Head of Application Security Engineering: WAF

1 week ago


Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

Position Overview: Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This includes managing all associated tools, processes, training, and support to educate the development community and significantly reduce security vulnerabilities in applications, data, and hosting environments.

Key Responsibilities:

  • Define and review information security strategies, policies, and standards, with a particular emphasis on Web Application Firewall (WAF).
  • Lead a team dedicated to delivering high-quality security testing and secure development outcomes within the Application Security Program.
  • Coordinate assignments and provide training for team members, ensuring effective backup coverage for management roles.
  • Manage project timelines and report on major initiatives to leadership.
  • Create a strategic roadmap for the team that aligns with organizational objectives and justifies new capabilities or staffing needs.
  • Oversee the processes for identifying, validating, and prioritizing security risks in proprietary software applications, both on-premises and in cloud environments.
  • Ensure secure software development practices are followed throughout the entire SDLC, from initiation to deployment, for technologies such as Java/J2EE, .NET, or Python.
  • Implement strategies to promote consistent application of security controls across the organization.
  • Supervise the execution of both manual and automated secure software development activities, utilizing cybersecurity tools for assessments and operations.
  • Evaluate and recommend new security technologies and tools, preparing comprehensive security assessment reports and training materials.

Qualifications:

A Bachelor's degree in Computer Science, Information Systems, or a related field is required, along with a minimum of seven years of relevant experience. A Master's degree and experience in the Financial Services sector are preferred.

Candidates should possess direct experience in critical areas such as securing network architectures, secure software assurance, incident response, and security policy development. In-depth knowledge of various communication protocols and experience managing cybersecurity tools is essential.

Skills:

  • Strong written and verbal communication skills.
  • Ability to foster effective working relationships that enhance the quality of deliverables.
  • Excellent organizational skills and the capacity to manage competing priorities.
  • Proficiency in quickly acquiring new skills and adapting to a fast-paced environment.

Work Environment: The role is primarily office-based, with occasional travel and extended hours required.

Compensation and Benefits: FINRA offers a competitive salary, comprehensive health benefits, a 401(k) plan with company match, and generous paid time off policies.



  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the strategic guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for managing the Secure Software Development Lifecycle (SSDLC). This role encompasses all associated tools, methodologies, training, and support to educate the development community within the...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview:Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This role encompasses all associated tools, methodologies, training, and support to educate the development community within the...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This includes managing all pertinent tools, processes, training, and guidance to educate the development community and significantly reduce...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for managing the Secure Software Development Lifecycle (SSDLC). This includes overseeing all associated tools, processes, training, and guidance aimed at educating the development community within the...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the strategic guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This role encompasses all associated tools, methodologies, training, and support aimed at educating the development community...


  • Chicago, Illinois, United States United Airlines Full time

    Connecting People. Uniting the World. There's never been a more exciting time to join United Airlines As a global company that operates in hundreds of locations around the world — with millions of customers and tens of thousands of employees — we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly....

  • Head of Engineering

    2 weeks ago


    Chicago, Illinois, United States Fernwood Property Management, LLC Full time

    Head of Engineering Job OverviewThe Head of Engineering plays a crucial role in ensuring the structural integrity of the facilities while overseeing the functionality of mechanical systems within the buildings. This position involves assessing technical specifications and architectural plans, offering expert guidance, and ensuring adherence to regulatory...


  • Chicago, Illinois, United States Bank of America Full time

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...


  • Chicago, Illinois, United States Bank of America Full time

    Lead Cloud Security Solutions EngineerPosition Overview:Bank of America is seeking a Lead Cloud Security Solutions Engineer to become an integral part of our Global Information Security division. In this pivotal role, you will spearhead the development of cutting-edge security measures to address intricate business challenges. Your responsibilities will...


  • Chicago, Illinois, United States Expedia , Inc. Full time

    If you require assistance during the recruitment process due to a disability, please contact our Recruiting Accommodations Team through the Accommodation Request form. This form is exclusively for individuals with disabilities who need support or adjustments in applying and interviewing for a position.Position: Head of Security Compliance ManagementAt...

  • Application Engineer

    1 month ago


    Chicago, Illinois, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...


  • Chicago, Illinois, United States Expedia Group Full time

    If you require assistance during the recruitment process due to a disability, please connect with our Recruiting Accommodations Team through the Accommodation Request form. This form is specifically for individuals with disabilities who need support or adjustments in applying and interviewing for a position.Position: Head of Security Compliance StrategyAt...


  • Chicago, Illinois, United States Match Group Full time

    About the RoleWe are seeking a Senior Application Security Lead to uphold the utmost security standards for Match Group's diverse brands and our global user base. In this role, you will oversee a dedicated team and foster collaboration across various brands, including Tinder, Hinge, and Plenty of Fish, to establish, design, and implement security strategies...


  • Chicago, Illinois, United States Bank of America Full time

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...


  • Chicago, Illinois, United States Ann & Robert H. Lurie Children's Hospital of Chicago Full time

    Overview:This role serves as a key connection between the Information Management (IM) Department and various Hospital departments, carrying managerial responsibilities for applications that facilitate these operations. The position is tasked with the implementation, maintenance, and oversight of information management systems and standards that support the...


  • Chicago, Illinois, United States Pearl Consulting Group Full time

    Job OverviewPosition: Application Security EngineerLocation: RemoteCompany Overview:Pearl Consulting Group is dedicated to prioritizing integrity through a focus on People, Culture, and Technology. Our diverse team works collaboratively with clients to deliver customized, transformative solutions. We specialize in Organizational Change Management,...


  • Chicago, Illinois, United States Discover Full time

    Discover. A brighter future.With us, you'll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it - we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so...


  • Chicago, Illinois, United States United Airlines Full time

    Connecting People. Uniting the World. There's never been a more exciting time to join United Airlines As a global company that operates in hundreds of locations around the world — with millions of customers and tens of thousands of employees — we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly....


  • Chicago, Illinois, United States cibc Full time

    About the RoleWe are seeking a highly experienced and skilled Network Infrastructure Leader to join our team at CIBC. As a key member of our technology organization, you will be responsible for leading the design, implementation, and management of our network infrastructure.Key ResponsibilitiesNetwork Architecture and Design: Develop and implement scalable,...


  • Chicago, Illinois, United States Northwestern University Feinberg SoM - Dept of Otolaryngology Head and Neck Surgery Full time

    The Department of Otolaryngology – Head & Neck Surgery at Northwestern University Feinberg School of Medicine seeks a full-time tenure track Investigator at the rank of Assistant Professor or above in the area of Hearing Research. Responsibilities include the following: Building and establishing a strong independent research program. Securing extramural...