78 application security engineer jobs at 65 companies in Illinois
1w
Save
Mark Applied
Hide
1w
Principal Application Security Engineer
United States or Illinois
$172k-$240k/yrRemoteFull Time
CDWNasdaq Global Select Market: CDW: Public U.S. multi-brand IT solutions provider serving business, government, education, and healthcare customers.
10+ YOE10+ years in application security engineering, with deep expertise in secure architecture, coding, vulnerability analysis, threat modeling, API security, CI/CD controls, and modern application technology stacks.
Chicago or California or Colorado or Florida or Georgia or Illinois or Indiana or Minnesota or Missouri or Montana or New Jersey or New York or North Carolina or Ohio or Oregon or Pennsylvania or South Carolina or Texas or Utah or Vermont or Virginia or Washington or Washington or Wisconsin
$210k-$260k/yrHybridFull Time
NinjaTrader: Privately held futures trading platform and brokerage serving retail and professional futures traders.
7+ YOE7+ years in application/product/security engineering; hands-on threat modeling, vulnerability management, secure design, CI/CD integration, automation using Python/Go; experience with cloud-native AWS/GCP environments.
Seattle or Los Angeles or San Francisco or California or Colorado or Connecticut or Delaware or Hawaii or Illinois or Maine or Maryland or Massachusetts or Minnesota or Nevada or New Jersey or New York or Rhode Island or Virginia or Washington or Washington DC or United States
$141k-$259k/yrOnsiteFull Time
NordstromNew York Stock Exchange: JWN: Fashion specialty retailer offering apparel, footwear, and accessories.
4+ YOE4+ years in application security or related field; experience shipping security tooling and automation; expert threat modeling, security design review, and manual code review; fluent reading/writing code in Java, Kotlin, C#, or Python; cloud-native and LLM/AI security knowledge.
Epsilon: Epsilon is a global marketing-data, consumer-analytics, and marketing-technology serving brands.
10+ YOEBS/MS in Computer Science, 10+ years experience, software development and CI/CD experience, application security testing (SAST/DAST/MAST/RAST/IAST), vulnerability management, OWASP Top 10/CWE knowledge, cloud and web/app security, threat modeling, network security, and cryptography.
Ann & Robert H. Lurie Children's Hospital of Chicago: Regional pediatric hospital providing comprehensive medical care and research.
3+ YOEBachelor's degree or equivalent experience; 3–7+ years in application security, cybersecurity, or enterprise application support; expertise in application security controls, vulnerability management, IAM, OWASP, and enterprise integrations.
Qualys, Qualys WAS, Metasploit, SAST, DAST, WAF, OWASP Top 10, CIS Controls and Benchmarks, SSO, OAuth
Chicago or Scottsdale or San Francisco or New York City
$149k-$218k/yrHybridFull Time
Early Warning Services: U.S. bank-owned fintech and consumer reporting agency providing identity, fraud-risk, and real-time payment solutions to financial institutions.
8+ YOE8+ years network security experience with 5+ years in proxy and DLP; hands-on with Microsoft Defender, Palo Alto Prisma Access, Netskope; scripting (PowerShell, Python); experience with compliance and control testing.
Microsoft Defender, Palo Alto Prisma Access, Netskope, PowerShell, Python
PinterestNYSE: PINS: A visual discovery engine for finding inspiration.
5+ YOEBachelor's degree in computer science, engineering, or related field or equivalent experience; 5+ years in product/application security or security software engineering; Python proficiency.
Boston or Carmel or Chicago or Lambertville or New York City or San Francisco or United States
$60k-$80k/yrHybridFull Time
Real Chemistry: Private healthcare communications and analytics services firm serving life sciences and healthcare companies.
5+ YOE5+ years cloud security experience (3+ in high-growth acceptable), including 2 years focused on application security; hands-on with AWS IAM, SAML/OIDC, GitHub security tooling, threat modeling, penetration testing, and familiarity with SOC 2/GDPR/HIPAA-adjacent controls.
Boston or Chicago or Los Angeles or New York or San Francisco or Toronto or Vancouver or Vancouver
$145k-$175k/yrRemoteFull Time
Later: Private influencer marketing and social media management serving brands, agencies, and creators.
5+ YOE5+ years security engineering experience; strong application, cloud, and infrastructure security; SOC 2 and compliance experience; vulnerability management, IaC and CI/CD security; strong communication and software engineering skills.
OWASP, NIST, CIS Controls, SOC 2, ISO 27001, AWS Security Hub, Azure Security Center, GCP Security Command Center, SIEM, SOAR, Terraform, CloudFormation, C#, CI/CD
Dot Foods, Inc.: Family-owned food redistributor serving suppliers, distributors, retailers, and foodservice operators across North America.
