Cyber security analyst jobs in West Chicago, IL - 121 jobs
All
Cyber Security Analyst
Information Security Engineer
Security System Engineer
Defense Analyst
Information Security Analyst
Information Systems Security Officer
Cyber Security Engineer
Securities Analyst
Cyber Security Analyst
Mindlance 4.6
Cyber security analyst job in Oakbrook Terrace, IL
Mindlance is a national recruiting company which partners with many of the leading employers across the country. Feel free to check us out at *************************
Job Title: CyberSecurityAnalyst
Duration: 12 Months
Location: Oakbrook Terrace, IL
Job Description:
Responsible for planning, designing, and implementing a process for cybersecurity monitoring, incident detection, and incident response. 1-3 yrs of experience and a Bachelor's degree in IT systems or a related discipline.
Position Requirements:
- Configuration and administration of logging aggregation and security event monitoring tools (like Industrial Defender, Splunk, etc.)
- Configuration and maintenance of performance monitoring tools (like Solarwinds, Uptime, CA Spectrum, etc.)
o Understands and can configure tools and endpoint systems to use SNMP for monitoring
- General IT Support (application patching, client updates, remote access and administration tools)
- General Networking knowledge (IP Networking, OSI Stack, etc.)
Additional Information
Thanks & Regards'
___________________________________________________________________________
Vikram Bhalla | Team Recruitment | Mindlance, Inc. | W: ************
All your information will be kept confidential according to EEO guidelines.
$70k-90k yearly est. 60d+ ago
Looking for a job?
Let Zippia find it for you.
Global Cyber Wordings Analyst
Liberty Mutual 4.5
Cyber security analyst job in Chicago, IL
Join our global Cyber team as a Wordings Analyst supporting the Global Cyber Wordings Manager in the strategic development and governance of our Cyber and Tech policy suite, including Liberty Cyber Resolution and Liberty Tech Resolution. This role is a hands-on business enabler: you will help translate complex legal and regulatory requirements into clear, market-ready wordings, maintain our global clause library, support manuscript negotiations, and produce practical tools that empower underwriters and strengthen broker confidence. It's an excellent opportunity for an early-career insurance wordings or legal professional to build expertise in a fast-moving, global specialty line and make a visible impact on growth, innovation, and client experience.
Key responsibilities:
Wording library and drafting support
Maintain and expand the global wording library centered on Liberty Cyber Resolution and Liberty Tech Resolution, including endorsements, exclusions, and guidance notes.
Redline and prepare first drafts of standard clauses and endorsements; ensure consistency with definitions, coverage intent, and plain-language standards.
Track version control, change logs, approvals, and archiving;
Assist with localization for different jurisdictions, coordinating translations and filing documentation with Legal/Compliance.
Commercial enablement
Build practical tools (playbooks, FAQs, objection-handling guides, coverage summaries) to help regional teams position our products and close deals efficiently.
Prepare broker/client comparison decks and battlecards; support pitches, RFP/RFI responses, and manuscript negotiations with clause comparisons and recommended alternatives.
Triage wording queries from regions; track SLAs and referral approvals per the global governance framework.
Partner closely with Underwriting, Product, Global Cyber Engagement, Claims, Legal/Compliance, and regional leaders to deliver accurate, timely support and uphold governance standards.
Regulatory and legal stewardship
Monitor and synthesize global regulatory and market developments (e.g., Lloyd's cyber war/systemic guidance, GDPR, DORA, NIS2, sanctions) into succinct briefs and recommended wording actions.
Maintain audit-ready documentation; assist with regulatory filings or attestations where required.
Claims partnership and feedback loop
Collaborate with Claims to capture lessons from disputes and litigation trends; draft guidance notes and propose clarifications to improve coverage certainty.
Support coverage position letters and documentation packs with research, citations, and clause histories.
Innovation and product development support
Help draft prototype wordings for new propositions
Check alignment between underlying policy wordings and reinsurance treaty/facultative clauses.
Administer wording management tools, ensuring robust version control, approval workflows, and usage analytics.
Build dashboards and trackers for adoption of standard forms, deviation rates, SLA performance, disputes, and audit findings; provide monthly reporting to stakeholders.
Qualifications
Bachelor's degree in business, economics, or other quantitative field. Minimum 3 years, typically 4 years or more of relevant work experience.
2 - 5 years of experience in insurance wordings, legal/paralegal support, underwriting support, or product documentation; cyber specialty experience preferred.
Strong drafting, redlining, and proofreading skills with a plain-language mindset and exceptional attention to detail.
Working knowledge of insurance policy structures, endorsements, exclusions, and coverage interpretation; familiarity with cyber war/systemic language, sanctions, and privacy regulations is advantageous.
Research and synthesis skills to translate complex regulatory/legal topics into practical guidance and actionable updates.
Proficiency with MS Word (advanced track changes/redlining), Excel (trackers and dashboards), PowerPoint (training/pitch materials), and document/enablement tools.
Collaborative, service-oriented approach; comfortable operating in a global matrix and meeting defined SLAs.
Curiosity about cybersecurity risks and the incident response ecosystem; willingness to learn common threat scenarios to inform practical drafting.
About Us
Pay Philosophy: The typical starting salary range for this role is determined by a number of factors including skills, experience, education, certifications and location. The full salary range for this role reflects the competitive labor market value for all employees in these positions across the national market and provides an opportunity to progress as employees grow and develop within the role. Some roles at Liberty Mutual have a corresponding compensation plan which may include commission and/or bonus earnings at rates that vary based on multiple factors set forth in the compensation plan for the role.
At Liberty Mutual, our goal is to create a workplace where everyone feels valued, supported, and can thrive. We build an environment that welcomes a wide range of perspectives and experiences, with inclusion embedded in every aspect of our culture and reflected in everyday interactions. This comes to life through comprehensive benefits, workplace flexibility, professional development opportunities, and a host of opportunities provided through our Employee Resource Groups. Each employee plays a role in creating our inclusive culture, which supports every individual to do their best work. Together, we cultivate a community where everyone can make a meaningful impact for our business, our customers, and the communities we serve.
We value your hard work, integrity and commitment to make things better, and we put people first by offering you benefits that support your life and well-being. To learn more about our benefit offerings please visit: ***********************
Liberty Mutual is an equal opportunity employer. We will not tolerate discrimination on the basis of race, color, national origin, sex, sexual orientation, gender identity, religion, age, disability, veteran's status, pregnancy, genetic information or on any basis prohibited by federal, state or local law.
Fair Chance Notices
California
Los Angeles Incorporated
Los Angeles Unincorporated
Philadelphia
San Francisco
We can recommend jobs specifically for you! Click here to get started.
