Senior Engineer - Threat Hunting

Cboe Global Markets, Inc.

Chicago (IL)

Hybrid

USD 131,000 - 169,000

Full time

7 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Competitive salary and incentives
Paid time off
401(k) match
Tuition assistance
On-site gym

Job summary

Cboe Global Markets, Inc. is seeking a Senior Engineer Threat Hunting to lead detection engineering across SIEM, EDR, identity, cloud, and SaaS.

You will design, execute complex threat hunts and translate findings into durable detections and telemetry improvements. You will partner with stakeholders to emulate adversaries and guide investigations during high-severity incidents, shaping the enterprise defensive strategy.

Qualifications

  • 5-8+ years of cybersecurity operations, detection engineering, threat hunting, or offensive security.
  • Deep expertise in attacker tradecraft and defensive detection techniques across multiple domains.
  • Strong hands-on experience with SIEM, EDR, cloud security platforms, and large-scale log analytics.

Responsibilities

  • Own the enterprise detection engineering capability end-to-end, including standards and long-term direction.
  • Design and review high-fidelity detections across endpoint, identity, cloud, network, and SaaS.
  • Lead complex threat hunts addressing cross‑organizational risk and novel attacker behavior.
  • Translate hunting outcomes into robust detections and architectural improvements.
  • Partner with stakeholders to validate real-world detection and response effectiveness.
  • Identify systemic gaps and drive remediation across teams.
  • Serve as technical lead during highest-severity incidents and guide investigations.
  • Influence security strategy, roadmaps, and investments with risk context.
  • Provide expert recommendations to security managers and stakeholders.
  • Mentor engineers and set the technical bar for excellence.

Skills

Threat hunting
Detection engineering
SIEM
EDR
Cloud security
Adversary emulation
Automation scripting
Communication skills

Education

Bachelor’s degree or equivalent practical experience

Tools

Google SecOps SIEM
Microsoft Security Stack
ProofPoint Email Security Services

Job description

Job Description
Building trusted markets —powered by our people.

At Cboe, we inspire our people to solve complex challenges together because what we do matters. We provide the financial infrastructure that powers the global economy. As a leading provider of market infrastructure and tradable products, Cboe delivers cutting-edge trading, clearing and investment solutions to market participants around the world.

Location Overview

Cboe HQ is located in the historic Old Post Office district, it’s a landmark that blends classic architecture with modern amenities. The building features expansive spaces with high ceilings and large windows, offering an abundance of natural light and panoramic views of the city skyline and the Chicago River.

With its prime location in the heart of downtown, the OPO Building provides easy access to major transportation hubs, including Union Station and multiple CTA lines, making it convenient for commuters. The building is home to a variety of amenities, including restaurants, a fitness center, and collaborative workspaces, creating a vibrant and dynamic work environment in one of Chicago's most iconic areas.

Role Overview

The Senior Engineer Threat Hunting will be a senior individual contributor within Cboe’s Security Operations organization, responsible for defining, advancing, and executing the enterprise approach to detection engineering, threat hunting, and adversary emulation. This role focuses on building and maturing detection capabilities across platforms such as SIEM, EDR, identity, cloud, and SaaS environments, ensuring detections are resilient, scalable, and aligned to real‑world adversary behavior. The Senior Engineer Threat Hunting will lead complex, hypothesis‑driven threat hunts, partner closely with stakeholders to design and execute adversary emulation scenarios, and translate findings into durable detections, improved telemetry, and architectural enhancements. This individual will also serve as a technical lead during the most complex or high‑severity security incidents, shaping investigative approach and long‑term defensive improvements.

PLEASE NOTE: To support strong partnership and team connection, this role follows a four day in office work model.

In this role you’ll be responsible for
  • Owning the enterprise detection engineering capability end‑to‑end, including standards, patterns, quality bars, and long‑term technical direction
  • Designing, implementing, and reviewing high‑fidelity detections across endpoint, identity, cloud, network, and SaaS environments
  • Leading complex, hypothesis‑driven threat hunts that address ambiguous, cross‑organizational risk and novel attacker behavior
  • Translating threat hunting outcomes into robust detections, improved telemetry, or architectural changes rather than one‑off findings
  • Partnering with internal stakeholders to design and execute adversary emulation scenarios that validate real‑world detection and response effectiveness
  • Identifying systemic detection and response gaps and driving remediation across engineering, operations, and architecture teams
  • Acting as the technical lead during highest‑severity incidents, guiding investigative approach and defensive improvements
  • Influencing security strategy, roadmaps, and investment decisions by translating technical findings into business and risk context
  • Provide expert recommendations and best practices to security managers, technical managers, and stakeholders including legal and regulatory teams.
  • Mentoring senior engineers and analysts and setting the technical bar for excellence across detection, hunting, and adversary emulation
  • Stay current with industry trends, security standards, and best practices to ensure our systems remain secure against evolving threats.
The ideal candidate has
  • 5-8+ years of experience in cybersecurity operations, detection engineering, threat hunting, or offensive security
  • Deep expertise in attacker tradecraft, adversary behaviors, and defensive detection techniques across multiple domains
  • Strong hands‑on experience with SIEM, EDR, cloud security platforms, and large‑scale log analytics (Google SecOps, Defender XDR, Crowdstrike)
  • A proven ability to solve ambiguous, systemic, cross‑organizational security problems with minimal direction
  • Experience balancing hands‑on execution with strategic influence, knowing when to build directly and when to enable others
  • The ability to operate with near‑complete autonomy, setting technical direction rather than receiving it
  • Strong communication skills, including the ability to explain complex technical risk to senior security and technology leaders
  • Bachelor’s degree or equivalent practical experience
  • Proficiency in scripting and automation for security operations.
You’ll really stand out with
  • Bachelor's Degree in Cybersecurity or Computer Science
  • System Administration experience in Windows or Linux
  • Proven ability to script and automate tasks
  • Specific experience with Google Secops SIEM, the Microsoft Security Stack, or ProofPoint Email Security Services
  • CISSP, CASP or other related security certifications
Benefits And Perks Of Working For Cboe Global Markets
  • Fair and competitive salary and incentive compensation packages with an upside for overachievement
  • Generous paid time off, including vacation, personal days, sick days and annual community service days
  • Health, dental and vision benefits, including access to telemedicine and mental health services
  • 2:1 401(k) match, up to 8% match immediately upon hire
  • Discounted Employee Stock Purchase Plan
  • Tax Savings Accounts for health, dependent and transportation
  • Employee referral bonus program
  • Volunteer opportunities to help you give back to your communities
Some of our associates’ favorite benefits and perks include
  • Complimentary lunch, snacks and coffee in any Cboe office
  • Paid Tuition assistance and education opportunities
  • Generous charitable giving company match
  • Paid parental leave and fertility benefits
  • On‑site gyms and discounts to other fitness centers
  • Paid Time Off
More About Cboe Global Markets

