Insight Global logo

DevSecOps Engineer

Insight Global

Chicago, ILJobSeen 1 day agoSeen in employer's feed today

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Chicago, IL
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

Bachelor's degree

Job overview

The Cybersecurity team at Cboe seeks an Application Security Engineer to enhance the security of containerized services on Kubernetes. The role partners with engineering teams, conducts design reviews, integrates security tooling into CI/CD pipelines, and supports incident response, while continuously developing application and Kubernetes security expertise.

Skills & qualifications

RequiredNice to have

Skills

Docker/OCI ContainersKubernetesSASTDependency ScanningSecret DetectionCI/CD PipelinesGitGoJavaC#PythonNode.jsSecure Coding PracticesWeb and API VulnerabilitiesRBACNamespacesService Accounts

Qualifications

2+ Years Professional Experience in Software Engineering, Application Security, or Related RoleBachelor's Degree in Computer Science, Information Security, or Related Field

Full job description

Job Description

Cboe's Cybersecurity team is seeking an Application Security Engineer to develop their expertise in practical, code-adjacent security within a collaborative and fast-paced environment. This role works closely with application and platform engineering teams to help design, build, and deploy secure containerized services on Kubernetes, applying security fundamentals within defined processes and with guidance from senior engineers. The ideal candidate brings hands-on software development experience and a genuine interest in growing their application security skills on real-world challenges. This role reports to the Manager, Cybersecurity.

Your responsibilities will be:

Secure Development Partnership

Partner with engineering teams to improve security of containerized services running on Kubernetes

Participate in secure design reviews and threat modeling for new features, services, and APIs

Perform code-level security reviews and provide clear, actionable remediation guidance to developers

Security Tooling & CI/CD Integration

Help integrate and operate security tooling in CI/CD pipelines, including SAST, dependency and container image scanning (SCA), and secret detection

Validate and triage security findings — distinguishing real risk from false positives and helping prioritize remediation based on impact

Container & Kubernetes Security

Contribute to container image security practices including secure base image usage, dependency hygiene, and attack surface reduction

Assist in defining and applying secure coding and deployment standards for Kubernetes workloads, APIs, and service-to-service communication

Incident Support & Growth

Support incident response and post-incident reviews by helping analyze root causes and contributing to preventative fixes

Continuously grow application and Kubernetes security skills through hands-on work and mentorship from senior team members

Skills and Requirements

2+ years of professional experience in software engineering, application security, or a closely related role

Bachelor's degree in Computer Science, Information Security, or a related field

Hands-on software development experience, including building, testing, and deploying production services and comfort reading and modifying existing codebases

Experience building and running Docker/OCI containers, with an understanding of container images, layers, and runtime behavior

Familiarity with Kubernetes, including deploying or supporting applications and working with core primitives (pods, deployments, services, ingress) and basic security concepts (RBAC, namespaces, service accounts)

Working knowledge of common web and API vulnerabilities (authentication/authorization issues, injection, SSRF, etc.) and secure coding practices

Proficiency in at least one backend programming language (e.g., Go, Java, C#, Python, Node.js) and experience with modern CI/CD workflows and Git-based development

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to [email protected].

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.