Head of Application Security Engineering: WAF Solutions

2 weeks ago


Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

Position Overview: Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for managing the Secure Software Development Lifecycle (SSDLC). This includes overseeing all associated tools, processes, training, and guidance aimed at educating the development community within the organization to significantly reduce security vulnerabilities affecting applications, data, and hosting environments.

Key Responsibilities:

  1. Define and evaluate pertinent information security strategies, policies, and standards, with a particular emphasis on Web Application Firewall (WAF) protocols.
  2. Lead a team dedicated to delivering high-quality security assessments and secure development operations within the Application Security Program.
  3. Coordinate assignments and provide training for team members, ensuring backup coverage for management roles.
  4. Manage project timelines and report on the status of major initiatives to leadership.
  5. Create a strategic roadmap for the team that aligns with organizational goals and justifies any new capabilities or staffing needs.
  6. Oversee the identification, validation, and prioritization of security risks associated with proprietary software applications, both on-premises and in cloud environments.
  7. Ensure secure software development practices are followed throughout the entire Software Development Life Cycle (SDLC) for technologies such as Java/J2EE, .NET, and Python.
  8. Implement strategies to promote the consistent application of security controls across the organization.
  9. Supervise the execution of both manual and automated secure software development activities, utilizing cybersecurity tools for assessments and operations.
  10. Identify and recommend new security technologies and tools, preparing professional communications, including security assessment reports and training materials.

Qualifications:

Applicants should possess a Bachelor's degree in Computer Science, Information Systems, or a related field, along with a minimum of seven years of relevant experience. A Master's degree and experience in the Financial Services sector are preferred.

Experience should encompass leadership in key areas such as network security architecture, secure software assurance, incident response, and security policy development. Candidates must demonstrate strong technical communication skills and the ability to foster effective working relationships.

Work Environment: This role is typically performed in an office setting, with occasional travel and extended hours as necessary.

Additional Information: FINRA offers a comprehensive benefits package, including health, dental, and vision insurance, along with a 401(k) plan and generous paid time off. Employees are encouraged to maintain a healthy work-life balance and are supported in their professional development.



  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview:Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This role encompasses all associated tools, methodologies, training, and support to educate the development community within the...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This includes managing all pertinent tools, processes, training, and guidance to educate the development community and significantly reduce...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the strategic guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This role encompasses all associated tools, methodologies, training, and support aimed at educating the development community...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the strategic guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for managing the Secure Software Development Lifecycle (SSDLC). This role encompasses all associated tools, methodologies, training, and support to educate the development community within the...


  • Chicago, Illinois, United States Financial Industry Regulatory Authority Full time

    Position Overview: Under the guidance of Cyber and Information Security (CIS) Leadership, the Director of Application Security Engineering is responsible for overseeing the Secure Software Development Lifecycle (SSDLC). This includes managing all associated tools, processes, training, and support to educate the development community and significantly reduce...


  • Chicago, Illinois, United States Bank of America Full time

    Lead Cloud Security Solutions EngineerPosition Overview:Bank of America is seeking a Lead Cloud Security Solutions Engineer to become an integral part of our Global Information Security division. In this pivotal role, you will spearhead the development of cutting-edge security measures to address intricate business challenges. Your responsibilities will...


  • Chicago, Illinois, United States United Airlines Full time

    Connecting People. Uniting the World. There's never been a more exciting time to join United Airlines As a global company that operates in hundreds of locations around the world — with millions of customers and tens of thousands of employees — we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly....


  • Chicago, Illinois, United States Wipro Full time

    About Wipro:Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) stands as a prominent technology services and consulting firm dedicated to crafting innovative solutions that meet the intricate digital transformation requirements of our clients.We harness our extensive range of capabilities in consulting, design, engineering, operations, and emerging...

  • Sales Engineer

    5 days ago


    Chicago, Illinois, United States Keeper Security, Inc. Full time

    About the RoleWe are seeking an experienced Sales Engineer to join our team at Keeper Security, Inc. as an Enterprise Sales Engineer. This is a 100% remote position with an opportunity to work a hybrid schedule for candidates who live near our global headquarters.Keeper Security is a leading provider of cybersecurity software, trusted by millions of people...