We’re reimagining the future of the workplace by focusing on what matters most, our people. Our journey is an inclusive one. We’re investing deeply in leadership programs and career development initiatives that ensure everyone has an equal chance to succeed.

We work with purpose, solving problems with ingenuity, collaboration, and a lot of passion. We’re an engaged and excited team connecting markets across borders and embracing growth in all its forms to achieve incredible outcomes.

Learn more about life at Cboe on our website and LinkedIn.

Equal Employment Opportunity

We're proud to be an equal opportunity employer do not discriminate against any employee or applicant for employment based on any legally protected characteristic, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, or veteran status. We are committed to fostering a workplace where all individuals are valued and respected.

This position is not eligible for visa sponsorship. Candidates must be legally authorized to work in the United States without the need for employer sponsorship now or in the future.
Salary Ranges (applicable for US locations only)

At Cboe, we are committed to providing a competitive, transparent, and market‑informed total rewards program. The anticipated base salary range for this role is $130,900-$169,400, with actual compensation determined by job‑related factors such as skills, relevant experience, education, internal alignment, and location.

This role may also be eligible for annual incentive compensation and, where applicable, participation in Cboe's long‑term equity programs.

Additional information about Cboe's total rewards program, including benefits and other compensation components, can be found here: Total Rewards at CBOE.

Any communication from Cboe regarding this position will only come from a Cboe recruiter who has a @cboe.com email or via LinkedIn Recruiter. Cboe does not use any other third party communication tools for recruiting purposes.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Engineer - Threat Hunting
Senior Engineer - Threat Hunting

Cedar Cares, Inc • Chicago (IL)

On-site
USD 131,000 - 169,000
Salary & incentives
Paid time off
Health benefits
+1
Sr. Information Security Engineer (Systems Engineer)
Sr. Information Security Engineer (Systems Engineer)

Cboe Global Markets, Inc. • Kansas City (MO)

On-site
USD 119,000 - 154,000
Health insurance
401(k) match
Tuition assistance
+2
Sr. Detection Engineer
Sr. Detection Engineer

Cedar Cares, Inc • Chicago (IL)

Hybrid
USD 131,000 - 169,000
Hybrid work environment
Health, dental and vision benefits
401(k) match
+1
Principal Application Security Engineer
Principal Application Security Engineer

Cboe Global Markets, Inc. • Chicago (IL)

Hybrid
USD 164,000 - 212,000
Medical Coverage
Prescription Drug Coverage
Dental Coverage
+8
Software Engineer
Software Engineer

Cboe Global Markets, Inc. • Chicago (IL)

On-site
USD 108,000 - 139,000
2:1 401(k) match
Paid time off
Tuition assistance
Engineer, Application Security
Engineer, Application Security

Cboe Global Markets, Inc. • Chicago (IL)

On-site
USD 103,000 - 133,000
Health, dental and vision benefits
401(k) match
Tuition assistance
+2
Sr. Vulnerability Analyst
Sr. Vulnerability Analyst

Cboe Global Markets, Inc. • Chicago (IL)

Hybrid
USD 122,000 - 157,000
Hybrid work environment
Competitive salary
Sr Info Security Engineer
Sr Info Security Engineer

Cedar Cares, Inc • Overland Park (KS)

On-site
USD 92,000 - 154,000
Sr. Vulnerability Analyst
Sr. Vulnerability Analyst

Cedar Cares, Inc • Chicago (IL)

On-site
USD 122,000 - 157,000
Hybrid work
Health, dental and vision benefits
401(k) match
+4
Investigator
Investigator

Cboe Global Markets, Inc. • Chicago (IL)

Hybrid
USD 79,000 - 103,000
Flexible, hybrid work environment
2:1 401(k) match
Paid Time Off