Principal Application Security Engineer
Cedar Cares, Inc
Role Overview: Cboe’s Cybersecurity team is seeking a Principal Application Security Engineer to provide senior technical leadership and end-to-end ownership for embedding pragmatic, scalable security across our hybrid engineering ecosystem. You will partner closely with application, platform, and infrastructure teams to define secure-by-default architecture patterns, shape strategic security direction, and drive implementation of security controls throughout the software development lifecycle across microservices, APIs, and containerized workloads in public cloud and on‑premises Kubernetes environments. Responsibilities Application & API Security Own secure architecture reviews and threat modeling for new systems and major changes, establishing architectural direction for Kubernetes trust boundaries, secure service-to-service communication, and API authorization models. Define, mature, and drive adoption of application and API security standards, including authentication and authorization patterns, input validation requirements, and mitigations for common vulnerability classes such as SSRF, injection, and access control flaws. Provide principal-level guidance for high-risk code and design changes, resolving complex security tradeoffs and driving remediation approaches that are durable, scalable, and aligned to engineering realities. Act as a senior technical partner to engineering leadership, influencing roadmaps, architecture decisions, and secure-by-default design patterns across the organization. Kubernetes, Container & DevSecOps Security Own Kubernetes workload security standards across multi-cluster environments, setting technical direction for RBAC, pod security controls, namespace isolation, network policies, secrets management, and platform guardrails. Establish and continuously evolve the container image security strategy, including secure base image standards, vulnerability management expectations, SBOM practices, and deployment controls that prevent risky configurations from reaching production. Drive the design and adoption of DevSecOps guardrails in CI/CD pipelines, ensuring SAST, SCA, secret scanning, container scanning, and IaC scanning are integrated through high-signal workflows that scale across engineering teams with minimal developer friction. Software Vulnerability Management & Security Enablement Own the strategy for risk-based software vulnerability management, including triage, exploitability assessment, remediation priorities, service level expectations, and metrics that demonstrate measurable reduction in security risk over time. Develop and champion secure coding guidance, reusable security patterns, and enablement programs that raise engineering capability and create lasting improvements in how teams design and build software. Lead security design support during incident response and post-incident follow-through, translating lessons learned into durable architectural, control, and guardrail improvements that prevent recurrence. AI Implementation Security Own the secure adoption of AI-enabled development and security capabilities, establishing patterns and guardrails for secure code review, automated assessments, and process improvements throughout the SDLC. Provide principal-level architecture and risk guidance for AI implementations and integrations, shaping secure design decisions, control expectations, and review practices for emerging use cases. Drive governance and technical controls to define, monitor, and enforce data boundaries, permissions, and approved usage patterns for AI-related data access. Qualifications 12+ years of experience in application security, product security, or software engineering, including significant experience shaping architecture, setting standards, and driving security outcomes across complex production environments. Direct experience writing and delivering production software as a software engineer. Bachelor’s degree in Computer Science, Information Security, or a related field preferred. Relevant certifications preferred (CSSLP, CKS, OSCP, AWS/Azure Security Specialty). Proven ability to read, write, and review production-grade code in at least one modern backend language (C++, Go, Java, C#, Python, Node.js), with the judgment to guide secure engineering decisions in high-impact systems. Strong working knowledge of Kubernetes security primitives (RBAC, namespaces, service accounts, pod security) and container build practices. Hands‑on experience integrating DevSecOps tooling (SAST, SCA, secret scanning, IaC/container scanning) into CI/CD pipelines. Experience securing hybrid environments with workloads running in both public cloud (EKS, AKS, GKE) and on‑prem Kubernetes platforms. Exceptional communication, influence, and technical leadership skills, with a demonstrated ability to drive alignment, establish direction, and own outcomes across engineering, platform, and security stakeholders. Benefits & Perks Medical Coverage Prescription Drug Coverage Additional Medical Benefit Dental Coverage Vision Coverage 401K or Pension with Company Match Spending Accounts Life and AD&D Insurance Retirement Savings Plan Employee Stock Purchase Plan (ESPP) Voluntary & Additional Benefits Paid Time Off Equal Employment Opportunity We’re proud to be an equal opportunity employer and do not discriminate against any employee or applicant for employment based on any legally protected characteristic, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, or veteran status. We are committed to fostering a workplace where all individuals are valued and respected. Location & Work Model Location: Chicago, Illinois (Cboe HQ at the historic Old Post Office district). This role follows a four‑day in‑office work model. #J-18808-Ljbffr Cedar Cares, Inc
