> Markdown version of [/jobs/ext/628418-principal-information-security-engineer](https://www.wearedevelopers.com/jobs/ext/628418-principal-information-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Information Security Engineer - **Company:** Chicago Board Options Exchange - **Location:** Chicago, IL, United States - **Experience:** Expert - **Salary:** $148,750.0 - $192,500.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Cyber Security, Information Leak Prevention, Linux, Electronic Design Automation, Microsoft Security Essentials, Modular Design, Security Information and Event Management, EndPointSecurity, Microsoft InTune, Information Technology, Security Orchestration, Automation & Response, Programming Languages - **Published:** June 24, 2026 - **Apply:** https://www.dice.com/job-detail/32dc18d4-ce2d-420e-9278-548cd91ebfaa ## About the Role * Proven principal-level experience (minimum 10 years) in information security, with recognized, authoritative depth across multiple security domains and a strong focus on architecture, engineering, and operations. * Experience and knowledge on current security technologies (Databahn, Google Secops, Bindplane, ProofPoint, Microsoft Security) Proficiency in scripting and automation for security operations. * Experience with Linux/Unix and Windows administration, including Active Directory (AD) and EntraID. * Proficiency with the Microsoft Security Stack (Defender for Endpoint, Defender for Identity, Defender for CloudApps, Purview DLP, Intune) You'll really stand out with: * Bachelor's Degree in Cybersecurity or Computer Science * System Administration experience in Linux and Windows * Proven ability to script and automate tasks * Specific experience with Google Secops SIEM, the Microsoft Security Stack, or ProofPoint Email Security Services * CISSP, CASP or other related security certifications ## Description The Principal Information Security Engineer is a senior member of Cboe's Security Engineering team, responsible for defining and driving the enterprise-wide security architecture, strategy, and long-term technical direction across a broad portfolio of security technologies. This includes Security Incident and Event Management (SIEM), Security Orchestration, Automation and Response (SOAR) and case management, Endpoint Detection and Response (EDR), secure email gateways, and data loss prevention (DLP) solutions across endpoint and email environments. This role is not limited to a single tool or domain. Instead, the Principal Engineer owns multiple platforms and end-to-end security capabilities, establishing reference architectures, engineering standards, and scalable design patterns that guide engineering teams across the organization. As a recognized technical authority, this individual operates with a high degree of autonomy, setting strategic direction rather than executing on predefined plans. The role is critical in addressing complex, ambiguous, and cross-functional security challenges, with decisions that directly influence Cboe's overall security posture and risk profile. The ideal candidate brings deep expertise across the full IT landscape, including security, infrastructure, networking, endpoints, servers, and emerging technologies-and leverages that knowledge to lead the design, development and deployment of durable, scalable, and secure solutions aligned to evolving business and threat environments., * Serve as a recognized technical authority across IT, Security, and Leadership, translating complex technical risk into clear business and regulatory context for executives, security leaders, and stakeholders including legal and regulatory teams. * Design, implement, and govern comprehensive security solutions across multiple platforms utilizing a variety of security tools, programming languages, and services, operating with near-complete autonomy. * Design automation and engineering patterns that enhance the efficiency, scalability, and durability of security operations enterprise-wide. * Define how diverse technologies are normalized and integrated end-to-end to streamline analysis and response capabilities across environments. * Mentor Senior and junior engineers as a technical role model, and document the standards and engineering patterns governing complex security products and services. * Identify systemic risk across the organization's security posture and design enterprise-wide mitigations and remediation strategies. * Introduce new methodologies, reference architectures, and operating models to resolve systemic security challenges and advance the security program. * Lead enterprise technology evaluations and adoption decisions, assessing the relevance and long-term impact of emerging technologies on our security posture. * Define, own, and enforce engineering standards, continuously assessing the effectiveness of security controls and driving improvements across the enterprise. * Shape and drive the security engineering strategy and roadmap, influencing senior engineers, and leaders across organizations. * Partner with and influence cross-functional teams to embed security into the development lifecycle and operational processes. * Lead security assessments and audits, ensuring compliance with internal policies and external regulations. * Lead the technical response for the highest-severity incidents, directing containment, investigation, and recovery efforts. * Stay at the forefront of industry trends, security standards, and best practices, ensuring Cboe's systems remain resilient against evolving threats., At Cboe, we are committed to providing a competitive, transparent, and market-informed total rewards program. The anticipated base salary range for this role is $148,750-$192,500, with actual compensation determined by job-related factors such as skills, relevant experience, education, internal alignment, and location. This role may also be eligible for annual incentive compensation and, where applicable, participation in Cboe's long-term equity programs. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Pioneering AI Assistants in Banking](https://www.wearedevelopers.com/videos/1627-pioneering-ai-assistants-in-banking) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)