1

Trainee Application Security Engineer Jobs in Illinois

Tempus is seeking a Senior Application Security Engineer with deep expertise in penetration testing to lead efforts in identifying and remediating vulnerabilities across web, mobile, and medical ...

Tempus is seeking a Senior Application Security Engineer with deep expertise in penetration testing to lead efforts in identifying and remediating vulnerabilities across web, mobile, and medical ...

Web Application Security

Chicago, IL · On-site

$60.50 - $81/hr

They are seeking a Web Application Security professional to conduct security testing, provide documentation on security policies, and assist developers with best practices. Responsibilities : • ...

Job#: 3045191 Application Security Engineer Bot Detection and Routing Location: Chicago, Denver, Charlotte or Washington DC Required onsite 5x a week Overview We are seeking an experienced ...

AI Security Engineer

Chicago, IL · On-site

$110 - $140/hr

Secure Coding & Application Security * Apply OWASP principles and industry‑standard secure development lifecycle (SDLC) practices to engineering workflows. * Perform static and dynamic application ...

Partner with product security, application engineering, cloud engineering, IoT engineering, architecture, and business teams to translate testing results into clear remediation actions and risk-based ...

Partner with product security, application engineering, cloud engineering, IoT engineering, architecture, and business teams to translate testing results into clear remediation actions and risk-based ...

Showing results 21-40

Trainee Application Security Engineer information

What is the difference between Trainee Application Security Engineer vs Junior Application Security Engineer?

AspectTrainee Application Security EngineerJunior Application Security Engineer
CertificationsEntry-level, often no certifications required or basic security certificationsSome certifications preferred, such as CompTIA Security+ or CEH
Work EnvironmentTraining-focused, supervised tasks, learning phaseMore independent, handling security assessments and vulnerability testing
ResponsibilitiesAssisting in security audits, learning security tools, basic analysisConducting security scans, analyzing vulnerabilities, supporting security projects

While both roles involve security tasks, a Trainee Application Security Engineer is typically in a learning phase with supervised duties, whereas a Junior Application Security Engineer handles more independent security assessments and analysis, requiring some experience and certifications.

What are the most commonly searched types of Application Security Engineer jobs in Illinois?

The most popular types of Application Security Engineer jobs in Illinois are:

What are popular job titles related to Trainee Application Security Engineer jobs in Illinois?

For Trainee Application Security Engineer jobs in Illinois, the most frequently searched job titles are:

What job categories do people searching Trainee Application Security Engineer jobs in Illinois look for?

The top searched job categories for Trainee Application Security Engineer jobs in Illinois are:

What cities in Illinois are hiring for Trainee Application Security Engineer jobs?

Cities in Illinois with the most Trainee Application Security Engineer job openings:

Infographic showing various Trainee Application Security Engineer job openings in Illinois as of August 2026, with employment types broken down into 74% Full Time, 22% Part Time, and 4% Contract. Highlights an 89% Physical, 3% Hybrid, and 8% Remote job distribution.

Senior Application Security Engineer (DevSecOps & CI/CD Security)

Javen Technologies, Inc.