$77k-98k yearly est. Auto-Apply 7d ago
Staff Systems Security Engineer
Northrop Grumman 4.7
Cyber security analyst job in Rolling Meadows, IL
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE TYPE: SAPTRAVEL: Yes, 10% of the TimeDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
We are seeking capable, talented, and motivated team-contributors at our Northrop Grumman Rolling Meadows site. Our products range from advanced sensing technologies to state-of-the-art targeting and tracking systems that are deployed in Electro-Optical Infrared (EOIR) and Radio Frequency Electronic Warfare (RFEW) systems. These systems are designed, developed, built, integrated, and tested by the capable folks at our company to protect the lives of US and Allied warfighters in present and future conflicts. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. If you are interested in consideration to be included as a part of this team, we would invite you to apply.
Northrop Grumman Mission Systems Sector (NGMS) is seeking a Staff Systems Security Engineer to join our Systems Security Engineering team. The Security Engineering team is cross-disciplinary across the security domain; encompassing embedded Systems Engineering, Cybersecurity, Software Security and Anti-Tamper Engineering.
Roles & Responsibilities:
· Design/develop system architectures and generate system designs to be implemented in a cost-effective manner.
Implement and ensure compliance with government policies (e.g., JSIG, DAAPM, NIST 800-53, CNSSI 1253, DODI 5200.39, etc.) by reviewing process tailoring needs and approving documented procedures.
Guide and monitor technical documentation/publication to document trades studies, system designs, analysis, and results related to a systems security posture such as identifying Critical Program Information (CPI) and creation of Anti-Tamper Plans
Develop an understanding of system interfaces and how to protect them.
Assist with the definition of key capabilities and performance requirements.
Adapt production and development products to meet unique customer needs and support the development of system security functions.
Collaborate with security engineering team(s), across a portfolio of programs, through the duration of program execution to solve issues and to prepare for requirements sell off.
Support technical work products developed by the larger engineering team in support of major milestone deliveries (e.g.: SRR, SVR, PDR, CDR, TRR, PRR).
Authoring technical documentation such as white papers, proposal technical volumes, and program milestone briefings.
Collaborate with security engineering team(s), across a portfolio of programs, through the duration of program execution to solve issues and to prepare for requirements sell off.
Other duties may include technical leadership, business capture activities, interfacing with industry partners and the USG.
This position will be full-time, on-site at our Rolling Meadows, IL location.
This position is contingent upon Funding/Contract award, special access program and acquiring and maintaining the necessary US Government security clearance per customers' requirements prior to start.
Basic Qualifications for a Staff Systems Security Engineer:
Bachelor's degree in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 12+years of related experience, a Master's degree in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 10+ years of related experience or a PhD in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 7+ years of related experience.
3 years of cumulative experience on DoD based platforms and/or systems regarding the application of Cybersecurity RMF or Anti-Tamper with competencies in security threat analysis, systems architecture, engineering design, requirements derivation, validation, and verification.
Must have demonstrated experience in leading teams to solve technical problems, including decomposition, root cause analysis, solution development, implementation and monitoring
Experience contributing to and/or making technical presentations to internal and external customers.
Ability to obtain and maintain a minimum of a Secret Clearance with additional customer specified clearance prior to start.
Preferred Qualifications for a Staff Systems Security Engineer:
Advanced degrees in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields.
Experience with design verification testing, reverse engineering, embedded software development, Cybersecurity, or Anti-Tamper Possess a DoD 8140 certification, e.g. CompTIA Security+, CISSP, or similar. Experience with proposals and creating basis of estimates (BOEs)
Primary Level Salary Range: $163,200.00 - $244,800.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit *********************************** U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
$63k-80k yearly est. Auto-Apply 60d+ ago
Malware Defense Malware Analyst
Bank of America 4.7
Cyber security analyst job in Chicago, IL
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Bank of America is one of the world's leading financial institutions, serving over 66 million consumers and small businesses. Company success is only possible with a strong cyber defense, which enables Bank of America to safely conduct global operations across the United States and in approximately 35 countries. Our primary goal is to safeguard not only the company, but our clients and their trust. The Malware Defense Team is looking for top talent who would like to join one of the most advanced cybersecurity teams in the world.
Responsibilities include, but are not limited to:
• In-depth analysis of malware, including authoring analysis reports.
• Tracking malware campaigns, malicious actors, and related infrastructure.
• Creation of tools and scripts to assist in the analysis of malware analysis.
• Field escalations of potentially malicious files and websites from teams within Malware Defense.
Required Qualifications:
• Strong direct experience of analyzing malware.
• Intermediate to advanced malware analysis skills.
• Experience creating innovative ways to track progression of malware families, infrastructure, and campaigns conducted by e-crime, and cyber espionage actors.
• Experience creating tools and scripts to accelerate malware and threat analysis.
• Background in network traffic analysis - WireShark, Fiddler, proxy logs, etc.
• Experience analyzing malicious web content such as ClickFix, ClearFake, SocGholish, etc.
• Experience authoring YARA, Suricata, and EKFiddle detection rules.
• Experience with penetration testing and/or adversary emulation is a plus.
• Able to work independently on tasks, but also work well within a team environment
Desired Qualifications:
• Experience analyzing malware targeting Linux, Android, and IOT platforms.
Skills:
CyberSecurity
Data Privacy and Protection
Problem Solving
Process Management
Threat Analysis
Business Acumen
Data and Trend Analysis
Interpret Relevant Laws, Rules, and Regulations
Risk Analytics
Stakeholder Management
Access and Identity Management
Data Governance
Encryption
Information Systems Management
Technology System Assessment
Shift:
1st shift (United States of America)
Hours Per Week:
40
Pay Transparency details
US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540) Pay and benefits information Pay range$95,700.00 - $144,900.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligible This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
$95.7k-144.9k yearly Auto-Apply 33d ago
Cyber Security Operations Engineer - Valent North America LLC
Sumitomo Chemical Group Companies of America 3.9
Cyber security analyst job in Libertyville, IL
About Us:
Valent North America LLC is the shared services organization of Valent U.S.A. LLC and Valent BioSciences LLC, which are part of the Valent group of companies. As a wholly owned subsidiary of Sumitomo Chemical Co., Ltd., Valent North America unites the corporate Finance, Human Resources, Information Technology, Legal, and Environmental Health & Safety functions to maximize service delivery practices across the Valent group of companies.
Valent U.S.A. engages in the development, registration, sales, and marketing of integrated technological solutions for crop production and pest management that deliver value for customers and stakeholders. Valent BioSciences is a worldwide leader in the research, development, manufacturing, and commercialization of biorational products for the agriculture, public health, and forest health markets. Sumitomo Chemical is one of Japan's leading chemical companies, offering a diverse range of products globally that support a wide variety of industries and help enhance peoples' daily lives.
