Search jobs > Chicago, IL > Senior application security

Senior Cloud and Application Security Engineer

Ryan Specialty Group
USA, Illinois, Chicago
$89.2K-$117.1K a year
Full-time

Position Summary :

We are seeking a proactive and collaborative Senior Cloud and Application Security Engineer to integrate security measures into every phase of our cloud and application development lifecycle.

The ideal candidate will champion security best practices and foster a culture of security awareness within the organization.

Responsibilities include developing automated security solutions to enhance efficiency and response capabilities, designing and managing security protocols for cloud infrastructure, and enforcing security guidelines for Infrastructure as Code (IaC).

The role requires securing containerized environments, partnering with DevOps for CI / CD pipeline security, and leading security initiatives alongside the Senior Application Security Engineer.

The Senior Cloud and Application Security Engineer will also maintain application security standards, stay updated on emerging security threats, and proactively investigate potential risks.

An action-oriented mindset and strong relationship-building skills are essential to drive information security forward effectively.

Location :

Chicago - Illinois - Wacker

What will your job entail?

  • Collaborate with IT, development, and operations teams to embed security into every aspect of the cloud and application security lifecycle
  • Advocate for security best practices, raising awareness and driving a security-first culture across the organization
  • Develop and implement automated security solutions to streamline security processes, improve efficiency, and enhance response capabilities
  • Collaborate with architecture and IT to design, implement, and manage security measures for our cloud environments
  • Develop and enforce security best practices for Infrastructure as Code (IaC) to ensure secure deployment and configuration management
  • Secure containerized environments, including Docker and Kubernetes, and ensure compliance with security benchmarks
  • Partner with DevOps teams to integrate security into the CI / CD pipeline for container deployment and management
  • Along with the Senior Application Security Engineer, lead application security initiatives, including secure code reviews, vulnerability assessments, and web application penetration testing
  • Develop and maintain application security standards and guidelines, ensuring they are integrated into the software development lifecycle
  • Stay abreast of the latest security threats, trends, and technologies, especially in cloud, IaC, and container environments
  • Proactively identify and investigate security threats by analyzing security logs, conducting threat hunting exercises, and implementing advanced detection mechanisms
  • Continuously evaluate and improve security tools and processes to address evolving security
  • Be action oriented, demonstrating high energy and an action-oriented approach to challenging work tasks, with a willingness to act swiftly and with minimal planning when opportunities arise.
  • Build strong peer relationships by finding common ground and fostering problem-solving for mutual benefit, advocating for information security interests while remaining equitable to other groups, promoting teamwork and cooperation, and maintaining open and honest communication with colleagues

Education / Experience / Skills :

  • Bachelor's degree in computer science / Engineering / Information Security preferred
  • Minimum of 7 years' experience in Information Security within cloud-native or SaaS technology environments
  • Proficiency in cloud platforms such as AWS, Azure, and GCP, container orchestration tools (Kubernetes, Docker), and Infrastructure as Code (Terraform, Ansible)
  • Experience in application security practices and tools, including static / dynamic analysis and familiarity with OWASP standards
  • Strong analytical, problem-solving, and communication skills
  • Ability to work collaboratively in a dynamic environment
  • 3-5 years of hands-on experience securing Infrastructure as Code, Application Security, and Policy as Code (PaC) using coding languages such as Python, Go, JavaScript, or YAML
  • Minimum two years of experience automating and scaling CIS benchmarks or equivalent standards
  • Extensive experience writing technical and business-friendly security documentation
  • Strong written and verbal communication skills in English
  • Professional certifications such as Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP) are highly desirable
  • Salary Range :
  • $160-180k
  • $160-180k

Please disregard the salary listed below, it is inaccurate.

Ryan Specialty is an Equal Opportunity Employer. We are committed to building and sustaining a diverse workforce throughout the organization.

Our vision is an inclusive and equitable workplace where all employees are valued for and evaluated on their performance and contributions.

Differences in race, creed, color, religious beliefs, physical or mental capabilities, gender identity or expression, sexual orientation, and many other characteristics bring together varied perspectives and add value to the service we provide our clients, trading partners, and communities.