  • Chicago, Illinois, United States Palo Alto Networks Full time

    Job OverviewPosition SummaryAt Palo Alto Networks, our core mission is clear:To be the leading cybersecurity partner, safeguarding our digital existence.We envision a future where each day is more secure than the last. Achieving this vision is challenging, but we are dedicated to pursuing excellence.We are seeking forward-thinking individuals who are eager...


  • Chicago, Illinois, United States Request Technology, LLC Full time

    Position Overview:Request Technology, LLC is seeking a dedicated Associate Principal in Security Engineering. This role does not offer sponsorship.Key Technologies: HashiCorp Vault, DevOps practices, FastAPI.Compensation: $150,000 - $160,000 plus a 15% performance bonus.Work Arrangement: Hybrid model with three days onsite.Role Responsibilities:As a vital...

  • Head of Engineering

    2 weeks ago


    Chicago, Illinois, United States Fernwood Property Management, LLC Full time

    Head of Engineering Job OverviewThe Head of Engineering plays a crucial role in ensuring the structural integrity of the facilities while overseeing the functionality of mechanical systems within the buildings. This position involves assessing technical specifications and architectural plans, offering expert guidance, and ensuring adherence to regulatory...


  • Chicago, Illinois, United States Diverse Lynx Full time

    Position: 5G Security Solutions Engineer Location: Chicago(Downtown), IL- Onsite Role Experience Required: 8-10 Years Contract Duration: 6-12 MonthsKey Competencies: 5G Telecommunications, Firewall Management - Security Oversight (IT IS) Diverse Lynx LLC is committed to fostering an inclusive work environment. We ensure that all qualified candidates are...


  • Chicago, Illinois, United States Premier Solutions Hi, LLC Full time

    Job OverviewSalary: CompetitivePosition Summary:The Cybersecurity Engineering Lead acts as the chief technical consultant and authority on system classification, security measures, and Authorization to Operate (ATO) for sanctioned cybersecurity applications. This role utilizes advanced tools to construct, fortify, sustain, and monitor a comprehensive...


  • Chicago, Illinois, United States Bank of America Full time

    About the Role:The Application Delivery Services Senior Architect is a key member of our team, responsible for defining an architectural vision and architecture for large complex solutions that align with our enterprise architecture strategy, technology, and platform choices. This role requires a senior-level technical visionary who can align technology...

  • Applications Engineer

    2 weeks ago


    Chicago, Illinois, United States Hydac Filtertechnik Gmbh Full time

    Company Overview:HYDAC Filtertechnik GmbH is a prominent leader in fluid power technology, dedicated to creating tailored solutions for both mobile and industrial sectors.Position Summary:We are in search of a skilled Product Applications Engineer to join our dynamic team. This role will be based at our Glendale Heights facility and is pivotal in addressing...


  • Chicago, Illinois, United States SDI Presence Full time

    Company OverviewSDI Presence LLC is a leading IT consultancy and managed services provider dedicated to guiding clients towards a secure digital landscape. With a rich history spanning 25 years, SDI specializes in delivering strategic managed services, IT consulting, and hybrid multicloud infrastructure solutions aimed at optimizing technology environments....


  • Chicago, Illinois, United States AHEAD Full time

    About AHEADAHEAD is dedicated to constructing platforms that empower digital enterprises. By integrating advancements in cloud infrastructure, automation, analytics, and software delivery, we assist organizations in realizing their digital transformation goals.At AHEAD, we emphasize fostering a culture of inclusivity, where diverse perspectives and voices...


  • Chicago, Illinois, United States SDI Presence Full time

    Company OverviewSDI Presence LLC stands as a prominent IT consultancy and managed services provider (MSP), dedicated to guiding clients towards a secure digital future. With a rich history spanning 25 years, SDI excels in delivering strategic managed services, IT consulting, and hybrid multicloud infrastructure solutions tailored to enhance our clients'...


  • Chicago, Illinois, United States AHEAD Full time

    About AHEAD: AHEAD is at the forefront of developing platforms that empower digital enterprises. By integrating advancements in cloud infrastructure, automation, analytics, and software delivery, we assist organizations in realizing their digital transformation goals. We foster a culture of inclusivity, ensuring that every voice is valued and heard. As an...