$130k - $180k
...advanced black-box and grey-box penetration tests on web applications, APIs (REST/GraphQL), and internal systems. Perform deep-dive mobile security assessments on iOS and Android, including reverse engineering and bypassing client-side controls like root detection and...Suggested- ...Senior Application Security Engineer Passionate about precision medicine and advancing the healthcare industry? Recent advancements in underlying technology have finally made it possible for AI to impact clinical care in a meaningful way. Tempus' proprietary platform...Suggested
- ...Epsilon is seeking a senior member for their application security team. The role involves designing secure coding practices and conducting security testing to protect their software applications. You will be responsible for guiding development teams in securing applications...Suggested
- Epsilon is seeking a Senior Application Security Engineer in Chicago, IL to enhance software application security. You will implement secure coding practices, perform security testing, and drive security architecture reviews. The ideal candidate has 10+ years of experience...Suggested
- Application Security Engineer (Senior) ID71672 Full time | AgileEngine | United States Posted On 06/18/2026 Job Information City Chicago State/Province Illinois 60601 IT Services Job Description AgileEngine is an Inc. 5000 company that creates award-winning software...SuggestedFull timeWork at officeRemote workVisa sponsorshipWork visaFlexible hours
- Application Security Engineer (Middle) ID71671 Full time | AgileEngine | United States Posted On 06/18/2026 Job Information City Chicago State/Province Illinois 60601 IT Services Job Description AgileEngine is an Inc. 5000 company that creates award‑winning software...Full timeWork at officeRemote workVisa sponsorshipWork visaFlexible hours
$100k - $185.6k
...you’ll Make an Impact You will help to ensure the secure delivery of Epsilon’s software applications by designing and implementing secure coding practices... ...initiatives to improve the security of our engineering ecosystem and products. Contribute to relevant security...Temporary workFreelanceLocal area$100k - $172.5k
...Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture... ...for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan... ...Employer. All qualified applicants will receive consideration for employment...PrincipalFull timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week- Ernst & Young Oman is seeking an Application Security Engineer to manage development platforms and security tools while ensuring secure coding practices are followed. You will work alongside a talented cybersecurity team to optimize security and operational efficiency....
- Application Security Engineer (Tech Lead) ID71666 Full time | AgileEngine | United States Posted On 06/18/2026 Job Information City Chicago State/Province Illinois 60601 IT Services Job Description AgileEngine is an Inc. 5000 company that creates award-winning software...Full timeWork at officeRemote workVisa sponsorshipWork visaFlexible hoursShift work
$77.5k - $140.9k
...diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world. As an Application Security Engineer, you will be responsible for implementing and managing application development platforms and optimizing security tools to...Summer holidayFlexible hours$133k - $166k
...innovation forward. What You’ll Do We are seeking a Senior Application Engineer I to lead the advanced configuration, integration, and optimization... ..., and internal stakeholders to ensure applications are secure, scalable, and fully leveraged to meet complex business...WorldwideFlexible hours$100k - $125k
...Applications Engineer Katten is a full-service law firm with approximately 650 attorneys in locations across the United States and in London... ...complex project work with minimal supervision, ensuring stable, secure, and scalable application solutions aligned with business...Temporary workWork at officeRemote work$115k - $130k
...Eisenberg LLP is a midsize Chicago Loop law firm in search of an Applications Engineer for their IT Department. PRINCIPAL DUTIES & RESPONSIBILITIES: Build, maintain, and deploy desktop and laptop images, security updates, application upgrades, and new software across...Work at office- ...tools and rotary products are built to deliver high accuracy, repeatability and durability. Summary of Responsibilities: As an Applications Engineer, you are responsible for the part programming of CNC Machine Tools, process development and customer training in an...Work at officeRemote work
- ...Senior Applications Engineer The Senior Applications Engineer is responsible for coordinating and implementing new components and upgrades... ...non-IT business departments. Adhere to the Firm's Security and Governance requirements across all administered applications...