General Description
Responsible for monitoring, detecting, responding to, and remediating security threats across Valent USA and Sumitomo Biorational Company's (SBC) technology landscape. Ensures the continuous operation and improvement of security tools, automates security workflows, and supports the implementation of security controls across on-premises and cloud environments. Leads initiatives to advance company-wide cybersecurity services and requires a high-level technical expertise to provide guidance on information security best practices. Contributes to information security policy maintenance; assists with the design of security education, training, and monitors compliance with third-party suppliers, SBC IT Security policies, regulatory requirements, and applicable laws. Reports to the Security Operations Manager and works closely with internal IT teams, managed service providers, legal, and compliance stakeholders to safeguard Valent's and SBC's systems, data, and users.
Principle Responsibilities
Security Monitoring, Detection, and Response
Operate and tune security monitoring platforms including SIEM, endpoint detection and response (EDR), identity protection, email security, and cloud security tools.
Triage and investigate security alerts, determine root cause, and take appropriate containment and remediation actions in coordination with internal and external teams.
Support incident response activities following defined procedures, including incident logging, escalation, containment, eradication, recovery, and lessons learned.
Collaborate with the Security Operations Manager and managed security services provider (MSSP) to refine detection rules, correlation logic, and incident escalation procedures.
Security Tool Engineering and Automation
Configure, maintain, and improve security tools to ensure optimal performance and coverage.
Identify opportunities to automate operational tasks such as log analysis, incident response steps, and reporting using scripting tools (e.g., PowerShell or Python).
Assess new security technologies to determine fit within the security ecosystem and assist with tool evaluation and implementation.
Vulnerability and Risk Management
Analyze vulnerability scan results and coordinate remediation efforts with infrastructure, application, and cloud teams.
Monitor risk remediation timelines and ensure closure of findings from audits, risk assessments, and penetration tests.
Support third-party risk assessments and ensure external vendors meet security requirements.
Security Governance and Compliance Support
Contribute to the development and maintenance of information security policies, procedures, standards, and technical documentation.
Support J-SOX IT General Controls (ITGCs) compliance, including evidence collection, access reviews, and operational control testing.
Participate in disaster recovery testing, business continuity planning, and cybersecurity awareness initiatives.
Reporting and Continuous Improvement
Generate weekly and monthly operational reports summarizing security events, vulnerabilities, and remediation progress.
Recommend process improvements to reduce incident response time, eliminate manual tasks, and enhance the effectiveness of security controls.
Support efforts to improve security awareness and user behavior through data-driven insights and technical guidance.
Cross-Team Collaboration
Collaborate with infrastructure, applications, and network teams to ensure secure configuration of systems and services.
Support project teams by providing security input on new technologies, architecture reviews, and implementation plans.
Participate in security-related projects and initiatives assigned by the Security Operations Manager.
Qualifications
Technical Competencies
Solid understanding of cybersecurity concepts including threat detection, incident response, vulnerability management, access control, and log analysis.
Experience operating and supporting tools such as SIEM, EDR, MFA, email security, cloud security posture management (CSPM), and vulnerability scanners.
Knowledge of hybrid and cloud security best practices, including Microsoft Azure security technologies.
Familiarity with common attack techniques and the MITRE ATT&CK framework.
Experience with scripting languages (e.g., PowerShell, Python) is preferred for automation and tool integration.
Understanding in securing hybrid, single, or multi cloud environments, leveraging cloud native tools as well as other 3rd party tools to establish a layered security approach.
Experience in developing, documenting, and maintaining security policy, standards, and procedures
Skills
Proven ability to work under stress in emergencies, with flexibility to handle multiple high-pressure situations simultaneously.
Ability to work well under minimal supervision.
Strong analytical and problem-solving skills to enable effective resolution of security events and identified risks.
Strong team-oriented interpersonal skills, with the ability to communicate effectively with a broad range or people and roles, including vendors and IT business partners.
Strong written and verbal communication skills.
Educational, Training, and Previous Experience
Bachelor's degree or equivalent work experience.
At least 5 years of Information Security experience (10 years preferred).
At least five years of “hands-on experience”.
Possess at least one of the following professional certifications:
Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
Certified Cloud Security Professional (CCSP)
Physical Demands and Work Environment
The physical demands and work environment characteristics described below are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Physical Demands include constant sitting, walking, standing, simple grasping and fine manipulation with hands; frequent bending at the neck and waist; and occasional squatting, climbing, kneeling, crawling, twisting at the neck and waist, power grasping, pushing, and pulling with hands, reaching above shoulder level, lifting and carrying up to 25 lbs.
Work Environment includes exposure to or working in or around equipment and machinery, including a computer keyboard and mouse.
It may require occasional travel.
Frequency Definitions : Constant = Over 40% / Frequent = Up to 40% / Occasional = Up to 10%
What We Offer
We recognize that compensation and benefits play a crucial role in your career decisions. That's why we're dedicated to equitable pay practices and transparency in how we reward our employees.
Base Salary: The estimated annual base salary for this position ranges from:
$120,000 to $140,000. Individual pay is based upon location, skills, experience, and other relevant factors.
Incentives: All full-time employees are eligible for an incentive program or profit-sharing program in addition to their base salary.
Benefits:
High-quality healthcare coverage starting on day one, with options for medical (HSA/HRA), vision, and dental plans
5% company contribution to your 401(k), plus a quarterly discretionary bonus
Immediate 100% vesting of all retirement contributions
Financial assistance programs to support your goals
Life and disability insurance for added security
Generous paid time off, including vacation, holidays, and volunteer days
Flexible work arrangements available
Our Commitment to a Sustainable Future
At Valent Group of Companies, we're proud to power a sustainable future through our work. Sustainability and corporate social responsibility (CSR) have been at the core of our culture since the beginning. Today, they continue to drive everything we do.
Join us in making a meaningful impact and contributing to a better world.
Valent U.S.A., Valent North America LLC, Valent BioSciences LLC and Mycorrhizal Applications LLC are an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation and/or identity, national origin, citizenship, immigration status, disabilities, or protected veteran status.
#LI-HYBRID
$120k-140k yearly Auto-Apply 4d ago
Information Security Engineer
Gulf Coast Automation Group 3.9
Cyber security analyst job in Schaumburg, IL
Job Title: Information Security Engineer Primary Location: Hybrid - Schaumburg, IL Position Type: Full-Time TalentFish is casting a line for an Information Security Engineer. This is a full-time role that is hybrid in Schaumburg, IL.
The purpose of this position is to ensure the continuous improvement, implementation, management, and enhancement of the organization's managed security platform tools and overall information security posture. This individual will play a key role in protecting systems, data, and infrastructure from cyber threats while cultivating a culture of security awareness and proactive risk mitigation.
What You Bring to the Role (Ideal Experience)
Bachelor's degree in Computer Science or related field.
5+ years of experience in information security or equivalent experience managing various aspects of security such as identity management, firewalls, security awareness SaaS platforms, and working with managed security providers (SIEM/firewall support).
Experience translating penetration test results and security assessment recommendations into actionable implementation plans.
