Demo

Security Engineer III - Application Penetration Tester

CME Group
Chicago, IL Full Time
POSTED ON 3/24/2025 CLOSED ON 4/22/2025

What are the responsibilities and job description for the Security Engineer III - Application Penetration Tester position at CME Group?

We are hiring for full time hybrid (2 days) role in our Chicago office.

If candidates are outside of Chicago area relocation will be mandatory.

We cannot support remote or out of state employment.

Description

The Application Penetration Tester is responsible for performing manual application security assessments (application pentests) and communicating any findings to the Development and QA teams. Additionally, the engineer will provide application design support and security best practice guidance, in the form of consultations, to various development teams and Business stakeholders.

You will be working with a team of highly skilled Application Security Engineers that are responsible with the application security and security testing of CME Group's applications and services. This is a great environment to get exposure to a wide array of technologies and progress your application security career, while providing value to CME and helping to ensure that our applications are designed and coded in a secure fashion.

Requirements

  • 6 years' experience performing whitebox application penetration testing (Web, APIs, Thick clients); or ability to demonstrate equivalent knowledge.
  • Excellent skills with application security testing tools such as : Burpsuite, OWASP ZAP, SQLMap, IDA Pro, Kali, etc.
  • Experience performing manual application source code security reviews for various languages such as : Java, .Net (C#, VB#), C .
  • Experience working with containers (Kubernetes) and cloud technologies (GCP preferred).
  • Experience with UNIX or Linux.
  • Experience with scripting languages such as : Python, bash, Powershell, etc.
  • Have a passion for application security, willingness to continue growing your skills in this domain, and be able to share your passion and learnings with teammates.
  • Self-motivated and a self-starter. If you have a question, be pro-active in finding the answer and communicate your learnings with teammates.
  • Excellent oral and written communications skills.

Nice to have :

  • Experience working in a DevSecOps and Continuous Integration / Continuous Delivery (CI / CD) environment.
  • OSCP / OSWE, GWAPT, GMOB, GPYC, or other relevant security certifications are a plus.
  • Principal Accountabilities

  • Perform manual application penetration testing at key points in the Software Development Life Cycle (SDLC).
  • Produce documentation (reports) and present the findings discovered during your security assessments to stakeholders.
  • Provide application security consulting services to development teams at critical points in the SDLC.
  • Have an interest in continuing your education and staying current within the application security domain.
  • Education

  • A Bachelor's or Master's degree in Computer Science, Information Systems or other related discipline is required; or equivalent combination of education and relevant proven work experience.
  • LI-Hybrid

    LI-DS

    dice

    CME Group is committed to offering a competitive total rewards package for our employees that recognizes their contributions to the business and reflects our long-term investment in their future. The salary range for this role is $98,100-$163,500. Actual salary offered will be dependent on a wide array of factors including but not limited to : relevant experience, skills, education and comparison to internal employees (where relevant). Our compensation program also includes an annual target bonus opportunity for all employees, as well as the opportunity to become an owner in the company through our broad-based equity program. Through our Benefits program, we strive to offer flexibility, value and choice. From comprehensive health coverage, to a retirement package that includes both a 401(k) and an active Pension Plan, to highly competitive education reimbursement provisions, paid time off and a mental health benefit, CME Group offers a holistic Benefits package for our team and their dependents.

    CME Group : Where Futures are Made

    CME Group is the world's leading and most diverse derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it - all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we're looking for more.

    Salary : $98,100 - $163,500

    Cybersecurity Engineer III - Application Security
    McDonald's Corporation -
    Chicago, IL
    Penetration Tester
    Manpower Group Inc. -
    Chicago, IL
    Penetration Tester
    VirtualVocations -
    Lincolnwood, IL

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Security Engineer III - Application Penetration Tester?

    Sign up to receive alerts about other jobs on the Security Engineer III - Application Penetration Tester career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $112,673 - $137,290
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $111,725 - $147,313
    Income Estimation: 
    $139,945 - $168,577
    Income Estimation: 
    $140,233 - $181,029
    Income Estimation: 
    $161,209 - $233,553
    Income Estimation: 
    $118,965 - $150,754
    Income Estimation: 
    $141,372 - $178,696
    Income Estimation: 
    $83,431 - $103,091
    Income Estimation: 
    $106,113 - $127,991
    Income Estimation: 
    $106,113 - $127,991
    Income Estimation: 
    $127,094 - $153,876
    This job has expired.
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at CME Group

    CME Group
    Hired Organization Address Chicago, IL Full Time
    Senior Director – Quote Driven Markets (QDM) The Senior Director role is responsible for leading a sizable team of profe...
    CME Group
    Hired Organization Address Chicago, IL Full Time
    The Manager of Corporate Communications will work to develop, execute and manage communications strategies for CME Group...
    CME Group
    Hired Organization Address New York, NY Full Time
    CME Group, a leading derivatives marketplace, has positioned itself as a significant player in the cryptocurrency market...
    CME Group
    Hired Organization Address New York, NY Intern
    Quantitative Risk Management Year-Round Intern CME Group is currently looking for a Quant Risk Mgmt year-found intern. T...

    Not the job you're looking for? Here are some other Security Engineer III - Application Penetration Tester jobs in the Chicago, IL area that may be a better fit.

    AI Assistant is available now!

    Feel free to start your new journey!