Create Email Alert

Email Alert for

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.

Similar Jobs

  • Match Group

    Lead Application Security Engineer

    Chicago, IL, United States

    • Ending Soon

    We are looking for an Lead Application Security Engineer to help us ensure the highest standard of security for Match Group brands and our members across the world. You will manage a small team and lead collaborations across various brands within the portfolio such as Tinder, Hinge, and Plenty of Fish to develop, design and execute security priorit

    Job Source: Match Group
  • Informatic Technologies

    Lead Application Security Engineer

    Chicago, IL, United States

    Job Title: Lead Security Engineer–Application Security Job Location: Chicago, IL Job Type: Full Time The Lead Security Engineer Application Security is responsible for performing advanced manual security assessments on applications and systems that require specialized knowledge and providing detailed written reports to key business stakeholders

    Job Source: Informatic Technologies
  • Match Group

    Application Security Engineer Team Lead

    Chicago, IL, United States

    • Ending Soon

    We are looking for an Team Lead - Application Security Engineer to help us ensure the highest standard of security for Match Group brands and our members across the world. You will manage a small team and lead collaborations across various brands within the portfolio such as Tinder, Hinge, and Plenty of Fish to develop, design and execute security

    Job Source: Match Group
  • Amazon

    Senior Security Engineer, Application Security

    Chicago, IL, United States

    • Ending Soon

    Description In Amazon Stores, we ship some of the widest arrays of technology found at any company. From Amazon.com to world class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the boundaries of technology in every direction using the globes largest AWS deployment. As an AppSec engineer, you will co

    Job Source: Amazon
  • Amazon

    Senior Security Engineer, Application Security

    Chicago, IL, United States

    • Ending Soon

    Description In Amazon Stores, we ship some of the widest arrays of technology found at any company. From Amazon.com to world class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the boundaries of technology in every direction using the globe’s largest AWS deployment. As an AppSec engineer, you will

    Job Source: Amazon
  • Amazon

    Security Engineer II, Application Security

    Chicago, IL, United States

    • Ending Soon

    Security Engineer II, Application Security Job ID: 2467051 | Amazon.com Services LLC In Amazon Stores, we ship some of the widest arrays of technology found at any company. From amazon.com to world class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the boundaries of technology in every direction u

    Job Source: Amazon
  • Circle

    Lead Security Engineer

    Chicago, IL, United States

    • Ending Soon

    Circle is a financial technology company at the epicenter of the emerging internet of money, where value can finally travel like other digital data — globally, nearly instantly and less expensively than legacy settlement systems. This ground-breaking new internet layer opens up previously unimaginable possibilities for payments, commerce and market

    Job Source: Circle
  • CyberCube

    Sr. Application Security Engineer

    Chicago, IL, United States

    About CyberCube: 1) The market leader in digital analytics with the mission of delivering the world’s leading cyber risk analytics on one of the most critical risks of today and the future. 2) Exceptionally well-funded startup that has raised over $100MM of capital from top-tier investors that has no need for any additional capital i

    Job Source: CyberCube

Lead Security Engineer - Application Security

Chicago, IL, United States

Description

Role Overview The Lead Security Engineer Application Security is responsible for performing advanced manual security assessments on applications and systems that require specialized knowledge, and provide detailed written reports to key business stakeholders (management, development teams).

Additionally, the individual will provide application design support and application security best practice guidance, in the form of consultations, to various development teams and business stakeholders. The individual is also responsible for championing security through design and delivery of integrated solution architectures.

This role leads by example by performing all the Application Security team responsibilities and provides training opportunities for other team members. As a technical lead in the Application Security Assessment team, this role must effectively communicate with CME technology, business, and third-party partners.

Principal Accountabilities Lead by example and independently perform all functions and services of the GIS AppSec team..

Conduct advanced web application, micro-services, API, cloud penetration tests of proprietary and 3rd party on-prem/cloud systems and applications.

Perform targeted manual security reviews at key points in the software development life cycle.

Perform peer reviews of assessment reports and provide constructive guidance to team members.

Train others on tools and processes used in AppSec methodology.

Provide technical guidance to team members and other stakeholders (e.g. development teams, project teams, business stakeholders).

Provide input for strategic visioning / planning.

Identify the need and develop new security standards and reference architectures.

Identify metrics that can help measure performance, gaps in coverage, need for head count, trends in findings.

Identify and document process improvements and influence team and management support and prioritize changes.

Establish yourself as a recognized technical expert within the team.

Have an interest in continuing your education and training and staying current within the application security domain.

Requirements 12+ years' experience performing security assessments of a wide variety of systems, applications and technologies which include both proprietary and industry standard protocols.

Expert knowledge and experience performing manual security reviews of application source code for security vulnerabilities written in various languages including: Java, .Net (C#, VB#), C++, *.

Expert level skills with application security testing tools including: Burp Suite Pro, Kali, Checkmarx, sqlmap, nmap, Wireshark, etc.

Expert knowledge of the Open Web Application Security Project (OWASP) Top 10 vulnerabilities most critical web vulnerabilities and how to identify and remediate them.

Advanced knowledge of application reverse engineering and using tools such as: Java decompilers, .Net decompilers, IDAPro, etc.

Advanced knowledge of UNIX/Linux/Windows.

Advanced knowledge with scripting languages such as: Python, bash, Powershell, etc.

Experience with drafting of Security Standards, Reference Architectures and Secure Technical Implementation Guidelines.

Have a passion for application security testing and be able to share your passion and learnings with teammates and customers.

Self-motivated and a self-starter (If you have a question, find the answer, ask somebody, figure it out, and communicate).

Excellent Oral and Written communications skills.

Nice to have Certifications such as GWAPT, eWPTx, OSCP, OSWE, CISSP, or other relevant certifications are highly preferred.

Education A Bachelor's or Master's degree in Computer Science, Information Systems or other related discipline is required; or equivalent combination of education and relevant proven work experience.

CME Group: Where Futures Are Made

CME Group (www.cmegroup.com) is the world's leading derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career shaping tomorrow. We invest in your success and you own it, all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we're looking for more.

At CME Group, we embrace our employees' diverse experiences, cultures and skills, and work to ensure that everyone's perspectives are acknowledged and valued. As an equal opportunity employer, we recognize the importance of a diverse and inclusive workplace and consider all potential employees without regard to any protected characteristic.

The Candidate Privacy Policy can be found here.

#J-18808-Ljbffr

Apply

Create Email Alert

Create Email Alert

Email Alert for Lead Security Engineer - Application Security jobs in Chicago, IL, United States

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.