Chicago Board Options Exchange

Senior Network Security Engineer

Chicago Board Options Exchange$119K — $169K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years in network and security engineering with an enterprise focus
  • 5+ years managing Palo Alto firewalls, including SSL decryption
  • Strong troubleshooting skills in complex network security environments
  • Deep understanding of TCP/IP and traffic flow analysis
  • Expertise in network security design principles and segmentation
  • Experience in leading firewall migrations and network security architecture
  • Familiarity with scripting or API-driven automation techniques

Responsibilities

  • Design and deploy Palo Alto firewall solutions globally
  • Lead security and network integrations emphasizing core networking principles
  • Collaborate with various teams to implement secure connectivity
  • Act as a senior escalation point for advanced troubleshooting
  • Support incident response and resolve complex connectivity issues
  • Mentor junior engineers and operational staff in networking best practices
  • Evaluate and recommend security architecture enhancements

Benefits

  • Generous paid time off including community service days
  • Health, dental, and vision benefits with telemedicine access
  • 2:1 401(k) match starting immediately upon hire
  • Discounted Employee Stock Purchase Plan
  • Tax Savings Accounts for health and transportation
  • Employee referral bonus program
  • Paid tuition assistance and education opportunities
  • Paid parental leave and fertility benefits
  • On-site gyms and fitness center discounts
Full Job Description
Job Description:

PLEASE NOTE: To support strong partnership and team connection, this role follows a four day in office work model - in either our Overland Park, KS or Chicago, IL office.

Role Overview

The Network Security Team is seeking a Sr. Network and Firewall Security Engineer to secure and operate connectivity across global offices and data centers. This is a hands-on role requiring deep expertise in Palo Alto firewalls, including design, deployment, migration, and ongoing optimization of security policies in complex enterprise environments. The engineer will partner across infrastructure teams to ensure secure, highly available connectivity, while also supporting internal and external stakeholders with a strong service mindset. Candidates must be self-starters with strong critical thinking skills, capable of operating independently and taking ownership of complex problems from initial detection through resolution.

This role requires advanced troubleshooting capabilities, including hands-on experience with Palo Alto CLI-based debugging typical of Tier 2/Tier 3 TAC scenarios, as well as strong foundational networking knowledge across routing protocols and packet-level analysis. The ideal candidate is a natural communicator who can drive problem resolution in large, cross-functional settings, clearly articulate technical findings, and influence outcomes across engineering, security, and operations teams. Success also requires the ability to communicate effectively with senior leadership-translating deep technical issues, risks, and trade-offs into concise, actionable insights-while mentoring junior engineers and helping elevate the overall capability of the team.

Your responsibilities will be:

  • Design, deploy, and migrate Palo Alto firewall solutions across global environments, including architecture of security policies, segmentation, SSL decryption, and centralized management


  • Lead complex security and network integrations by applying strong core networking principles (BGP, OSPF, routing design, failover, traffic engineering) to ensure resilient, high-performance connectivity


  • Partner with network, cloud, and infrastructure teams to design and implement secure, scalable connectivity across on-prem and hybrid environments


  • Serve as a senior escalation point, driving advanced troubleshooting across firewalls and underlying network infrastructure, including deep packet, flow, and session-level analysis


  • Support network security operations and incident response, diagnosing complex connectivity issues involving routing, NAT, policy enforcement, and application behavior


  • Mentor engineers and NOC staff, reinforcing strong networking fundamentals, structured troubleshooting, and operational best practices


  • Manage and prioritize work intake while delivering clear, direct communication to both technical stakeholders and senior leadership


  • Evaluate and recommend enhancements to security architecture, firewall capabilities, and network design to continuously improve reliability and security posture


The ideal candidate has

Minimum Qualifications

  • 7+ years of network and security engineering experience across enterprise routing, switching, and firewall platforms, with strong foundations in secure connectivity and network design


  • 5+ years of hands-on experience managing Palo Alto firewalls, including SSL decryption, security profiles, and Panorama-based centralized management (required)


  • Strong, demonstrated experience designing and troubleshooting complex network and security environments, including routing protocols (BGP, OSPF), NAT, and packet-level analysis in production environments


  • Deep understanding of TCP/IP, traffic flows, and structured troubleshooting methodologies across network and security domains


  • Strong understanding of network security design principles, including segmentation, access control, and secure architecture patterns (zone-based design, microsegmentation, zero-trust concepts)


  • Experience leading firewall migrations and contributing to enterprise network security architecture


  • Experience with scripting or API-driven automation to improve operational efficiency


Preferred Qualifications

  • Experience across additional enterprise networking platforms and edge technologies, including Arista or similar environments, proxy platforms, load balancers (e.g., F5), and multi-vendor infrastructure


  • Experience with cloud networking and security, including AWS networking constructs and security controls, as well as edge security platforms such as Cloudflare or similar services


  • Familiarity with modern application and container networking models, including Kubernetes networking, segmentation, and network policies


  • Experience participating in or leading multi-vendor infrastructure migrations in large-scale environments


  • Relevant industry certifications such as Palo Alto, Cisco, or equivalent


Benefits and Perks of working for Cboe Global Markets

We value the total wellbeing of our people - including health, financial, personal and social wellness. We believe standard benefits like health insurance and fair pay are a given at any organization. Still, you should know we offer:

  • Fair and competitive salary and incentive compensation packages with an upside for overachievement


  • Generous paid time off, including vacation, personal days, sick days and annual community service days


  • Health, dental and vision benefits, including access to telemedicine and mental health services


  • 2:1 401(k) match, up to 8% match immediately upon hire


  • Discounted Employee Stock Purchase Plan


  • Tax Savings Accounts for health, dependent and transportation


  • Employee referral bonus program


  • Volunteer opportunities to help you give back to your communities


Some of our associates' favorite benefits and perks include:

  • Complimentary lunch, snacks and coffee in any Cboe office


  • Paid Tuition assistance and education opportunities


  • Generous charitable giving company match


  • Paid parental leave and fertility benefits


  • On-site gyms and discounts to other fitness centers


Salary Ranges (applicable for US locations only)
At Cboe, we are committed to providing a competitive, transparent, and market-informed total rewards program. The anticipated base salary range for this role is $119,000-$169,400, with actual compensation determined by job-related factors such as skills, relevant experience, education, internal alignment, and location.

This role may also be eligible for annual incentive compensation and, where applicable, participation in Cboe's long-term equity programs.

Additional information about Cboe's total rewards program, including benefits and other compensation components, can be found here: Total Rewards at CBOE.

Any communication from Cboe regarding this position will only come from a Cboe recruiter who has a @cboe.com email or via LinkedIn Recruiter. Cboe does not use any other third party communication tools for recruiting purposes.

About Chicago Board Options Exchange

The Chicago Board Options Exchange, located at 433 West Van Buren Street in Chicago, is the largest U.S. options exchange with an annual trading volume of around 1.27 billion at the end of 2014. CBOE offers options on over 2,200 companies, 22 stock indices, and 140 exchange-traded funds. The Chicago Board of Trade established the Chicago Board Options Exchange in 1973. The first exchange to list standardized, exchange-traded stock options began its first day of trading on April 26, 1973, in celebration of the 125th birthday of the Chicago Board of Trade. The CBOE is regulated by the Securities and Exchange Commission and owned by Cboe Global Markets.
Learn more about Chicago Board Options Exchange
Industry
Founded
1973

Similar Jobs

More Jobs at Chicago Board Options Exchange

More Information Technology Jobs

Find similar Senior Network Security Engineer jobs: