Principal Application Security Engineer

Cboe Global Markets

Hybrid

Quick summary

Work type
Hybrid
Location
Chicago, IL
Salary
$163,625–$211,750 / yr
Posted
2 days ago

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $184k
This role $188k
$123k most similar roles pay here $235k

This role pays more than 58% of similar roles. Most pay $151,475–$215,712 — the shaded band above. At the midpoint, this role pays about $188k versus about $184k for comparable roles.

Based on 240 similar postings.

Employer

About Cboe Global Markets

Cboe Global Markets, Inc. is a leading global provider of financial exchange operator services, clearinghouse, and investment solutions.

Cboe Global Markets currently has 20 open roles on FindRole.

Listed pay typically runs $119,000–$155,650 across 20 roles with salary data.

Most-posted roles

View all roles at Cboe Global Markets

At a glance

TL;DR · Principal Application Security Engineer

Cboe’s Cybersecurity team seeks a Principal Application Security Engineer to lead the embedding of pragmatic security across its hybrid engineering ecosystem. This senior-level role involves partnering with application, platform, and infrastructure teams to define secure architecture patterns and drive implementation of security controls throughout the software development lifecycle in microservices, APIs, and containerized workloads on public cloud and on-premises Kubernetes environments. The ideal candidate has over 12 years of experience in application security or software engineering, expertise in modern backend languages like C++, Go, Java, Python, and hands-on knowledge of Kubernetes security primitives and DevSecOps tooling integration. They will own secure architecture reviews, define security standards for Kubernetes workloads, and manage risk-based vulnerability strategies while enabling secure coding practices across the organization.

What you'll do

  • Own secure architecture reviews and threat modeling for new systems and major changes.
  • Define and drive adoption of application and API security standards across the organization.
  • Establish Kubernetes workload security standards and continuously evolve container image security strategy.
  • Design and implement DevSecOps guardrails in CI/CD pipelines to ensure scalable integration.
  • Lead software vulnerability management, including triage, remediation priorities, and risk-based strategies.

What we're looking for

  • 12+ years of application security or software engineering experience
  • Proven ability to write and review production-grade code in modern backend languages
  • Strong knowledge of Kubernetes security primitives and container build practices
  • Experience integrating DevSecOps tooling into CI/CD pipelines
  • Hands-on expertise securing hybrid environments with public cloud and on-prem Kubernetes
  • Bachelor's degree in Computer Science, Information Security or related field preferred
  • Relevant certifications such as CSSLP, CKS, OSCP, AWS/Azure Security Specialty

More like this

Similar roles

Principal Application Security Engineer

Upstart

Remote (San Mateo, CA) +2 158 days ago $190,600$263,900
Java Python Ruby SAST DAST SCA CI/CD API Security Microservices REST GraphQL AWS Kubernetes Terraform GitLab Jenkins GitHub PostgreSQL MongoDB OAuth OpenID Connect OAuth2 JSON Web Tokens PCI DSS ISO 27001 NIST Cybersecurity Framework
Remote

Application Security Engineer

Booz Allen Hamilton

Fort Meade, MD +4 45 days ago $86,900$198,000
F5_BIG-IP TLS MUTUAL_TLS PROXY OFFICE_365 TEAMS AWS AZURE CI/CD

Application Security Engineer

Booz Allen Hamilton

Fort Meade, MD +4 9 days ago $86,900$198,000
F5_BIG-IP VMware NSX-T SD-WAN DoD_IL_Clouds Office_365 Teams CI/CD

Application Security Engineer

Booz Allen Hamilton

Colorado Springs, CO +1 32 days ago $86,800$198,000
F5_BIG-IP VMware NSX-T SD-WAN DoD_IL_Clouds Office_365 Teams CI/CD

Application Security Engineer

Booz Allen Hamilton

Honolulu, HI 22 days ago $86,900$198,000
F5 BIG-IP TLS MUTUAL TLS REVERSE WEB PROXY FORWARD WEB PROXY OFFICE 365 TEAMS AWS AZURE

Application Security Engineer

Cisco

Remote (Research Triangle Park, NC) 19 days ago $128,400$172,300
AWS Azure GCP Kubernetes CI/CD SAST DAST SCA API security OWASP IAM encryption network security container image hardening vulnerability scanning runtime policy enforcement model protection data protection inference endpoint protection
Remote