- ...Senior Application Engineer The Senior Application Engineer manages desktop and web-based applications in a hybrid-cloud environment (on-prem with Windows/Linux and Azure/AWS) solutions typically purchased from third party vendors. In this role you will vet, implement...
- ...desktop's and laptop's Operating Systems. Package and deploy security and application updates, upgrades, and new applications to laptops and VDI... ...Intune, or other tools available. Work with Integration Engineer and Desktop Engineer on support and development of the Firm...Work at office
- ...areas including but not limited to: gaining working knowledge of application equipment/developing expertise in setting up sample or... ...Experience: ~ Bachelor's degree in Chemical or Mechanical Engineering required. ~1-5 years' experience in the field. Pay Range...
$79.78k - $105.71k
...subject to eligibility criteria. Please note this role may also qualify for sales-related compensation. Join Our Team as an Application Engineer (Product Application)! The Sales Organization is responsible for selling S&C products, services and solutions across a...For contractorsWork at officeLocal areaRemote workWorldwide- ...Essential Skills Minimum of a Bachelor's degree in Computer Science, Engineering, or a related field is required; MS or advanced degree is preferred. A minimum of 5 years in security and/or embedded software engineering functions, with a focus on product...
$100k - $150k
...Senior Applications Engineer RFA Engineering is an engineering service provider dedicated to delivering our clients with timely engineering support and expertise. We are currently supporting one of our clients in the industrial equipment and hydraulics space in their...Home officeFlexible hours$180k
...Job Type Full-time Description We are seeking a motivated Application Engineer to support our Skidded Solutions (liquid-filled medium voltage transformers, switchgear cabinets, inverters) in the solar and energy storage industries. The Application Engineer...Full time- ...About the job Application Solution Engineer, Servo Motor & Motion Control | Mandarin Preferred Job brief We are currently partnering with a leading industrial automation enterprise to recruit a full-time, US-based Application Solution Engineer focused on...Full timeContract workWork experience placement
- ...Applications Engineer - Bridgeview, IL Responsible for: Developing engineering submittal packages for any size project, vertical market or difficulty, including; LEED, FDA validated, OSHPD, etc. Providing support to project managers and acting as a technical consultant...For contractorsWork experience placementFor subcontractorWork at office
$225k - $275k
...hidden fees or compounding interest. Affirm values information security as a critical part of the company’s continued success. Our... ...towards project closure. What We Look For Deep understanding of web application architecture and design principles. Experience using modern...Casual workWork at officeRemote workFlexible hours- Kirkland & Ellis is looking for a Senior Application Engineer I in Chicago to lead the optimization and integration of legal technology solutions. This role involves collaborating with technology vendors and ensuring applications meet complex business needs. The ideal...Flexible hours
$135k - $170k
Request Technology, LLC is seeking a Senior Application Engineer (Legal Technology) to join their team. The role involves configuring legal and litigation technology solutions, with strong expertise required in e-discovery platforms and application integrations. Candidates...Remote work- Kirkland & Ellis, located in Chicago, is seeking a Senior Application Engineer I to optimize legal technology and ensure system performance. In this role, you will collaborate on advanced legal applications and work with stakeholders to enhance technology solutions. The...Flexible hours
- Sr. Application Engineer II “The Protection, Controls & Automation (PCA) group of Digital power is the engineering entity of Schneider Electric NAM that specialized in developing solutions for control and protection for electrical substations, datacenter, Oil & gas and...Work at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Application Security Engineer. Be the first to apply!
- principal network engineer Chicago, IL
- senior director engineering Chicago, IL
- engineering director Chicago, IL
- principal engineer Chicago, IL
- chief building engineer Chicago, IL
- principal security engineer Chicago, IL
- director systems engineering Chicago, IL
- director software engineering Chicago, IL
- project engineer assistant project manager Chicago, IL
- general engineer Chicago, IL


