EngineerJobs.io
← Back to all jobs

Job Description

Join Publicis Groupe Holdings B.V in Chicago, onsite, as a Staff Application Security Engineer. This role offers the opportunity to shape the strategy and governance of our application security platforms, embed secure practices across the development lifecycle, and guide remediation across Product and Engineering teams. You will leverage AI-enabled engineering methods to scale security outcomes, accelerate delivery, and improve code quality while ensuring outputs align with enterprise security standards.

Responsibilities

  • Lead the strategic oversight of Epsilon’s application security platforms, ensuring proper configuration, adoption by Product and Engineering teams, and effective use (experience with Veracode, SonarQube, and Wiz is a plus).
  • Steer the analysis of security findings with Security Champions and engineering teams, prioritize risk, interpret results, and recommend remediation approaches.
  • Collaborate with Product, Engineering, and Security Champions to ensure security expectations are understood and aligned with policies and standards.
  • Incorporate AI into Application Security to enable Secure-by-Design engineering, promoting AI-enabled development practices that embed security into the software lifecycle; guide teams on using AI tools to generate, review, and remediate code securely with governed, validated outputs.
  • Serve as a trusted advisor to engineering teams by delivering clear guidance, risk context, and actionable recommendations, translating complex security risks into practical decisions.
  • Communicate security risks and tradeoffs clearly across technical and non-technical audiences to influence outcomes and drive action.
  • Produce and deliver monthly KPI-based reports highlighting trends, risk posture, adoption metrics, and actionable insights for technical stakeholders and executive leadership.
  • Educate, coach, and enable development teams and embedded Security Champions on secure coding, platform usage, and Epsilon security policies.
  • Drive onboarding of new teams and applications into application security platforms, ensuring consistent implementation and long-term adoption.
  • Build and maintain strong, trust-based relationships across Product, Engineering, and Security to influence outcomes and mature security practices.

Requirements

  • Ability to influence and collaborate effectively across diverse teams.
  • Strong analytical and problem-solving capabilities.
  • Excellent organizational discipline and attention to detail.
  • Educational background: Bachelor's or Master’s degree in computer science or a related field with at least 5 years of hands-on experience in application security or cybersecurity.
  • App security experience: familiarity with app testing approaches (SAST, DAST, MAST, RAST, IAST) and direct experience in vulnerability management; solid understanding of threat modeling.
  • Technology proficiency: comfortable with Microsoft Office tools (Outlook, Excel, Word, PowerPoint) for documentation and executive-ready reporting.
  • Effective use of AI to enhance engineering productivity: experience guiding AI-assisted workflows to accelerate development, improve code quality, and embed security; able to validate and govern AI outputs responsibly.
  • Scripting and infrastructure experience: strong Bash scripting skills and familiarity with Ansible and Terraform for automating security in cloud environments.
  • Developer mindset: prior software development experience and solid grounding in cybersecurity concepts to communicate effectively with engineering teams and provide practical security guidance.

Technologies

  • Veracode
  • SonarQube
  • Wiz
  • Bash
  • Ansible
  • Terraform
  • Microsoft Office

Similar Jobs