Strong understanding of firewalls, proxies, SIEM, antivirus, and IDPS concepts.
Ability to identify and mitigate network vulnerabilities and communicate how to avoid them.
Knowledge of patch management and the ability to deploy patches in a timely manner while balancing business impact.
Preferred certifications include GCIH, Cloud Security certifications, MDR Certifications with vendors, or any GIAC Certification.
Experience deploying and supporting zero-trust network access products.
What You'll Do (Skills Used in this Position)
Continuously improve, implement, manage, and enhance managed security platform tools (both in-house and managed security services).
Install security measures and operate software to protect systems and information infrastructure, including firewalls and data encryption programs.
Review and respond to daily data from email security SaaS platforms, cloud-based systems, and end-point protection platforms for potential security incidents.
Prioritize, resolve, and mitigate known and reported vulnerabilities to maintain a high-security standard.
Develop and implement company-wide best practices for IT security and risk mitigation.
Build and maintain a global security awareness and training program.
Implement, maintain, and monitor controls aligned with common security frameworks.
Partner with external vendors to routinely test internal and external vulnerabilities.
Train IT staff on secure infrastructure and DevOps best practices.
Build security workflows for secure code deployment and validation of existing code.
Research and recommend security enhancements and stay up to date with emerging technologies and compliance requirements.
Maintain patch management of servers, PCs, etc., and provide compliance reporting on a routine basis.
Participate in ensuring a safe and compliant workplace environment.
Perform other duties as assigned by management.
Compensation Information
The expected salary range for this position is $110,000 - $158,000 per year, depending on experience and qualifications. This role also qualifies for comprehensive benefits such as health insurance, 401(k), and paid time off. TalentFish is committed to pay transparency and equal opportunity. The salary range provided is in compliance with applicable state and federal regulations.
This role requires authorization to work in the U.S. without current or future visa sponsorship.
All offers are contingent upon the completion of a background check, which may include but is not limited to: reference checks, education verification, employment verification, drug testing, criminal records checks, and any required certifications or compliance requirements based on the end client's background check policies and applicable laws.
TalentFish is an employee-owned company pioneering a new realm in talent acquisition. We are redefining IT staffing by evolving AI, video screening, and our unique platform. TalentFish focuses on providing the best employee, consultant, and client experience possible.
At TalentFish we are an Equal Opportunity Employer; we embrace and encourage diversity!
Required Skills:
Offers Talent Acquisition Mitigation Information Security Authorization Protection Compliance Transparency Firewalls Video Salary Checks Compensation Screening Validation Servers DevOps Continuous Improvement Insurance Infrastructure Regulations Computer Science Records Security Vendors Education Email Research Software Testing Business Science Training Management
$110k-158k yearly 11d ago
Information Security Operations Engineer
Chicago Trading Company 4.6
Cyber security analyst job in Chicago, IL
CTC is a cutting-edge proprietary trading firm with a long-term vision and a clear focus on helping the world price and manage risk. Our fun and trusting culture inspires us to solve the industry's most challenging problems and take calculated risks in a collaborative environment.
We strive to be the most innovative firm in the industry today, tomorrow, and long into the future while upholding ethical excellence. We believe that CTC makes a positive impact on the markets, the lives of our employees, and all the communities to which we belong. Started in 1995 by a team of forward-thinking Traders, we are proud to call ourselves an industry leader that keeps making markets and each other better.
THE ROLE
Ready to make an immediate impact at the heart of cybersecurity? Join CTC as an Information Security Operations Engineer, where every day puts you front and center in defending our systems. This isn't just monitoring screens. It's live fire, quick thinking, and creative problem solving. You'll be using powerful tools, investigating real threats, and teaming up with passionate pros who will help you develop top-tier security skills. You'll get a backstage pass to how attacks unfold, sharpen your instincts, and design smarter, faster responses. Our Security Operations team is growing quickly, making a real impact, and leading the charge to keep our business safe. This is your chance to launch your cybersecurity career with immediate responsibility, plenty of variety, and a team that is genuinely invested in your growth.
In this role, you will get an inside look at how security works at a trading firm, master core tools and playbooks, and collaborate with people who enjoy solving tough problems together. Every day is different, and every win matters.
WHAT YOU'LL DO
* Monitor and triage alerts across security platforms such as SIEM, EDR, email, and identity, cutting through noise to kick off investigations as needed
* Execute and improve incident response playbooks by gathering evidence, containing low-severity events, escalating thoughtfully, and communicating clearly
* Perform daily security checks to ensure healthy systems, track issues through to closure, and keep runbooks updated
* Support phishing investigations and user-reported security events, sharing findings to keep our teams protected
* Assist with vulnerability and patch reviews alongside engineering, confirming that risks are remediated
* Create detailed case documentation including timelines, artifacts, observables, and post-incident summaries to support learning and improvement
* Suggest and build improvements for processes and playbooks, tuning detections and developing smart automations
* Collaborate with technology partners across the firm, sharing context and building trust through fast, reliable service
* Help teammates thrive, reduce repetitive work, improve signal over noise, and deliver consistent results
WHAT WE'RE LOOKING FOR
* Genuine interest in cybersecurity operations and a drive to build a career in SOC or incident response. Internships, school projects, or labs are welcome
* Basic understanding of networking, Windows and Linux systems, and enterprise technology. Able to dig into logs and troubleshoot issues
* Familiarity with at least one core security tool or domain, such as SIEM, EDR, email security gateways, or identity and MFA, and ready to learn more
* Strong instincts for structured troubleshooting, evidence gathering, and writing clear documentation for tickets and incident handoffs
* Basic scripting or automation skills in Python or PowerShell, or a willingness to learn and automate repetitive tasks
* Curiosity, clear communication, and a collaborative mindset
* Detail-oriented and service-driven with a disciplined approach to procedures, meeting SLAs, and seeking ways to improve outcomes
* Willingness to join on-call or after-hours rotations as needed
NICE TO HAVES
* Hands-on experience with security platforms such as SIEM queries, endpoint detections, phishing analysis, or sandboxing
* Familiarity with ticketing tools, incident tracking, or on-call workflows, and exposure to SOAR or automation tools
* Coursework, certifications, or labs in security operations, such as Security+, SIEM fundamentals, or networking basics
* Understanding of vulnerability management and experience working with engineering teams on remediation
Compensation
The salary range for this role is listed below. This role is also eligible for an annual discretionary bonus. The discretionary bonus will be dependent upon the individual's skills, experience, qualifications, and firm performance.
Salary Range
$150,000-$175,000 USD
Most teams at CTC, with the exception of Trading, follow a hybrid workplace model, subject to change based on business need.
Our Benefits
We strongly believe in the well-being of our employees and their families so we offer outstanding benefits to support you both professionally and personally. These benefits include generous medical coverage, paid parental leave, free breakfast and lunch (plus healthy snacks, of course), wellness reimbursement, quarterly recharge days, and a variety of other benefits focused on providing the best employee experience.
