Staff Application Security Engineer

UNAVAILABLE

Chicago (IL)

On-site

USD 100,000 - 185,600

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical coverage
Dental and vision insurance
401(k) plan
Paid time off

Job summary

Epsilon is seeking a Senior Application Security Engineer in Chicago, IL to enhance software application security. You will implement secure coding practices, perform security testing, and drive security architecture reviews.

The ideal candidate has 10+ years of experience in software development and must possess strong interpersonal skills. This role includes significant collaboration with multiple teams to foster secure application development.

Qualifications

  • 10+ years of experience in software development related fields.
  • Direct experience in application vulnerability management processes.
  • Strong understanding of threat modeling and network security.

Responsibilities

  • Perform code analysis and identify application vulnerabilities.
  • Drive security architecture design reviews and threat modeling.
  • Collaborate to ensure compliance with security policies.

Skills

Security testing solutions
Application vulnerability management
Programming languages and scripting
Cloud security concepts
Network security

Education

BS / MS in Computer Science or similar degree

Tools

CI/CD platforms
SAST
DAST

Job description

Job Description
How you’ll Make an Impact

You will help to ensure the secure delivery of Epsilon’s software applications by designing and implementing secure coding practices, conducting advanced security testing through application security platforms, and collaborating with development teams to ensure security is integrated throughout the development lifecycle. You will be a core member of the application security team as a contributor in the areas of secure software architecture and design, web application vulnerability and remediation, and a variety of tools used in secure development and testing. You will provide support, guiding and advising multiple development teams to develop secure applications and services in accordance with the established application security policies and standards. Finally, you will be responsible for recommending and guiding the implementation of modifications and enhancements to ensure the organization is evolving with the threat landscape. By continuously improving and expanding our security platforms and fostering strong collaborative relationships, you will create a more secure, efficient, and proactive development environment, ultimately ensuring the integrity and safety of Epsilon's software applications.

Responsibilities
  • Perform code analysis of applications, manually and through application security testing solutions, to identify vulnerabilities.
  • Provide context and rationalization for identified vulnerabilities.
  • Review and recommend remediation actions for identified vulnerabilities.
  • Drive and support security architecture design reviews and threat modeling of our products.
  • Improve the accessibility of security through automation, vulnerability exception processing, embedding secure practices within continuous integration pipelines, and other related activities.
  • Build trust relationships with teams to effectively achieve security goals.
  • Drive cross-disciplinary initiatives to improve the security of our engineering ecosystem and products.
  • Contribute to relevant security standards, processes, and other formal documentation.
  • Collaborate with teams to ensure understanding and compliance with relevant security policies, standards, and best practices.
  • Assist in onboarding new teams and applications to security platforms.
Qualifications
  • What you’ll bring with you:
    • BS / MS in Computer Science or similar degree
    • Minimum of 10 years of experience in related fields
    • Direct experience in software development
    • Direct experience with at least one or more CI/CD platforms
    • Direct experience with application testing (e.g., SAST, DAST, MAST, RAST, IAST)
    • Direct experience in application vulnerability management processes
    • Working knowledge of current software development methodologies
    • Working knowledge of OWASP Top 10 and CWE 25
    • Working knowledge of programming languages and scripting
    • Working knowledge of software design lifecycle
    • Working knowledge of web and app security stack (e.g., API security)
    • Working knowledge of cloud security concepts and technologies
    • Working knowledge of authentication and authorization flows in web applications
    • Strong understanding of threat modeling
    • Strong understanding of network security (e.g , WAF, Micro-segmentation)
    • Strong understanding of cryptography topics
  • Why you might stand out from other talent:
    • Strong collaboration
    • Interpersonal, collaborative, written and verbal communication skills
    • Excellent problem solving, critical thinking skills
    • Ability to work independently and self-motivate

Epsilon is an Equal Opportunity Employer. Epsilon’s policy is not to discriminate against any applicant or employee based on actual or perceived race, age, sex or gender (including pregnancy), marital status, national origin, ancestry, citizenship status, mental or physical disability, religion, creed, color, sexual orientation, gender identity or expression (including transgender status), veteran status, genetic information, or any other characteristic protected by applicable federal, state or local law. Epsilon also prohibits harassment of applicants and employees based on any of these protected categories. Epsilon will provide accommodations to applicants needing accommodations to complete the application process. Please reach out to LeaveofAbsence@epsilon.com to request an accommodation.

For San Francisco Bay and Los Angeles Areas: Epsilon will consider for employment qualified applicants with criminal histories in a manner consistent with the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance and San Francisco Police Code Sections 4901-4919, commonly referred to as the San Francisco Fair Chance Ordinance. Applicants with criminal histories are welcome to apply.

Compensation Range: USD $100,000.00 - USD $185,600.00/Annually. This is the pay range the Company believes it will pay for this position at the time of this posting. Consistent with applicable law, compensation will be determined based on the skills, qualifications, and experience of the applicant along with the requirements of the position, and the Company reserves the right to modify this pay range at any time. Temporary roles may be eligible to participate in our freelancer/temporary employee medical plan through a third‑party benefits administration system once certain criteria have been met. Temporary roles may also qualify for participation in our 401(k) plan after eligibility criteria have been met. For regular roles, the Company will offer medical coverage, dental, vision, disability, 401k, and paid time off. The Company anticipates the application deadline for this job posting will be 7/10/2026.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Application Security Engineer
Staff Application Security Engineer

Publicis Groupe Holdings B.V • Chicago (IL)

On-site
USD 100,000 - 186,000
Flexible time off
Comprehensive health coverage
401(k)
+2
Staff Application Security Engineer
Staff Application Security Engineer

Epsilon • Irving (TX)

On-site
USD 100,000 - 197,000
Flexible time off
15 paid holidays
Paid sick time
+8
Advisor, Application Security Engineer
Advisor, Application Security Engineer

Publicis Groupe • Chicago (IL)

On-site
USD 100,000 - 185,600
Flexible time off
Paid sick time
401(k)
Advisor, Application Security Engineer
Advisor, Application Security Engineer

Publicis Groupe ANZ • Chicago (IL)

On-site
USD 100,000 - 185,600
Flexible time off
Paid sick time
401(k)
+2
Senior Manager, Application Security
Senior Manager, Application Security

Epsilon • Chicago (IL)

On-site
USD 112,000 - 210,000
Comprehensive health coverage
401(k)
Tuition assistance
+2
Senior Manager, Application Security
Senior Manager, Application Security

Epsilon • Boston (MA)

On-site
USD 112,000 - 210,000
Senior QA Engineer
Senior QA Engineer

UNAVAILABLE • Chicago (IL)

On-site
USD 89,000 - 165,000
Flexible time off
Paid holidays
Parental leave
+10
Senior, Software Engineer
Senior, Software Engineer

Socket.dev • Saint Petersburg (FL)

Hybrid
USD 99,000 - 186,000
Flexible time off
Paid holidays
Parental leave
+3
Principal, Software License Compliance
Principal, Software License Compliance

Publicis Groupe • Irving (TX)

On-site
USD 116,000 - 217,000
Time to Recharge: Flexible time off
Time to Recover: Paid sick time
Family Well-Being: Parental/new child,
+1
Staff Software Engineer
Staff Software Engineer

Socket.dev • Wakefield (MA)

On-site
USD 120,000 - 225,000
Flexible time off
Paid holidays
Parental leave
+2