Chicago, IL • On-site

$60.50 - $81/hr

Full-time

Re-posted 6 days ago


Job description

Job Summary:
Javen Technologies, Inc. is seeking a Senior Application Security Engineer to lead the integration of security controls into CI/CD pipelines and improve application security quality gates. The role involves providing expert guidance on secure architectures, conducting secure code reviews, and mentoring engineering teams to ensure secure software development practices.
Responsibilities:
• Lead the integration of security controls into CI/CD pipelines, including static analysis, software composition analysis, dynamic testing, secrets management, and container security workflows.
• Define and continuously improve application security quality gates and review procedures in alignment with Modern Engineering SDLC practices.
• Lead the integration of application security controls into CI/CD pipelines, including SAST, SCA, DAST, secrets detection, and container security, with automated gating and scalable DevSecOps workflows.
• Define and continuously improve application security quality gates and review processes aligned to Modern Engineering SDLC standards, including risk based thresholds, exception handling, and audit ready documentation.
• Provide expert guidance on secure architectures and design patterns, advising engineering teams on security tradeoffs for cloud native, microservices, and API driven solutions.
• Own the development, maintenance, and enforcement of enterprise secure coding standards.
• Align secure coding governance with established Bank technology standards, including SDLC, secure development expectations, and code review procedures.
• Ensure teams understand and implement secure-by-default development practices throughout all project phases.
• Deep expertise with Static Application Security Testing (SAST) platforms, including scan configuration, custom rule or query tuning, results triage, risk based prioritization, and disciplined false positive suppression with documented justification.
• Strong experience with Software Composition Analysis (SCA) tools, covering open source dependency analysis, license compliance, vulnerability assessment, policy configuration, and developer focused remediation guidance.
• Proficiency with Infrastructure as Code (IaC) security scanning across technologies such as Terraform, CloudFormation, Kubernetes, and Helm, including rule tuning and remediation recommendations aligned with cloud security best practices.
• Hands on experience with Dynamic Application Security Testing (DAST), including scan configuration, authentication handling, API scanning, vulnerability validation, and false positive management.
• Demonstrated ability to analyze, validate, and contextualize findings across SAST, SCA, IaC, and DAST tools, translating technical results into clear, actionable, and risk informed remediation guidance for development teams.
• Extensive experience integrating application and cloud security tooling into CI/CD pipelines, implementing security gates, and aligning scan outcomes with modern DevSecOps workflows.
• Perform deep-dive manual and automated secure code reviews for complex, high-risk applications and services.
• Identify systemic vulnerabilities and recommend structural code and design improvements.
• Serve as the primary escalation point for security concerns raised during code review or pipeline security scans.
• Proven background in secure code reviews, vulnerability root-cause analysis, and validating fixes across multiple languages and frameworks.
• Proficiency in one or more programming languages (e.g., Java, C#, Python, TypeScript) with a strong understanding of modern application architectures including microservices, APIs, containers, and cloud native platforms.
• Lead threat modeling sessions for new and existing applications, cloud-native architectures, and major platform initiatives.
• Assess application architectures for security gaps and recommend compensating or preventative controls.
• Partner with engineering, Cloud, Architecture, and DevOps teams to embed security into design decisions.
• Own remediation guidance for high- and critical-severity findings across AppSec scanners, third party assessments, and internal reviews.
• Influence prioritization decisions by applying expert judgment to business risk, architectural impact, and threat landscape considerations.
• Support program-level improvements to vulnerability lifecycle management across engineering teams.
• Provide coaching and mentoring to Application Security Engineers, developers, and DevOps staff, consistent with expectations for senior Bank engineers.
• Advocate for secure engineering practices across teams and promote a strong security culture within the SDLC.
• Contribute to enterprise communities of practice, working groups, and secure development initiatives.
Qualifications:
Required:
• 6–8 years of experience in application security, software engineering, product security, or DevOps with a strong security focus, consistent with senior engineer expectations.
• Deep expertise in secure software design principles, threat modeling methodologies, and enterprise application security controls.
• Extensive experience with CI/CD security integration and DevSecOps tooling (SAST, SCA, DAST, secrets management, container security).
• Demonstrated experience performing and leading secure code reviews and providing actionable remediation guidance.
• Proficiency in one or more programming languages (e.g., Java, C#, Python, TypeScript) and familiarity with modern application architectures (microservices, containers, APIs, cloud-native).
Preferred:
• Experience designing or evaluating secure architectures in cloud platforms such as AWS or Azure, aligned with senior engineering expectations in other Bank roles.
• Familiarity with enterprise SDLC governance, Agile methodologies, and security-by-design frameworks.
• Prior experience leading large-scale DevSecOps initiatives or maturing application security programs.
• Relevant certifications such as CISSP, CSSLP, GWEB, or cloud security certifications.
• Experience with Checkmarx, Prisma Cloud, Jfrog Xray or similar tools.
• Experience with common programming languages including C#, Java, and YAML.
Company:
Javen Technologies is a Bloomington based Software Services Company. We specialized in providing software development and IT staffing services. Founded in 2003, the company is headquartered in Bloomington, USA, with a team of 201-500 employees. The company is currently Growth Stage.