(Disclaimer: interns and contractors are not eligible for benefits at CTC)
Our Commitment to Diversity, Equity and Inclusion
At CTC, we aim to cultivate a workplace that celebrates diversity and each person feels included, engaged and empowered. Where each of us feels we belong. We are committed to having a diverse workforce and are proud to be an equal opportunity employer. CTC does not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits and privileges of employment.
If you have a disability and believe you need a reasonable accommodation in order to search for a job opening or to apply for a position, please contact us at ***********************. Note that emails sent to this email account for non-disability related issues, such as following up on an application, will not receive a response.
Use of Artificial Intelligence (AI)
Information submitted by job applicants may be subject to review and analysis by automated systems, including Artificial Intelligence (AI), as part of the recruitment process. Such systems are utilized to enhance the efficiency and effectiveness of our hiring procedures. Applicants are advised that any information provided may be evaluated by AI tools to ensure an equitable and thorough assessment.
$150k-175k yearly 55d ago
Cyber Security Engineer
Yeah! Global
Cyber security analyst job in Chicago, IL
Note: This job does not offer any Visa sponsorship. We are looking for applicants already living in the USA.
Our client is seeking a highly skilled and motivated CyberSecurity Engineer to their dynamic team. As a CyberSecurity Engineer, you will be responsible for protecting our organization's computer systems, networks, and data from cyber threats. You will play a critical role in designing, implementing, and maintaining security measures to ensure the integrity, confidentiality, and availability of our systems.
Key Responsibilities:
Design, implement, and maintain robust security architectures for IT systems and networks.
Conduct thorough analyses of potential cyber threats and vulnerabilities to our systems.
Develop and implement response plans for security breaches, including immediate actions to contain and mitigate damage.
Continuously monitor systems for security breaches, analyze security alerts, and provide timely responses.
Perform regular risk and vulnerability assessments to identify and address security weaknesses.
Provide training and guidance to staff on security policies, procedures, and best practices.
Maintain detailed documentation of security measures, incidents, and remediation activities.
Work closely with IT professionals, departments, and external partners to strengthen overall security posture.
Qualifications:
Bachelors degree in CyberSecurity, Computer Science, Information Technology, or a related field.
Proven experience in cybersecurity roles, with a strong understanding of security protocols, cryptography, authentication, and authorization.
Proficiency in security technologies such as firewalls, IDS/IPS, antivirus software, and SIEM systems.
Relevant certifications such as CISSP, CISM, CEH, or CompTIA Security+ are highly desirable.
Strong analytical and problem-solving skills to identify and address security issues.
Excellent verbal and written communication skills to effectively convey security concepts to non-technical stakeholders.
Meticulous attention to detail to identify and mitigate potential security threats.
Preferred Qualifications:
Masters degree in CyberSecurity or a related field.
Experience in industries such as finance, healthcare, or government.
Familiarity with programming languages like Python, Java, or C++ for automation and scripting.
Knowledge of cloud security practices and experience with platforms like AWS, Azure, or Google Cloud.
$68k-92k yearly est. 60d+ ago
Business Analyst/ Information Security Governance Analyst
Govserviceshub
Cyber security analyst job in Chicago, IL
Role -Business Analyst/ Information Security Governance Analyst
Project Overview: We are seeking an analyst with experience in governance of security products, authentication, authorization, and access management with business analysis background. These resources will support the SaaS initiatives
Contractor's Role: As a member of Governance team you will play a vital role in ensuring the secure implementation of various solutions (Hybrid and Cloud) developed in technologies like Java, .Net etc.
Experience level: Level 3
Qualifications
- Bachelor's degree in computer science, audit or a related discipline and experience in information security, or an equivalent combination of education and work experience.
- Excellent consultative and communication skills, and the ability to work effectively with client, partner, and IT management and staff.
- 5 -6 years of experience in the Information Security or Audit role.
- Strong collaboration skills and a analytical ability
- Knowledge of SOX methodology implementation for applications & Internal & External Audit executions
Requirements
Nice to Haves:
- Knowledge on Obsidian Remediation
Tasks & Responsibilities
- Drive governance and risk framework around applications using authentication and authorization
- Define and respond to risks surrounding the business functions and the security capabilities
- Define and respond to audits from internal and external parties
- Knowledge of control execution and design
- Collect and maintain evidence of control testing
- Collect and maintain evidence of application attestation to standards
$76k-107k yearly est. 2d ago
Information Security Compliance Analyst
Alliant Credit Union 4.8
Cyber security analyst job in Chicago, IL
Job Description
Support the Information security governance, risk management and compliance program, focusing on compliance and assurance. Facilitate the compliance and assurance program, by performing assurance assessments to ensure Alliant Credit Union (ACU) is compliant with regulatory and legal obligations. Help maintain the technical control library ensure assessments align securing ACU. Facilitate IT issue management by working with employees on scheduling calls and going over the issue and resolution.
Essential Responsibilities
Responsible to facilitate the compliance and assurance assessments and issue management via a GRC tool
Conduct assurance assessment, including control test of design (ToD) and test of operating effectiveness (TOE) activities
Provide recommendations on improving compliance-related processes and/or procedures and identify opportunities for ITGC/security compliance control automation
Facilitate group and individual meetings, ensure that each meeting is organized and aligned and schedule walkthrough agenda addressing any issue that arise and and guiding towards actionable outcomes
Assist internal and external audit teams to address inquiries
Participate in InfoSec projects as assigned by management such as the review of documents
Education
Minimum- 4 Year Bachelors Degree in Computer Science, Information Security or Related
Years of Experience
Minimum - 2 Years Governance, Risk Management, Compliance within a financial institution or Security Compliance or Related
In Lieu of Education
5 Years Governance, Risk Management, Compliance within a financial institution
License/Certifications/Training
Preferred: Compliance, Risk Management, or Governance certifications: CRISC, CISM or CISA
Compensation & Benefits:
Typical hiring range: $57,500 - $89,500 Annually. Actual compensation will be determined using factors such as experience, skills & knowledge.
Additional Compensation: Annual performance bonus
Benefits: Alliant provides a benefits package including health care, vision, dental, and 401k with employer match.
Additional Benefits:
Work from home up to 3 days a week
Paid parental leave
Employee discount programs
Time off including paid personal and sick days
11 paid holidays
Education reimbursement
*Note that eligibility and cost of benefits can vary depending on the number of regularly scheduled hours, and job status such as regular full-time, regular part-time, or temporary employment.
Adhere to and ensure compliance of all business transactions with policy and process of the Bank Secrecy Act. Ensures compliance with all applicable state and federal laws, company procedures and policies. Maintains integrity and ethics in all actions and conversations with or regarding credit union members and their accounts; complies with Privacy Act directives.
The responsibilities listed do not contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice.
