Jobs and Careers
CM

Staff Security Engineer - IAM

CME Group
United Statesfull_timeVerifiedPosted 23 Jan 2026
💰 $214,100/yr($128,500/yr – $214,100/yr)

About the role

We are building a new, high-impact team dedicated to supporting our new weekend trading capabilities. We are seeking an experienced and highly-capable IAM Staff Engineer whose primary focus will be providing expert, hands-on support, troubleshooting, and recovery for our mission-critical Identity and Access Management (IAM) systems. While project work exists, your core mission is ensuring the stability and high availability of the production environment.

Work Environment & Schedule

  • Initial training schedule (first 3-6 months): Until the candidate is fully up to speed on our specific technologies and environment, the work schedule will be Monday - Friday business hours, working alongside existing IAM engineers for training and acclimation to our technology and processes.

  • Target shift schedule: After the initial training period, this role will transition to a compressed work schedule, requiring four (4) eleven-hour shifts per week (10 working hours plus 1 hour for lunch) to cover weekend support.

  • Office requirement: This position requires a minimum 2-day per week in-office presence. Candidates must be within commutable distance of a CME Group Chicago office.

What You'll Do (Primary Focus: Support & Operations)

You will be the go-to for operational support and advanced issue resolution for our core IAM platforms. Furthermore, you will be supported and backed up by a team of highly skilled engineers located globally who can bring additional knowledge and experience when required. 

Support & System Recovery

  • Provide advanced, hands-on troubleshooting, problem isolation, and rapid system recovery for critical IAM systems and related components.

  • Lend timely support assistance for major incidents, participating in post-mortem analysis and implementing preventative measures.

  • Take part in product upgrades depending on the situation and scope of the project, ensuring operational readiness.

  • Perform in the on-call rotation and disaster recovery tests.

  • Assist in our continuous improvement efforts to reduce repeated support calls and incidents.

  • Participate in our continuous improvement efforts to reduce repeated support calls and incidents.

Engineering & Automation

  • Proactively identify and automate existing manual tasks and processes to improve efficiency and stability.

  • Research and implement security best practices across all supported platforms.

  • Assist teams in identifying, safely storing, and retrieving their secrets in line with industry best practice and CME Standards.

Compliance & Documentation

  • Develop processes, guidelines, and robust documentation for consumption by internal teams.

  • Aiding information gathering for audits and overseeing documentation efforts.

What You'll Bring (Minimum Requirements)

Technical Knowledge & Experience:

  • Experience: 5 - 7 years of application support and experience with IAM services, tools, and solutions.

  • Core systems: Proven, hands-on experience designing, deploying, and supporting large-scale enterprise IAM solutions, specifically including:

    • Cloud SSO and CIAM Platforms

    • LDAP Directories & Active Directory

    • Privileged Access Management platforms

    • MFA solutions

    • Familiarity with hardware security keys

  • Cloud acumen: Experience with cloud computing strategies, concepts, and technologies, particularly with Google Cloud Platform (GCP) IAM primitives (e.g., Service Accounts, IAM Roles, Identity Platform).

  • Containerization / orchestration: Knowledge of container technologies, especially Kubernetes, as they relate to secrets management and identity access.

  • IAM foundation: Strong familiarity with the following areas is essential, as this is the primary scope of the role:

    • Privileged Access Management

    • Identity Lifecycle Management

    • Access Management (Federation / MFA / SSO)

  • Scripting / automation: Some development experience in one or more of the following: Linux shell scripting, PowerShell, Python, Chef & Terraform.

  • Security: Must have a thorough knowledge of information security components, principles, practices, and procedures, particularly regarding IAM security systems and controls.

  • Technical support: Experience as an individual contributor on support and technical discussions in high-pressure sit

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CME Group

View company profile →