Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
Cboe seeks a Senior Vulnerability Analyst in Chicago to reduce risk across global IT infrastructure. You will lead RBVM initiatives, analyze scan results, prioritize remediation, and collaborate with cross‑functional teams to enhance security controls.
The role requires hands‑on vulnerability management expertise, scripting, and experience with major security tooling. On‑call rotation and global collaboration are expected.
Availability to participate in a 24/7 on‑call rotation and periodic flexibility in working hours to accommodate collaboration with a global teamStrong, practically-used scripting and automation skills, using Python to automate security operations, integrate tools, and perform data analysisSenior‑level experience in information security, with a minimum of 5 years in security, or 3 years in security plus 2–3 years in core IT roles such as system or network administration, and a strong emphasis on engineering and operational securityHands‑on expert level experience with vulnerability management and cloud/SaaS security tooling, including platforms such as Qualys, Tenable, Rapid7, Wiz, Reco, Obsidian, AppOmni, and Aqua, with the ability to install, configure, and operate platforms of this type in an enterprise environmentExperience using Atlassian Jira and Confluence, including workflow design and automation, to track vulnerabilities, remediation efforts, and security initiativesSolid systems and identity administration background, including Linux/Unix and Windows environments, Active Directory, and Entra ID, as well as experience with managed network devicesExperience creating reporting visualizations using tools such as Power BI, Sigma, SnowflakeDemonstrated ability and willingness to mentor junior team members, sharing technical expertise, operational knowledge, and best practicesDeep understanding of security vulnerabilities, threats, and attack techniques, with at least 2 years of experience in vulnerability monitoring, threat detection, event monitoring, or incident responseFamiliarity with the Microsoft Security stack, including Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Purview DLP, and IntuneStrong English communication skills, with the ability to clearly and professionally convey technical risk, remediation guidance, and impact analysis to both technical teams and key stakeholdersAdvanced AI usage skills to supercharge productivity including chatbots such as Copilot or ChatGPT, but also demonstrated success with code and workflow creation tooling like Claude Code, Cursor, N8N Bachelor’s degree in Cybersecurity, Computer Science, Engineering or other technical fieldCentralized System Administration experience in Windows, Linux, Network or Firewall managementProven ability to script and automate tasksInformation security certifications such as GPEN, Security+, CISSP, OSCP, CEH, LPTExperience writing and leveraging AI tooling to solve problems creatively and efficiently