$57.5k-89.5k yearly 26d ago
Security Systems Engineer - Research & Testing
Zbeta Consulting
Cyber security analyst job in Chicago, IL
Full-time Description
WHO WE ARE:
At ZBeta we endeavor to be the most sought-after Security Partner in the world. This drives every decision we make, and the most effective way to realize this goal is through garnering a reputation for excellence and innovation in everything we do. The ZBeta Innovation Lab (LabZ) initiative is a specialized team and program with the mission of inventing, developing, testing, and analyzing better ways, both big and small, to do physical security - for us, for our clients, and for the industry. LabZ seeks to optimize the value of physical security to the client's business mission, to optimize the value of the solutions we recommend, design, deliver, and manage, and to continuously identify opportunities to perform at a higher level. The LabZ program helps ensure that ZBeta and its approach are always data-driven, technology-led, and human-centered.
Find out more about us here.
WHO YOU ARE:
You are a forward-thinking strategic partner with a passion for the physical security mission and for building programs, optimizing operations, and delivering integrated solutions. You excel in fast-paced settings where your leadership abilities can catalyze meaningful action and tangible progress towards objectives. You thrive in a workplace culture that is:
Innovative
Excellence Focused
Reliable
Detail Oriented
Adaptable
Highly Organized
Client Obsessed
Curious
Resilient
Does this sound like you? If so, join us in our mission to redefine security standards and make a lasting difference in our community.
WHAT YOU'LL DO:
The Physical Security Research Engineer (PSRE) is a critical resource of the ZBeta LabZ team and will conduct research and proof of concept (PoC) testing at the LabZ facility for clients and internal teams. The PSRE assists in requirements gathering, testing, and report production in the ZBeta LabZ program and leads, develops, manages, and completes key LabZ efforts for the testing and analysis of stand-alone and integrated physical security technology solutions. The PSRE is familiar with security software applications, integrations, and network-connected devices and engages both internally and externally, working collaboratively with other LabZ engineering resources and with project and production team members.
The PSRE will help grow, mature, and optimize the LabZ program by contributing to the tools and processes LabZ uses to effectively evaluate physical security products against real-world design requirements and generate research reports.
This is an in-office position at the ZBeta LabZ location in Schiller Park, IL. Relocation assistance provided.
Core Competencies
Growth Minded: High self-awareness of strengths and areas for development with a curiosity and appetite for change and innovation
Data-Driven: Strong analytical skills, with the ability to work effectively with data and think critically
Collaborative: Ability to solicit and understand multiple perspectives and maximize the application of team talent and experience
Evaluative: Ability to evaluate outputs rigorously to ensure consistent excellence in delivery
Tactical: Ability to recognize current priorities, manage changes and risks, and efficiently clear roadblocks and resolve issues
Position Responsibilities
The essential duties and responsibilities include, but are not limited to the following:
ZBeta Lab Environment
In partnership with ZBeta LabZ team, maintain a ZBeta test/dev environment of technology solutions that represent both client and industry standards.
Work with ZBeta IT to build appropriate server environments and remote access abilities for LabZ platforms.
Load, configure, and update Lab environment software applications, and wire, connect, and configure test hardware, devices, and technologies.
Design and build (or manage the production of) custom testing apparatus, devices, and mechanisms.
Maintain current knowledge of and training in key applications and products.
Solution Testing
Work with ZBeta LabZ team and client resources to plan, implement, and conduct hands-on testing of physical security products, applications and functions, and integrated solutions.
Lead the development of testing concepts to address client and industry needs, challenges, & opportunities.
Manage and execute testing scope related to server, application, and IoT elements.
Create test plans and testing requirement documentation, record and analyze testing results, and document outcomes and conclusions in testing reports.
Research & Requirements Gathering
Conduct studies and analysis of technology categories, trends, solution proposals, and industry approaches.
Research, collect, and analyze relevant documentation and data to reach meaningful conclusions, form opinions of value propositions, generate ideas for solutions and approach improvement, and categorize study topics in terms of potential application and impact to client and industry needs and expectations.
Work with consultants to gather requirements for client proof of concept tests and internal teams for quarterly research projects.
Research Program Development
Assist in the development and ongoing management of process, approach, and standards for the research performed in the ZBeta LabZ program.
Identify opportunities and initiatives for improvements in the efficiency and thoroughness of ZBeta LabZ research deliverables.
Hold regular research update meetings to review, improve, and manage the status of ongoing projects and deliverables.
Requirements
WHAT YOU'LL NEED:
Experience:
5+ years of physical security industry and technology experience. 3+ years of experience in a software or hardware engineering role.
Education:
Bachelor's degree in engineering, computer science, or related technical field, or equivalent work experience
Knowledge:
Knowledge of and working familiarity with server and network storage solutions, operating systems architecture and key considerations, and network architecture models and principles.
Professional knowledge of and training in the principles of electrical systems, components, and circuits.
Skills:
Highly proficient in the use of Microsoft Office applications including Word, Excel, PowerPoint, Teams, OneNote and Visio
Proficiency in project management tools, such as MS Project, SharePoint and QuickBase
Training and manufacturer certification in multiple industry-leading platforms and equipment components, with particular emphasis on software applications and network-connected security devices. Genetec and LenelS2 experience a plus.
Abilities:
Demonstrated excellence in communication and interpersonal skills, with proven ability to communicate and present complex information to technical and non-technical stakeholders, both verbally and in written form
Strong technical documentation, technical writing, and data analysis and interpretation skills
Exceptional attention to detail and highly organized, with the ability to prioritize and balance workloads
Team player with the ability to establish collaborative working relationships across all levels of the organization
Self-directed problem solver who takes the initiative to start projects, work unsupervised, complete tasks independently, solve roadblocks, and address issues before they become problems
Physical Demands:
Lifting and Carrying: Ability to lift and carry equipment weighing up to 50 lbs or more, including cameras, control panels, and tools.
Climbing and Crawling: Must be able to climb ladders, scaffolding, and operate a high lift to install and maintain equipment
Manual Dexterity: Requires good hand-eye coordination and fine motor skills for handling tools, wiring components, and making precise adjustments to security systems
Kneeling, Squatting, and Crawling: Must be comfortable kneeling, squatting, or crawling to install or troubleshoot security equipment.
WHAT WE OFFER:
Competitive salary based on job-related skills, experience, and qualifications
Our excellent benefits package includes 100% paid premiums on health, dental, vision, and life insurance, a 401(k) retirement plan, and significant work schedule and workplace flexibility.
Diverse and supportive culture
WHAT'S IMPORTANT TO KNOW:
Full-time, in-office role at our Schiller Park, IL LabZ facility (relocation assistance provided). While ZBeta is a remote-first company, this role requires hands-on, on-site lab work.
This position is not eligible for visa sponsorship
Candidates must be able to meet client and/or government security screening requirements for the role
This position requires verification of U.S. citizenship due to citizenship-based legal restrictions. As a condition of employment, the successful candidate will be required to provide proof of citizenship.
