The Options Clearing Corporation
Posted 2w ago

Senior Associate, Security Engineering

The Options Clearing Corporation
Chicago, Illinois, United States
$99k-$170k/yrHybridFull Time
Responsibilities
  • managing access
  • implementing enhancements
  • troubleshooting systems
Requirements
  • Experience in security operations
  • Development
  • Engineering, or architecture
  • Privileged access management
  • CyberArk or HashiCorp Vault
  • Cloud, CI/CD, scripting, and AI coding agent experience
Technical tools mentioned
CyberArkHashiCorp VaultPublic Key Infrastructure (PKI)Active DirectoryOAuth 2.0OIDCAWS IAMKubernetes (k8s)LDAPSKerberosTerraformAnsibleJenkinsGoLangBashPythonPowerShellOpenAI CodexClaude CodeGemini CLIActive Directory Certificate Services (ADCS)HSMs

Job description

*****THIS POSITION IS NOT ELIGIBLE FOR VISA SPONSORSHIP*****

To be considered for this position, applications and resumes are accepted only through our careers site by directly applying to the posted job. We do not accept unsolicited resumes or sales solicitations from staffing agencies. Any OCC employee wishing to submit a referral must do so through their Workday account. Any resume submitted outside of an active job posting will not be considered for employment.

What You'll Do:

Join our dynamic Security Engineering team as a Senior Associate and make a significant impact on our organization's cybersecurity posture. In this role, you'll manage privileged access systems that protect our most critical assets, implement AI-based security capabilities, and help shape our security architecture. This position offers excellent growth opportunities as you'll work with best-in-class technologies while collaborating with cross-functional teams to solve complex security challenges. If you're passionate about cybersecurity and seeking a role where your expertise directly strengthens organizational resilience, this is an ideal next step for your career.

Primary Duties and Responsibilities:

To perform this job successfully, an individual must be able to perform each primary duty satisfactorily.

  • Provide 24x7 operational support for the suite of privileged management solutions (e.g., CyberArk, Hashi, PKI), including implementing hot fixes, resolving bugs, troubleshooting issues, performing break-fixes, managing secrets lifecycle, and delivering end-user support.

  • Support the operational integrity of privileged access management infrastructure throughout its lifecycle (e.g., patching, version control, system upgrades, alignment with OCC/Security standards, etc.), escalating complex architectural or design issues to senior engineering staff as needed.

  • Assist in implementing system enhancements to improve platform user experience and automated integrations, and contribute to troubleshooting and remediation of functional and technical problems under the guidance of senior team members.

Supervisory Responsibilities:

  • None

Qualifications:

The requirements listed are representative of the knowledge, skill, and/or ability required.  Reasonable accommodations may be made to enable individuals with disabilities to perform the primary functions.

  • Knowledge of application authentication and authorization systems (i.e., Active Directory, oAuth 2.0, OIDC, AWS IAM, App Role, k8s, LDAPS, Kerberos, Certificate)

  • Working knowledge of the cloud ecosystem and CI/CD deployments with Terraform, Ansible, and Jenkins pipelines.

  • Working knowledge of security architecture principles including confidentiality, integrity, and availability.

Technical Skills:

  • Hands-on experience providing operational support for one or more of the following: All CyberArk Self-Hosted Components/Services (PSM, CPM, PVWA, CCP, CP, Vault, SCIM), HashiCorp Vault Self-Hosted, Active Directory Certificate Services (ADCS), HSMs, and Public Key Infrastructure (PKI).

  • Working proficiency in one or more scripting/automation languages such as GoLang, Bash, Python, PowerShell, Ansible, and/or Terraform.

  • General understanding of privileged access management methodologies for on-prem and cloud implementations.

Education and/or Experience:

  • Experience in one or more of the following disciplines: security operations, development, engineering, or architecture

  • Experience supporting privileged access management and access controls programs.

  • Professional or personal experience using AI coding agents such as OpenAI Codex, Claude Code, or Gemini CLI.

