as the second-largest and fastest-growing in its field. Formed through the merger of several brands, including CyberGrants and EveryAction, Bonterra's mission is to empower organizations that drive social impact across various sectors, including nonprofits, public agencies, and corporations. The name Bonterra reflects its commitment to creating a strong foundation for social good. The company offers an integrated software platform that connects social good organizations with their supporters. Bonterra provides enterprise-grade solutions that include case management tools, corporate social responsibility solutions, and nonprofit fundraising and engagement features. Its services support over 19,000 customers, including more than 15,000 nonprofits and over 50% of Fortune 100 companies. In 2022, Bonterra's tools facilitated over $12 billion in grants and supported 300,000 nonprofit fundraising efforts, impacting millions of lives. The company emphasizes inclusivity, innovation, and measurable impact, aiming to increase U.S. charitable giving significantly by 2033.
Security at Bonterra
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Bonterra's application security philosophy is centered on a 'Shift-Left' strategy, aiming to champion AppSec adoption and integrate security best practices directly into the software development lifecycle (SDLC).
- The company states that security and compliance are built into the organization at every level.
- The goal is to move away from gatekeeping toward an integrated model where security processes are automated and embedded within the CI/CD pipeline.
Security Team
- Bonterra's security organization is led by Dan Seals, who serves as the Chief Information Security Officer (CISO) and Senior Vice President.
- He built and leads the 'Office of the CISO' and has scaled the security team from 3 to over 30 professionals.
- Technical strategy and engineering operations, which intersect with application security, are led by Tanuja Korlepra, the Chief Technology Officer (CTO).
- As of March 2026, the company is actively hiring for an Application Security Engineer (Job ID: R2026-0062) with a base salary range of $76,000 - $95,000.
Key Initiatives
Active initiatives include the automation of security processes and the embedding of security testing (SAST, DAST, SBOM) into the CI/CD pipeline. The team is responsible for reviewing and triaging scan results and performing manual web application penetration tests. Bonterra maintains several compliance certifications, including SOC 2 Type II, ISO 27001:2022, PCI-DSS 4.0, and HIPAA. There is currently no public evidence of a formal Security Champions program.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.