This policy extends to all aspects of our employment practices, including but not limited to, recruiting, hiring, discipline, firing, promoting, transferring, compensation, benefits, training, leaves of absence, and other terms, conditions, and benefits of employment.

How We Support Our Teammates

Ryan Specialty seeks to offer our employees a comprehensive and best-in-class benefits package that helps them - and their family members - achieve their physical, financial, and emotional well-being goals.

In addition to paid time off for company holidays, vacation, sick and personal days, Ryan offers paid parental leave, mental health services and more.

The target salary range for this position is $89,200.00 - $117,075.00 annually.

The wage range for this role considers many factors, such as training, transferable skills, work experience, licensure and certification, business needs, and market demands.

The base pay range is subject to change and may be modified in the future. Full-time roles are eligible for bonuses and benefits.

For additional information on Ryan Specialty Total Rewards, visit our website https : / / benefits.ryansg.com / .

We provide individuals with disabilities reasonable accommodations to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment in accordance with applicable law.

Please contact us to request an accommodation at [email protected]

The above is intended to describe this job's general requirements. It is not to be construed as an exhaustive statement of duties, responsibilities, or physical requirements.

Nothing in this job description restricts management's right to assign or reassign duties and responsibilities to this job at any time.

Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.

30+ days ago
Related jobs
Promoted
JP Morgan Chase & Co.
Chicago, Illinois

As a Senior Lead Security Engineer at JPMorgan Chase within the Cybersecurity organization, you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and m...

Promoted
Disney Entertainment & ESPN Technology
Chicago, Illinois

DE&E Technology encompasses leading premium streaming services, offering live and on-demand TV and movies, with and without commercials, both in and outside the home. Just some of the exciting products we work on include the websites & mobile apps for ESPN & ESPN Fantasy, ABC / ABC News, Disney+, St...

Promoted
Sargent & Lundy
Chicago, Illinois

This position will offer you the opportunity to utilize and expand your civil engineering degree and skills, while working in a multi-disciplined team environment with other engineers and/or designers in the design, modification, and analysis of power plants, substations, transmission lines and simi...

Promoted
JP Morgan Chase & Co.
Chicago, Illinois

Solid understanding of agile methodologies such as CI/CD with Jenkins and BitBucket, Applicant Resiliency, and Security, TDD, DevOps automation and code quality tools (i. Gathers, analyzes, synthesizes, and develops visualizations and reporting from large, diverse data sets in service of continuous ...

Promoted
Sargent & Lundy
Chicago, Illinois

Visit client office and/or plant site locations to interface with the client and make presentations related to engineering tasks and status. Engineering analyses and evaluations to support modifications and operation of plant systems. Working knowledge of codes, standards, and regulations that apply...

Promoted
Morningstar
Chicago, Illinois

You should have solid software engineering experience in building commercial-grade web-based applications and scalable cloud-centric APIs (Applications and programming interfaces). As a Full Stack Developer, you should be comfortable around both front-end and back-end coding languages, development f...

Promoted
Berkeley Square - Talent Specialists in IT & Engineering
Chicago, Illinois

As a Senior FPGA Engineer, you will be responsible for designing, implementing, and optimizing FPGA-based systems to support their proprietary trading algorithms. Collaborate with traders and quantitative researchers to understand trading strategies and translate them into FPGA implementations. You ...

Sargent & Lundy
Chicago, Illinois

We provide engineering services for green hydrogen production via electrolysis using solar, wind, hydro, and nuclear power sources and we support on-site usage in power generation, fuel cells, and fueling stations. The design responsibilities of the candidate include: developing the complete calcula...

Expedia Group
Chicago, Illinois

Are you a highly motivated, experienced & curious security risk and compliance professional who can address the challenges of increasing our security posture and building trust across Expedia Group (EG)? Can you play a role in an enterprise-wide security risk and compliance strategic initiatives...

myworkdayjobs.com - ATS
Chicago, Illinois

Senior Underwriter - Architects & Engineers page is loaded Senior Underwriter - Architects & Engineers Apply locations USA, Chicago time type Full time posted on Posted 3 Days Ago job requisition id R0016073. Here you’ll use your common sense, positive attitude and ambition to place good ris...