Certificates or Licenses:

  • None required

About Us

The Options Clearing Corporation (OCC) is the world's largest equity derivatives clearing organization. Founded in 1973, OCC is dedicated to promoting stability and market integrity by delivering clearing and settlement services for options, futures and securities lending transactions. As a Systemically Important Financial Market Utility (SIFMU), OCC operates under the jurisdiction of the U.S. Securities and Exchange Commission (SEC), the U.S. Commodity Futures Trading Commission (CFTC), and the Board of Governors of the Federal Reserve System. OCC has more than 100 clearing members and provides central counterparty (CCP) clearing and settlement services to 19 exchanges and trading platforms. More information about OCC is available at www.theocc.com.

Benefits

A highly collaborative and supportive environment developed to encourage work-life balance and employee wellness. Some of these components include:

  • A hybrid work environment, up to 2 days per week of remote work
  • Tuition Reimbursement to support your continued education
  • Student Loan Repayment Assistance
  • Technology Stipend allowing you to use the device of your choice to connect to our network while working remotely
  • Generous PTO and Parental leave
  • 401k Employer Match
  • Competitive health benefits including medical, dental and vision

Visit https://www.theocc.com/careers/thriving-together for more information.

Compensation

  • The salary range listed for any given position is exclusive of fringe benefits and potential bonuses. If hired at OCC, your final base salary compensation will be determined by factors such as skills, experience and/or education.
  • In addition, we believe in the importance of pay equity and consider internal equity of our current team members as part of any final offer.
  • We typically do not hire at the maximum of the range in order to allow for future and continued salary growth. We also offer a substantial benefits package as noted on www.theocc.com/careers
  • All employees may be eligible for a discretionary bonus. Discretionary bonuses are based on various factors, including, but not limited to, company and individual performance and are not guaranteed.

Salary Range

$99,300.00 - $169,600.00

Incentive Range

6% to 10%

This position is eligible for an annual discretionary incentive compensation award, for which the target range is listed above (see Incentive Range). The amount of such award, if any, will be based on various factors, including without limitation, both individual and company performance.

Step 1
When you find a position you're interested in, click the 'Apply' button. Please complete the application and attach your resume.  

Step 2
You will receive an email notification to confirm that we've received your application.

Step 3
If you are called in for an interview, a representative from OCC will contact you to set up a date, time, and location. 

For more information about OCC, please click here.

OCC is an Equal Opportunity Employer

About The Options Clearing Corporation

A U.S. financial market utility providing central-counterparty clearing and settlement for listed options, futures, and securities lending.