2+ YOE2+ years experience in software/cloud/DevOps or security; bachelor's or equivalent; experience with .NET/Python/Azure; knowledge of secure development, API security, auth, and secrets management.
.NET, Python, Azure, Azure DevOps, GitHub Actions, Docker, Kubernetes, Terraform, Bicep, OWASP Top 10, NIST AI Risk Management Framework
Staff Security Engineer, Cloud and Product Security
Arizona or California or Colorado or District of Columbia or Florida or Georgia or Iowa or Illinois or Massachusetts or Maryland or Michigan or Minnesota or Montana or Nebraska or North Carolina or New Hampshire or New Jersey or Nevada or New York or Ohio or Oregon or Pennsylvania or Rhode Island or Tennessee or Texas or Utah or Washington
$198k-$220k/yrRemoteFull Time
Lob: Direct-mail automation platform for businesses, providing APIs, printing, routing, fulfillment, and delivery.
8+ YOE8+ years security engineering experience with cloud security, detection engineering, incident response, and application security; hands-on AWS, IAC, and detection tooling experience; ability to drive security work through engineering teams.
Sr External Web Application & API Security Engineer
Chicago, Illinois, United States
$138k-$173k/yrOnsiteFull Time
McDonald'sNYSE: MCD: Global leader in fast food and quick service restaurants.
5+ YOEBachelor's degree or equivalent experience; 5+ years security engineering, including 3+ years hands-on API security. Requires WAF/API platforms, cloud, security telemetry, scripting, and SIEM/SOAR integrations.
REST, GraphQL, SOAP, gRPC, HTTP, TLS, JSON, OAuth 2.0, OpenID Connect, JWT, AWS, Microsoft Azure, Google Cloud Platform, Terraform, Akamai API Security, Akamai App & API Protector, OpenAPI, SIEM, SOAR, CI/CD, DevSecOps, WAF
Hanwha Vision America: Provides businesses with AI-powered video surveillance cameras, storage, and integrated security solutions.
4+ YOEBachelor’s degree or equivalent experience, 4+ years in customer-facing pre-sales, physical security experience, system design and testing expertise, and ability to explain complex technical solutions.
United AirlinesNASDAQ: UAL: A major U.S. airline providing global passenger and cargo transport.
2+ YOEBachelor's degree, 2+ years in a related field, scripting or coding ability, application security testing, OWASP/CWE, DevSecOps, SDLC, cloud security, technical documentation, and US work authorization without sponsorship.
Texas or Oklahoma or Arizona or Washington or Missouri or Illinois or Colorado or Oregon
RemoteFull Time
ThalesEuronext Paris: HO: Global technology leader in aerospace, defense, and security.
5+ YOE5+ years sales engineering experience in application security (DDoS, WAF, API, bot management); strong networking fundamentals (TCP/IP, DNS, TLS, HTTP, CDN); hands-on with AWS/Azure/GCP, K8s, Docker; consultative selling; up to 30% travel; must be authorized to work in the US.
HUB International: Global insurance brokerage providing risk management and financial services.
8+ YOEBachelor's degree or applicable experience; 8+ years in information security operations; 5+ years with cloud infrastructure and O365; incident response, scripting, security tooling, and project leadership experience.
TCP/IP, DNS, WAF, SEIM, SOAR, Active Directory, MS Entra ID, KQL, SPL, PowerShell, Python, Shell, AWS, GCP, Azure, O365, Windows Event, SMTP, SPF, DKIM, DMARC, ISO 27001, NIST 800-53, SOC2, PCI, SOX
California or Utah or Arizona or Texas or Illinois or Colorado or Washington or Nevada or United States or Alabama or Arkansas or Connecticut or Florida or Georgia or Hawaii or Idaho or Indiana or Iowa or Kansas or Kentucky or Maryland or Massachusetts or Michigan or Minnesota or Missouri or New Hampshire or New Jersey or New Mexico or New York or North Carolina or Ohio or Oklahoma or Oregon or Pennsylvania or Rhode Island or South Carolina or Tennessee or Vermont or Virginia or Wisconsin
$157k-$196k/yrRemoteFull Time
Fuze Health: Private U.S. healthcare technology providing home diagnostics, genomics, digital pharmacy, and clinical services to healthcare partners.
4+ YOERequires 4+ years in security engineering, infrastructure, application and cloud security; Kubernetes, container, Python, Bash or Terraform experience; bachelor's degree and relevant certifications preferred.