职位发布提供的薪酬
从描述中检索。
基本薪酬范围
US$111,100.00/年 - US$185,100.00/年
Sr Security Engineer – Vulnerability Governance provides oversight of the CME’s vulnerability management program to ensure all related processes are being executed according to established procedures. This is an opportunity for the right person to become a key part of a team of global information security professionals that are executing a pivotal role in protecting and defending the CME’s critical infrastructure. This candidate will be a key participant in the design, assessment and execution of vulnerability governance measurements, metrics, and analysis. Ability to work independently as well as communication, documentation, and strong problem-solving skills are required to collaborate with more senior engineers and select information technology areas, with some supervision.
Sr Security Engineer – Vulnerability Governance
CME Group : Where Futures are Made
CME Group is the world’s leading and most diverse derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it – all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we’re looking for more.
At CME Group, we embrace our employees' diverse experiences, cultures and skills, and work to ensure that everyone’s perspectives are acknowledged and valued. As an equal opportunity employer, we recognize the importance of a diverse and inclusive workplace and consider all potential employees without regard to any protected characteristic.
Important Notice: Recruitment fraud is on the rise, with scammers using misleading promises of job offers and interviews to solicit money and personal information from job seekers. CME Group adheres to established procedures designed to maintain trust, confidence and security throughout our recruitment process. Learn more here.
Sr Security Engineer – Vulnerability Governance
- Provides oversight and ensures the effective operation of the vulnerability management program. Ensures compliance with policies and procedures.
- Tests vulnerability management engineering solutions to ensure compliance with the program’s business requirements.
- Assists with the design and execution of vulnerability management program oversight measures, dashboards, and metrics across a wide variety of assets and applications.
- Assesses results of measures and metrics to identify risk across critical areas of the vulnerability management program and to verify that the program operates as designed.
- Develops and implements governance frameworks and policies for vulnerability management.
- Identifies risk areas to include in the oversight program, as well as identifies the most effective methods of presenting audit results.
- Collaborates with cross-functional teams to gather data and contribute to program alignment.
- Researches new developments in vulnerability governance oversight.
- Follows established procedures and guidelines to provide the oversight of the CME’s vulnerability management program, with some supervision.
- Accurately defines problem statements of above average complexity. Gathers and compares data about problems, documents the details, and prepares analysis reports.
- Demonstrates understanding of most of the following: cybersecurity concepts, security frameworks, risk management principles, vulnerability management and governance principles.
- Collaborates with team members and other teams within the technology division to determine an optimal solution for stakeholders based on established standard operating procedures.
- Supports more senior engineers in gathering data to assist in setting policies.
- Stays up to date on security trends, vulnerability alerts and advisories.
- Accurately works with numbers, metrics, and spreadsheets. Produces professional-level charts and presentations.
- Comprehends and monitors complex business systems and integrated processes.
- Capable to communicate effectively with all levels of employees.
- 5+ years of vulnerability governance, vulnerability management, risk management, or IT compliance experience.
- Bachelor’s degree in Information Technology, Business Information Systems, or related field; or equivalent work experience.
- Google productivity tools
- Strong analytical and problem-solving skills
- Excellent verbal and written communication skills
- Familiarity with issue tracking systems (JIRA, Remedy, etc.)
- Familiarity with collaboration tools (Confluence, etc.)
- Experience with Qualys or other vulnerability scanning tools.
- Familiarity with security frameworks (NIST, ISO 27001, COBIT, etc.)
- Scripting (bash, PowerShell)
- Experience with vulnerability management lifecycle.
- Experience with container scanning technologies
- Experience with vulnerability management in GCP
- QA testing
CME Group : Where Futures are Made
CME Group is the world’s leading and most diverse derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it – all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we’re looking for more.
At CME Group, we embrace our employees' diverse experiences, cultures and skills, and work to ensure that everyone’s perspectives are acknowledged and valued. As an equal opportunity employer, we recognize the importance of a diverse and inclusive workplace and consider all potential employees without regard to any protected characteristic.
Important Notice: Recruitment fraud is on the rise, with scammers using misleading promises of job offers and interviews to solicit money and personal information from job seekers. CME Group adheres to established procedures designed to maintain trust, confidence and security throughout our recruitment process. Learn more here.
-
职位级别
中高级 -
职位性质
全职 -
职能类别
信息技术 -
所属行业
金融服务
找人内推,获得CME Group面试的机会可以提高 2 倍
找找认识的领英会员美国 伊利诺伊州 芝加哥有新的高级安全工程师职位时接收通知。
登录帐号,即可创建职位订阅相似搜索
查看协作文章
我们将以全新的方式解锁社区知识。专家直接在借助人工智能撰写的文章中添加见解。
查看更多