The successful completion of a background check is required upon hire and every two years thereafter
We look forward to connecting with individuals who are passionate about our mission and can bring diverse contributions to our team - not just those who check all the boxes.
We are committed to creating a supportive, encouraging environment where everyone can fully express their diverse perspectives, showcase their talents, and grow their knowledge, skills, and abilities.
The base pay offered will depend on factors, including but not limited to job-related knowledge, skills, experience, and internal equity. At ZBeta, new hires are rarely placed at the top of the pay range; compensation is determined by the specific circumstances of each position and candidate.
A note to third-party recruiters - we do not accept unsolicited agency resumes, and we are not responsible for any fees related to unsolicited resumes.
Salary Description $110,000 - $130,000
$110k-130k yearly 60d+ ago
Information Security Engineer II
Metrosys
Cyber security analyst job in Chicago, IL
About the Role
MetroSys is seeking a skilled Information Security Engineer II to support and lead efforts around vulnerability management within a dynamic, enterprise-scale environment. This individual will be instrumental in identifying and addressing security vulnerabilities across systems, networks, and applications. The ideal candidate brings a deep understanding of vulnerability scanning tools, remediation prioritization, and collaborative risk mitigation strategies.
You will work closely with cross-functional teams to enhance the organization's security posture and help ensure compliance with industry standards. If you thrive in fast-paced environments and are passionate about cybersecurity, this is an exciting opportunity to grow and make an impact.
Key Responsibilities
Lead the end-to-end vulnerability management lifecycle: scanning, analysis, prioritization, reporting, and remediation tracking.
Perform regular vulnerability assessments and support remediation efforts in collaboration with infrastructure and application teams.
Track and assess emerging threats and zero-day vulnerabilities using vendor bulletins and threat intelligence feeds.
Generate reports and dashboards to communicate risk posture and mitigation progress to technical and executive stakeholders.
Maintain and optimize vulnerability scanning tools to ensure full visibility and accurate detection across the environment.
Assist in security incident response involving known or suspected exploited vulnerabilities.
Support regulatory and compliance audits (e.g., PCI, NIST, HIPAA) by providing documentation and metrics.
Continuously improve processes, documentation, and tooling in the vulnerability management program.
Qualifications
Bachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
3+ years of experience in information security, with a strong emphasis on vulnerability management.
Hands-on experience with scanning tools (e.g., Tenable, Qualys, Rapid7).
Solid understanding of network architecture, operating systems (Linux, Windows), and web applications.
Familiarity with CVSS scoring, risk modeling, and remediation prioritization frameworks.
Ability to work with scripting or automation tools (Python, PowerShell, Bash) is a plus.
Excellent communication and problem-solving skills; ability to clearly explain security findings to non-security audiences.
Experience with compliance frameworks such as PCI DSS, NIST, HIPAA, or ISO 27001.
Relevant certifications are a plus (e.g., CISSP, Security+, LFCS, RHCSA).
$72k-97k yearly est. Auto-Apply 60d+ ago
Information Security Engineer
Sourcepro Search
Cyber security analyst job in Chicago, IL
SourcePro Search has a fantastic, direct hire opportunity for an experienced Information Security Engineer with our large and top ranked global law firm client. This role offers a high base and bonus as well as excellent benefits and professional growth potential.
The successful candidate will have a degree in Information Security or a related field and at least 3 years of experience in a professional services environment.
Responsibilities:
Design, implement, administer, troubleshoot, and support security infrastructure on the network, including the following:
Multicontext firewalls and clustering
Intrusion detection and prevention
Vulnerability management
Centralized log management
Data Loss Prevention
Content Filtering
VMWare and Microsoft Windows systems
Non-Windows authentication controls, i.e., cloud-based identity management, Cisco, and Palo Alto Networks
Demonstrate awareness of security best practices across common technologies, advocating for additional controls as necessary to ensure optimal security.
Examples of technologies to be addressed include the following:
Active Directory
Group Policy
Windows desktop systems and “locked down” desktop management
VMWare and Microsoft Windows Server systems
Non-Windows authentication controls, i.e., cloud-based identity management, Cisco, and Palo Alto Networks
Two-factor authentication
Network access control
Participate in all efforts to develop security policies and meet client or other compliance requirements:
Lead efforts to document security standards and procedures, demonstrating best practices to auditors or reviewers.
Review business processes, recommend and implement supportable security changes, including any relevant tools to better secure those processes.
Evaluate, implement, and enforce security practices around mobile and remote solutions, including Citrix, VPN, and MDM.
Maintain and coordinate incident response planning, assisting in execution of the incident response plan as needed.
Investigate actual and suspected security breaches.
Ensure consistent policies are applied to any hosted or cloud-based services being utilized by the firm.
Conduct log review and reporting on security devices and identified Windows systems.
Generate evidence for compliance/audit.
Work with vendors as necessary to supplement our security capabilities and recommend their use when appropriate. ****************************
$72k-97k yearly est. 60d+ ago
Information Security Engineer / Analyst
Konnectit
Cyber security analyst job in Chicago, IL
Job Description
We are seeking an Information Security Engineer / Analyst with 3-5 years of experience protecting enterprise systems and data. The ideal candidate will bring expertise in firewalls, IPS/IDS, vulnerability management, incident response, and risk assessment, along with strong scripting skills and knowledge of security frameworks such as NIST, CIS, and SOC 2. This role is critical to ensuring the confidentiality, integrity, and availability of organizational information assets.
Key Responsibilities
Administer, monitor, and optimize firewalls, IPS/IDS, and other security appliances.
Conduct vulnerability management and oversee remediation activities.
Perform incident response, including investigation, containment, and recovery.
Execute risk assessments and security assessments across systems and applications.
Develop and maintain security architecture and system administration standards.
Implement and tune SIEM (Security Information and Event Management) solutions and log management systems.
Manage cloud security configurations, encryption controls, and secure DevOps practices.
Support change management and configuration management processes.
Script in PowerShell, Python, or VB Script to automate security monitoring and remediation.
Ensure compliance with control frameworks including NIST, CIS, and SOC 2.
Mandatory Skills
Strong knowledge of firewall administration, IPS/IDS, and vulnerability management.
Hands-on experience with incident response and risk assessment processes.
Proficiency in PowerShell, Python, or VB Script scripting for automation.
Experience with security architecture and security administration.
Familiarity with DevOps practices in a secure environment.
Desirable Skills
Experience with SIEM platforms (e.g., Splunk, QRadar, ArcSight) and log management.
Knowledge of cloud security principles (Azure, AWS, or GCP).
Experience with encryption technologies and key management.
Familiarity with change management and configuration management tools.
Working knowledge of compliance and control frameworks: NIST, CIS, SOC 2.
Exposure to penetration testing or advanced security assessments.
