Sr. Vulnerability Analyst

Cedar Cares, Inc

Chicago (IL)

On-site

USD 121,550 - 157,300

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary with incentive compensation
Generous paid time off
Health, dental, and vision benefits
401(k) match
Paid parental leave
Complimentary lunch and snacks

Job summary

Cedar Cares, Inc is hiring a Sr Vulnerability Analyst to enhance its global IT security. You will lead efforts to manage vulnerabilities, analyzing risks and ensuring compliance with security standards.

The role demands deep expertise in vulnerability management, strong automation skills, and the ability to mentor junior staff. Compensation ranges from $121,550 to $157,300 based on qualifications and experience, with a comprehensive benefits package that includes health and 401(k) matching.

Qualifications

  • Minimum 5 years in security or 3 years in security plus 2-3 in IT roles.
  • Expertise with vulnerability management and security tooling.
  • Strong scripting skills in Python.

Responsibilities

  • Improve the Vulnerability Management Program.
  • Analyze and remediate vulnerability scan results.
  • Serve as a senior technical escalation point for security tickets.
  • Lead discussions with technical stakeholders on vulnerability management.

Skills

Vulnerability management expertise
Cloud/SaaS security tooling
Scripting and automation skills
Microsoft Security stack knowledge
Communication skills
Mentoring abilities

Education

Bachelor’s degree in Cybersecurity or related field

Tools

Qualys
Tenable
Rapid7
Jira
Confluence
Power BI

Job description

Role Overview

Cboe Global Markets provides financial infrastructure that powers the global economy. The Global Vulnerability Management team is hiring a Sr Vulnerability Analyst to reduce risk to our global IT infrastructure by continuously improving the Vulnerability Management Program.

Responsibilities
  • Execute and continuously improve the Vulnerability Management Program using a risk‑based vulnerability management (RBVM) approach.
  • Analyze vulnerability scan results, assess risk within our enterprise environment, and coordinate remediation with global infrastructure and application teams.
  • Serve as a senior technical escalation point for vulnerability‑related security tickets, providing guidance on prioritization, remediation, and risk acceptance.
  • Design, operating, and maintain vulnerability scanning and assessment infrastructure to ensure comprehensive coverage, reliability, and alignment with security architecture standards.
  • Drive automation and integration efforts to improve the efficiency, scalability, and accuracy of vulnerability detection, analysis, remediation tracking, and reporting.
  • Normalize and integrate data from multiple security and infrastructure technologies to enable streamlined analysis, reporting, and response.
  • Partner cross‑functionally with infrastructure, application, and platform teams to ensure effective vulnerability remediation, policy compliance, and continuous improvement of security controls.
  • Evaluate emerging vulnerabilities, threats, and security technologies, and assess their relevance and impact to our security posture.
  • Continuously assess the effectiveness of vulnerability management processes and controls, recommending and implementing improvements based on the evolving threat landscape and organizational needs.
  • Lead vulnerability management discussions with technical stakeholders and present risk, trends, and escalation items to management and executive audiences.
  • Act as a senior technical leader within the security team by mentoring and coaching junior staff, documenting standards and procedures, and sharing technical and organizational knowledge.
Ideal Candidate
  • Senior‑level experience in information security: minimum 5 years in security, or 3 years in security plus 2–3 years in core IT roles such as system or network administration.
  • Hands‑on expert level experience with vulnerability management and cloud/SaaS security tooling (e.g., Qualys, Tenable, Rapid7, Wiz, Reco, Obsidian, AppOmni, Aqua).
  • Strong scripting and automation skills using Python and advanced AI tools (ChatGPT, Claude Code, N8N, etc.).
  • Experience with the Microsoft Security stack: Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, Purview DLP, and Intune.
  • Deep understanding of security vulnerabilities, threats, and attack techniques; at least 2 years of experience in vulnerability monitoring, threat detection, event monitoring, or incident response.
  • Experience using Atlassian Jira and Confluence, including workflow design and automation, to track vulnerabilities and remediation efforts.
  • Experience creating reporting visualizations using tools such as Power BI, Sigma, or Snowflake.
  • Strong English communication skills to convey technical risk and remediation guidance to both technical teams and stakeholders.
  • Demonstrated willingness to mentor junior team members and share best practices.
  • Availability to participate in a 24/7 on‑call rotation and occasional flexibility in working hours to accommodate global collaboration.
Preferred Qualifications
  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or a related technical field.
  • Centralized system administration experience in Windows, Linux, network, or firewall management.
  • Information security certifications such as GPEN, Security+, CISSP, OSCP, CEH, or LPT.
  • Experience writing and leveraging AI tooling to solve problems creatively and efficiently.
Benefits & Perks
  • Competitive salary with incentive compensation and long‑term equity participation.
  • Generous paid time off: vacation, personal days, sick days, and community service days.
  • Health, dental, and vision benefits, including telemedicine and mental health services.
  • 2:1 401(k) match, up to 8% match, and employee stock purchase plan.
  • Discounted tax savings accounts, transportation, and paid tuition assistance.
  • Paid parental leave, fertility benefits, and volunteer opportunities.
  • On‑site gyms and discounts at other fitness centers; complimentary lunch, snacks, and coffee in all Cboe offices.
Equal Employment Opportunity

