Lead Security Engineer, DevSecOps

CME Group

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Chicago, IL
Salary
$132,100–$220,100 / yr
Posted
44 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $160k
This role $176k
$108k most similar roles pay here $232k

This role pays more than 60% of similar roles. Most pay $127,662–$193,282 — the shaded band above. At the midpoint, this role pays about $176k versus about $160k for comparable roles.

Based on 240 similar postings.

Employer

About CME Group

CME Group operates the world''s largest financial derivatives marketplace, offering futures and options products across interest rates, equity indexes, foreign exchange, energy, agricultural products, and metals. Industry: Financial Exchanges & Derivatives

CME Group currently has 8 open roles on FindRole.

Listed pay typically runs $128,950–$214,850 across 8 roles with salary data.

Most-posted roles

View all roles at CME Group

At a glance

TL;DR · Lead Security Engineer, DevSecOps

The Lead Security Engineer - DevSecOps joins the Global Information Security team to drive secure software design, SDLC techniques, and robust security patterns across the enterprise. This role involves developing secure reference designs, performing code reviews, conducting unit and system testing, and creating technical documentation like data flow diagrams and sequence diagrams. The engineer will build and maintain CI/CD pipelines while ensuring secure data handling, cryptography, and authentication. Key technologies include Java, Python, JavaScript (Node.js), and .NET, alongside infrastructure tools such as Terraform, Ansible, Chef, Puppet, Docker, and Kubernetes. Experience with AWS, GCP, or Azure is essential for managing cloud-native architectures. The role addresses the critical challenge of integrating security into modern software development lifecycles, ensuring that large-scale products are built on secure foundations while navigating complex infrastructure requirements in a high-stakes environment.

What you'll do

  • Design and implement secure software reference designs, delivery systems, and enterprise-wide solutions.
  • Execute all stages of the Secure SDLC process to mature security practices across the organization.
  • Conduct unit, integration, and system testing for all produced code and projects.
  • Write test-driven code and scripts using primary programming languages with minimal guidance.
  • Develop technical documentation including use cases, design specifications, data flow diagrams, and sequence diagrams.
  • Review code to proactively identify, troubleshoot, and mitigate potential security defects.
  • Manage infrastructure as code and automate provisioning for cloud services using DevSecOps tools.
  • Provide input on code reviews, environment build deployments, and release notes.

What we're looking for

  • A Bachelor's or Master's degree in Computer Science, Information Systems, or a related field is required, or equivalent work experience.
  • Candidates must have 8+ years of application development and/or infrastructure engineering experience.
  • Candidates must have 2+ years of active hands-on experience with application deployments in the Cloud (AWS, GCP, Azure).
  • Proficiency in at least one primary programming language is required, such as Java, Python, JavaScript (Node.js), or .NET.
  • Experience using DevSecOps tools and frameworks for infrastructure as code, including CloudFormation, Terraform, Chef, Puppet, or Ansible.
  • Experience with container systems like Docker and Kubernetes, along with automation tools like Jenkins, Maven, Git, and Bash.
  • Expertise in secure SDLC disciplines, including cryptography, authentication, authorization, and secure data handling.
  • Knowledge of modern software architectures such as microservices, Cloud Native designs, and CI/CD pipelines is required.

More like this

Similar roles

DevSecOps Engineer

Booz Allen Hamilton

Washington, DC 25 days ago $77,600$176,000
DevSecOps CI/CD AWS Azure GCP Terraform CloudFormation CDK Docker Kubernetes Python Bash Go GitLab CI GitHub Actions PostgreSQL MySQL MongoDB Oracle Ansible Prometheus Grafana ELK Helmfile Flux Argo CD IaC SAST SCA
8+ yrs exp

Senior DevSecOps Engineer

Booz Allen Hamilton

Alexandria, VA 63 days ago $77,600$176,000
DevSecOps CI/CD AWS Azure Kubernetes Docker Terraform Ansible Chef Puppet CloudFormation Python Go Bash GitLab CI GitHub Actions Maven Gradle NPM SAST SCA
10+ yrs exp

Lead InfoSec Engineer, DevSecOps

S&P Global

New York, NY +1 53 days ago $100,000$130,000
DevSecOps CI/CD SAST DAST SCA AWS Azure Cloud Platform Kubernetes Docker OpenShift Terraform CloudFormation Pulumi Python Go Git HashiCorp Vault CSPM CNAPP
8+ yrs exp

DevSecOps Security Engineer

General Dynamics

Remote 23 days ago $191,250$258,750
AWS DevSecOps CI/CD Terraform Python Bash Linux NIST 800-53 FedRAMP CloudFormation Security Hub Inspector GuardDuty Config Qualys CrowdStrike Nexus SonarQube Datadog Databricks
8+ yrs exp Remote

DevSecOps Engineer

Booz Allen Hamilton

Peterson AFB, CO 22 days ago $99,000$225,000
Kubernetes Docker ArgoCD AWS EC2 EKS IAM Lambda SQS SNS RDS GitLab CI/CD Bash Python Prometheus Grafana Helm SBOM
10+ yrs exp

DevSecOps Engineer

General Dynamics

Sudbury, MA 16 days ago $142,696$158,303
Azure AKS Terraform Ansible GitLab CI CI/CD SAST DAST Model Context Protocol Microsoft Entra ID OAuth 2.0 OpenID Connect RAG LLM Azure App Service Container Apps
8+ yrs exp Hybrid