Similar jobs

Security Engineer roles near Chicago, Illinois
3d
Save
Mark Applied
Hide
AI Lead Security Engineer
Plano or Seattle or Chicago or Columbus
$138k-$215k/yr OnsiteFull Time
JPMorgan Chase
JPMorgan ChaseNYSE: JPM: Global financial services and investment banking firm.
5+ YOERequires AI security engineering and architecture training or certification, 5+ years of applied experience, hands-on coding, enterprise security design, programming, threat modeling, penetration testing, and cloud-native experience.
SCA, SAST, DAST, CI/CD
4d
Save
Mark Applied
Hide
LINCS Security Engineer
Temple or Papillion or Aurora or Garland or Huntsville or Houston
$162k-$227k/yr OnsiteFull Time
Meta
MetaNASDAQ: META: Builds technologies that help people connect, find communities, and grow businesses.
7+ YOEBachelor's degree or equivalent practical experience, 7+ years in network, infrastructure, or telecommunications security, security program ownership, and knowledge of network engineering and secure architectures.
TCP/IP, AI tools
1w
Save
Mark Applied
Hide
Security Engineer
Chicago, Illinois, United States
$78k-$119k/yr HybridFull Time
Sargent & Lundy
Sargent & Lundy: Professional engineering consultancy for the power and energy industry.
5+ YOEBachelor's degree or equivalent experience and 5+ years of hands-on security engineering. Requires Microsoft Entra, Azure, Palo Alto, Purview DLP, Zero Trust, cloud security, and enterprise platform experience.
Microsoft Entra, SSO, MFA, XSIAM, CASB, DLP, EDR/XDR, Azure, Oracle Cloud Infrastructure, CSPM, Prisma Access, SASE, SOAR, Unit 42, Microsoft Purview, Information Protection, Insider Risk Management, Outlook, Exchange, Teams, Microsoft SharePoint, Microsoft OneDrive, Egnyte, Windows, macOS, Linux, ISO 27001, NIST 800-171, CMMC Level 2, SOC 2, Cortex XDR
1w
Save
Mark Applied
Hide
Staff/Lead Security Engineer - PAM
Chicago, Illinois, United States
$132k-$220k/yr OnsiteFull Time
CME Group
CME GroupNasdaq Global Select Market: CME: Public derivatives marketplace operating futures, options, cash and OTC markets for global institutions, businesses, governments and investors.
7+ YOERequires 7+ years with CyberArk/Idira, large-scale PAM implementation experience, Windows/Linux expertise, scripting in PowerShell or Python, IAM and security controls knowledge, and strong troubleshooting and communication skills.
CyberArk, Idira, Privileged Cloud, PowerShell, Python, Windows, Linux, GCP, Agile, Scrum
2w
Save
Mark Applied
Hide
Security Engineer, Cloud and AI
Chicago, Illinois, United States
$150k-$170k/yr HybridFull Time
National Association of REALTORS
National Association of REALTORS: Nonprofit American trade association serving real estate professionals through advocacy, education, research, and member resources.
5+ YOEBachelor's or master's degree or equivalent experience, 5+ years in information or software security, including 2+ years securing production cloud environments, with strong Azure, application, AI, and DevSecOps expertise.
Microsoft Azure, Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Entra ID, Azure DevOps, C#, Python, JavaScript, TypeScript, Java, NIST AI RMF, OWASP Top 10 for LLM Applications, MITRE ATLAS, Terraform, Bicep, Microsoft Power Platform, Microsoft Power Apps, Microsoft Power Automate, SAST, DAST, OAuth, OIDC, REST APIs, DLP, SIEM, MDR
2w
Save
Mark Applied
Hide
Sr. Security Engineer - Cloud Threat Detection
Charlotte or Columbus or Hartford or Chicago
$128k-$193k/yr HybridFull Time
The Hartford
The HartfordNYSE: HIG: Provider of property and casualty insurance and employee benefits.
5+ YOERequires 5+ years of cybersecurity experience, hands-on AWS and GCP security operations, enterprise SIEM detection engineering, cloud telemetry analysis, documentation, and SOC analyst mentoring.
AWS, Google Cloud Platform (GCP), AWS GuardDuty, AWS CloudTrail, AWS VPC Flow Logs, AWS Config, Google Security Command Center (SCC), Google Cloud Audit Logs, Google Cloud Logging, Identity and Access Management (IAM), Orca, CrowdStrike, Wiz, Splunk, Splunk Enterprise Security, Microsoft Sentinel, QRadar, Cortex XSIAM, MITRE ATT&CK, Python, PowerShell, Bash, SentinelOne, Microsoft Defender XDR for Endpoint, SPL, SOAR
2w
Save
Mark Applied
Hide
Sr. Security Engineer - Cloud Threat Detection
Hartford or Charlotte or Columbus or Chicago
$128k-$193k/yr HybridFull Time
The Hartford
The HartfordNYSE: HIG: Provider of property and casualty insurance and employee benefits.
5+ YOERequires 5+ years of cybersecurity experience, hands-on AWS and GCP security, enterprise SIEM detection development, cloud telemetry investigation, documentation, analyst mentoring, and US work authorization without sponsorship.
AWS, Google Cloud Platform (GCP), AWS GuardDuty, AWS CloudTrail, AWS VPC Flow Logs, AWS Config, Google Security Command Center (SCC), Google Cloud Audit Logs, Google Cloud Logging, Identity and Access Management (IAM), Orca, CrowdStrike, Wiz, Splunk, Splunk Enterprise Security, Microsoft Sentinel, QRadar, Cortex XSIAM, MITRE ATT&CK, SPL, Python, PowerShell, Bash, SOAR, SentinelOne, Microsoft Defender XDR for Endpoint
3w
Save
Mark Applied
Hide
Senior Staff Security Engineer, Ripple Treasury
New York City or Chicago or San Francisco
$224k-$300k/yr HybridFull Time
Ripple
Ripple: Enables institutions to move, manage, and tokenize value.
10+ YOERequires 10+ years of security engineering experience, product and infrastructure security expertise, cloud security across Azure/AWS/GCP, DevSecOps tooling, Python or Go, cryptography, and key management.
Azure, AWS, GCP, Kubernetes, STRIDE, OWASP Top 10, Python, Go, HSMs, MPC, PKI, CI/CD