Senior Engineer (Threat Hunting)
cboeChicago, IL
Senior Engineer (Threat Hunting)
cboeChicago, IL
2 days ago
Occupations
Information Security EngineersInformation Security AnalystsComputer Systems Engineers/ArchitectsAbout the role
The Senior Engineer Threat Hunting will be a senior individual contributor within Cboe’s Security Operations organization, responsible for defining, advancing, and executing the enterprise approach to detection engineering, threat hunting, and adversary emulation
This role focuses on building and maturing detection capabilities across platforms such as SIEM, EDR, identity, cloud, and SaaS environments, ensuring detections are resilient, scalable, and aligned to real‑world adversary behavior
The Senior Engineer Threat Hunting will lead complex, hypothesis‑driven threat hunts, partner closely with stakeholders to design and execute adversary emulation scenarios, and translate findings into durable detections, improved telemetry, and architectural enhancements. This individual will also serve as a technical lead during the most complex or high‑severity security incidents, shaping investigative approach and long‑term defensive improvements
Owning the enterprise detection engineering capability end‑to‑end, including standards, patterns, quality bars, and long‑term technical direction
Designing, implementing, and reviewing high‑fidelity detections across endpoint, identity, cloud, network, and SaaS environments
Leading complex, hypothesis‑driven threat hunts that address ambiguous, cross‑organizational risk and novel attacker behavior
Translating threat hunting outcomes into robust detections, improved telemetry, or architectural changes rather than one‑off findings
Partnering with internal stakeholders to design and execute adversary emulation scenarios that validate real‑world detection and response effectiveness
Identifying systemic detection and response gaps and driving remediation across engineering, operations, and architecture teams
Acting as the technical lead during highest‑severity incidents, guiding investigative approach and defensive improvements
Influencing security strategy, roadmaps, and investment decisions by translating technical findings into business and risk context
Provide expert recommendations and best practices to security managers, technical managers, and stakeholders including legal and regulatory teams
Mentoring senior engineers and analysts and setting the technical bar for excellence across detection, hunting, and adversary emulation
Stay current with industry trends, security standards, and best practices to ensure our systems remain secure against evolving threats
Experience balancing hands‑on execution with strategic influence, knowing when to build directly and when to enable others
Deep expertise in attacker tradecraft, adversary behaviors, and defensive detection techniques across multiple domains
Bachelor’s degree or equivalent practical experience
Proficiency in scripting and automation for security operations
Strong hands‑on experience with SIEM, EDR, cloud security platforms, and large‑scale log analytics (Google SecOps, Defender XDR, Crowdstrike)
5-8+ years of experience in cybersecurity operations, detection engineering, threat hunting, or offensive security
Strong communication skills, including the ability to explain complex technical risk to senior security and technology leaders
The ability to operate with near‑complete autonomy, setting technical direction rather than receiving it
A proven ability to solve ambiguous, systemic, cross‑organizational security problems with minimal direction
Candidates must be legally authorized to work in the United States without the need for employer sponsorship now or in the future
Bachelor’s Degree in Cybersecurity or Computer Science
CISSP, CASP or other related security certifications
Specific experience with Google Secops SIEM, the Microsoft Security Stack, or ProofPoint Email Security Services
System Administration experience in Windows or Linux
Proven ability to script and automate tasks
Matching similar jobs
JOB OVERVIEW
Experience level
Lead
Location
Chicago, IL
Occupation
Information Security Engineers
Industry
Computer Systems Design Services
Posted
2 days ago
Tired of running searches?
Rank the roles you'd take once, and matches like these arrive on their own.
CREATE PROFILE