Principal AppSec Architect: Secure, Scalable Systems

Cboe

Chicago (IL)

Hybrid

USD 150,000 - 230,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Cboe is seeking a Principal Application Security Engineer to provide senior technical leadership and end-to-end ownership for embedding pragmatic, scalable security across our hybrid engineering ecosystem.

You will partner with application, platform, and infrastructure teams to define secure-by-default patterns and drive implementation of security controls throughout the SDLC across microservices, APIs, and containerized workloads in both cloud and on-prem environments.

Qualifications

  • 12+ years of experience in application security or software engineering
  • Bachelor’s degree in Computer Science or related field
  • Certifications such as CSSLP, CKS, OSCP, or AWS/Azure Security Specialty preferred
  • Hands-on experience integrating DevSecOps tooling into CI/CD pipelines
  • Experience securing hybrid environments with workloads in public cloud and on-prem Kubernetes
  • Proficiency in at least one backend language (C++, Go, Java, C#, Python, Node.js)
  • Strong knowledge of Kubernetes security primitives (RBAC, namespaces, service accounts, pod security)
  • Excellent communication and leadership skills; able to drive alignment across stakeholders
  • Authorized to work in the United States without sponsorship now or in the future

Responsibilities

  • Own secure architecture reviews and threat modeling for new systems and major changes
  • Define secure-by-default architecture patterns for Kubernetes trust boundaries and API authorization
  • Mature and drive adoption of application and API security standards
  • Provide principal guidance for high-risk code and design changes
  • Influence engineering roadmaps and secure-by-default patterns across teams
  • Own Kubernetes workload security standards across multi-cluster environments
  • Set technical direction for RBAC, pod security controls, namespace isolation, and network policies
  • Develop and champion secure coding guidance and reusable patterns
  • Lead security design during incident response and post-incident improvements
  • Drive secure adoption of AI-enabled development and security capabilities
  • Provide architecture and risk guidance for AI implementations and integrations
  • Govern data boundaries, permissions, and approved AI data usage patterns

Skills

Application security
Security leadership
DevSecOps
Threat modeling
Kubernetes security
CI/CD security
Cloud security
Secure coding guidance

Education

B.S. in Computer Science or Information Security

Tools

SAST tooling
SCA tooling
IaC scanning
Container scanning
Kubernetes security tooling

Job description

Cboe is seeking a Principal Application Security Engineer to provide senior technical leadership and end-to-end ownership for embedding pragmatic, scalable security across our hybrid engineering ecosystem.

You will partner with application, platform, and infrastructure teams to define secure-by-default patterns and drive implementation of security controls throughout the SDLC across microservices, APIs, and containerized workloads in both cloud and on-prem environments.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal AppSec Architect: Kubernetes & API Security
Principal AppSec Architect: Kubernetes & API Security

Cedar Cares, Inc • Chicago (IL)

On-site
USD 164,000 - 212,000
Medical Coverage
Prescription Drug Coverage
Dental Coverage
+8
Senior Application Security Engineer & Architect
Senior Application Security Engineer & Architect

Cboe Global Markets, Inc. • Chicago (IL)

Hybrid
USD 164,000 - 212,000
Medical Coverage
Prescription Drug Coverage
Dental Coverage
+8
Principal Application Security Engineer
Principal Application Security Engineer

Cboe • Chicago (IL)

Hybrid
USD 150,000 - 230,000
Principal Application Security Engineer
Principal Application Security Engineer

Reed Exhibitions Australia Pty Ltd • Richmond (VA), Northern (KY)

Hybrid
USD 150,000 - 230,000
Principal AppSec Leader: Secure SDLC & Cloud
Principal AppSec Leader: Secure SDLC & Cloud

RELX International • Richmond (VA)

On-site
USD 150,000 - 190,000
Principal Application Security Engineer
Principal Application Security Engineer

Cedar Cares, Inc • Chicago (IL)

On-site
USD 164,000 - 212,000
Medical Coverage
Prescription Drug Coverage
Dental Coverage
+8
Principal App Security Engineer - SSDLC & Automation
Principal App Security Engineer - SSDLC & Automation

Roundel • Brooklyn Park (MN)

Hybrid
USD 168,000 - 303,000
Health benefits
401(k)
Paid time off
+3
Senior App Security Engineer - DevSecOps & Secure SDLC
Senior App Security Engineer - DevSecOps & Secure SDLC

Ascensus • Dresher

On-site
USD 120,000 - 170,000
Tuition reimbursement
Paid time off
Medical benefits
+2
Senior AppSec Engineer: DevSecOps & Secure SDLC
Senior AppSec Engineer: DevSecOps & Secure SDLC

Tential Solutions • United States

On-site
USD 120,000 - 180,000
PTO
Benefits package
Career growth
Senior AppSec Architect & AI Security Strategy
Senior AppSec Architect & AI Security Strategy

Koitecc Solutions • Georgia

Remote
USD 175,000 - 335,000
Medical, dental, vision benefits
Bonus program and equity
Paid time off & retirement options