Cboe Global Markets is an equal opportunity employer. We do not discriminate against any employee or applicant for employment based on any legally protected characteristic, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, or veteran status. We are committed to fostering a workplace where all individuals are valued and respected.

Salary Range (U.S.)

Base salary range: $121,550 - $157,300. Actual compensation is determined by job‑related factors such as skills, experience, education, internal alignment, and location.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Red Team Specialist
Sr. Red Team Specialist

Cedar Cares, Inc • Chicago (IL)

On-site
USD 121,550 - 157,300
Generous paid time off
Health, dental, and vision benefits
401(k) match
+1
Principal Application Security Engineer
Principal Application Security Engineer

Cboe Global Markets • Chicago (IL)

Hybrid
USD 163,000 - 212,000
Medical Coverage
401K or Pension Company Match
Employee Stock Purchase Plan (ESPP)
+1
Senior Engineer - Threat Hunting
Senior Engineer - Threat Hunting

Cboe Global Markets • Chicago (IL)

Hybrid
USD 130,000 - 170,000
Complimentary lunch, snacks, and coffee
Paid Tuition assistance
Paid parental leave
+2
Sr. Information Security Engineer (Systems Engineer)
Sr. Information Security Engineer (Systems Engineer)

Cedar Cares, Inc • Overland Park (KS)

On-site
USD 100,000 - 130,000
Generous paid time off
Health, dental, and vision benefits
401(k) match
+2
Senior Vulnerability Strategist | Hybrid Work & Impact
Senior Vulnerability Strategist | Hybrid Work & Impact

Cboe Global Markets • Chicago (IL)

Hybrid
USD 121,000 - 158,000
Health, dental, and vision benefits
Generous paid time off
Flexible work environment
+1
Principal Security Engineer
Principal Security Engineer

Cboe Global Markets • Overland Park (KS)

Hybrid
USD 148,000 - 193,000
Generous paid time off
Flexible, hybrid work environment
Health, dental and vision benefits
+2
Engineer, Application Security
Engineer, Application Security

Cboe Global Markets • Chicago (IL)

On-site
USD 102,000 - 134,000
Competitive salary
Health benefits
401(k) match
+4
Senior Engineer - Threat Hunting
Senior Engineer - Threat Hunting

Cedar Cares, Inc • Chicago (IL)

On-site
USD 130,900 - 169,400
Generous paid time off
Health, dental, and vision coverage
401(k) match up to 8%
+2
Senior Infrastructure Engineer
Senior Infrastructure Engineer

Cedar Cares, Inc • Overland Park (KS)

On-site
USD 131,750 - 170,500
Competitive salary and incentive compensation
Generous paid time off
Health, dental, and vision benefits
+4
Engineer, Application Security
Engineer, Application Security

Cedar Cares, Inc • Chicago (IL)

On-site
USD 102,850 - 133,100
Competitive salary
Incentive compensation
Generous paid time off
+6