$72k-97k yearly est. 30d ago
Information Systems Security Officer (ISSO)
Contact Government Services, LLC
Cyber security analyst job in Chicago, IL
ISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities.
Skills and attributes for success:- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. - Maintain responsibility for managing cybersecurity risk from an organizational perspective. - Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.- Provide subject matter expertise for cybersecurity and trusted system technology. - Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.- Research, write, review, disposition feedback, and finalize recommendations regarding cybersecurity policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. - Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cybersecurity risk findings, and other complex problems.
Qualifications:- Bachelor's Degree.- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.- eMASS experience.- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.- Strong desktop publishing skills using Microsoft Word and Excel.- Experience with industry writing styles such as grammar, sentence form, and structure.- Ability to multi-task in a deadline-oriented environment.
Ideally, you will also have:- CISSP, CASP, or a similar certificate is preferred.- Master's Degree in Cybersecurity or related field.- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.- Demonstrated ability to work well independently and as a part of a team.- Excellent work ethic and a high commitment to quality.
Our Commitment:Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems.
For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.
Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.
We care about our employees. Therefore, we offer a comprehensive benefits package.Health, Dental, and VisionLife Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays
Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Join our team and become part of government innovation!Explore additional job opportunities with CGS on our Job Board:**************************************** more information about CGS please visit: ************************** or contact:Email: *******************
#CJ
$67k-91k yearly est. Auto-Apply 60d+ ago
Data and System Security Engineer
Ayr Global It Solutions 3.4
Cyber security analyst job in Lincolnshire, IL
AYR Global IT Solutions is a national staffing firm focused on cloud, cybersecurity, web application services, ERP, and BI implementations by providing proven and experienced consultants to our clients. Our competitive, transparent pricing
model and industry experience make us a top choice of Global System
Integrators and enterprise customers with federal and commercial
projects supported nationwide.
Job Role: Data and System Security Engineer
Location: Lincolnshire, IL
Duration: 6+ Months
Qualifications
Job Description:
Data and System Security engineer
Experience with data encryption management solutions, such as Vormteric and CloudLink
Experience with PKI management solutions, such as ADCS and External providers
Investigative and analytical problem solving skills
Customer service/support experience
Additional Skills:PKI
Knowledge of encryption management technologies, such as Vormetric, CloudLink.
Additional Information
If anyone might be intersted please send resumes to kmarsh@ayrglobal (dot) com or you can reach me direct at **************
$74k-102k yearly est. 1d ago
Security & Fire Systems Engineer III
Johnson Controls Holding Company, Inc. 4.4
Cyber security analyst job in Calumet City, IL
Build your best future with the Johnson Controls team
As a global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performance of buildings to serve people, places and the planet. Join a winning team that enables you to build your best future! Our teams are uniquely positioned to support a multitude of industries across the globe. You will have the opportunity to develop yourself through meaningful work projects and learning opportunities. We strive to provide our employees with an experience, focused on supporting their physical, financial, and emotional wellbeing. Become a member of the Johnson Controls family and thrive in an empowering company culture where your voice and ideas will be heard - your next great opportunity is just a few clicks away!
What we offer
Paid vacation/holidays/sick time - 15 days of vacation first year
Comprehensive benefits package including 401K, medical, dental, and vision care - Available day one
Extensive product and on the job/cross training opportunities with outstanding resources
Encouraging and collaborative team environment
Dedication to safety through our Zero Harm policy
Check us Out: A Day in a Life at Johnson Controls:
What you will do
Under specific direction, assists in the design, configuration, and operation of building systems including security, fire, and other low voltage control sub-systems (i.e. lighting, nurse call, data networks, etc.) to meet the intent of the project requirements. Assists in the development of software programs, commissioning and troubleshooting to ensure proper operations of the building control system. Provides detailed information and submittals to communicate design and operation to customers, consultants, Johnson Controls field installation team and subcontractors.
How you will do it
Design and configure technically complex Security & Fire systems as defined by the contract documents. Create flow diagrams, sequence of operations and bill of material, network layouts and electrical schematics as required.
Develop and test software programs necessary to operate the system per the intent of the project requirements.
Use your ability to integrate different Security subsystems with each other.
Coordinate and create the necessary drawings and equipment schedules for submittals and installation.
Select, order, and track the delivery of materials for assigned projects.
Coordinate factory-mounting processes to meet factory and project schedule.
Assist in the loading and commissioning of all system and network-level controllers as required. Assist in validation of complete system functionality and troubleshoot problems with subcontractors and other trades to ensure proper operation.
Provide field change information to the project team for the creation of as-built drawings and software.
Keep management and JCI contractor or customer informed of job progress and issues. Assist in performing site-specific training for owner / operator on the total building control system.
Participate in release meeting with project field team. Perform value engineering to provide cost effective results while maintaining customer satisfaction.
Adhere to safety standards. Operate with a high degree of regard to employee and subcontractor safety.
What we look for:
Required
Experience in setting up application deployment (Installation, Configuration, Integration with other components) on Cloud environment based on underlying Application Architecture
Experience in Disaster Recovery setup
Administration, Maintenance and support of the Application instances on Reference, Validation and Customer environments
Identify any known incident resolutions using a knowledge management system
Apply identified resolutions to the incident and interact with the customer to ensure the incident has been properly resolved
Antivirus - Symantec (Installation, updates and remediation's of antivirus client for servers and computers
Off-shift support for machine moves quarterly maintenance
Deployment of physical and virtual server deployment, troubleshooting and maintenance
Ability to learn security software programs (I.E. C-cure9000, Milestone, Genetec)
Strong technical skills in the domain of Windows Server 2008/2012, Microsoft Hyper-V and SCCM/SCOM/SCVMM is essential
Basic MS SQL database and scripting skills is an asset Basic MS SQL database and scripting skills is an asset
HIRING SALARY RANGE: $85,000 - $106,000 Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, location and alignment with market data.) This role offers a competitive Bonus plan that will take into account individual, group, and corporate performance. This position includes a competitive benefits package. For details, please visit the About Us tab on the Johnson Controls Careers site at *****************************************
#LI - AD2
#LI - DS1
Johnson Controls International plc. is an equal employment opportunity and affirmative action employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, protected veteran status, genetic information, sexual orientation, gender identity, status as a qualified individual with a disability or any other characteristic protected by law. To view more information about your equal opportunity and non-discrimination rights as a candidate, visit EEO is the Law. If you are an individual with a disability and you require an accommodation during the application process, please visit here.
$85k-106k yearly Auto-Apply 60d+ ago
Malware Defense Malware Analyst
Bank of America 4.7
Cyber security analyst job in Chicago, IL
Washington, District of Columbia;Chicago, Illinois; Denver, Colorado **To proceed with your application, you must be at least 18 years of age.** Acknowledge Refer a friend **To proceed with your application, you must be at least 18 years of age.** Acknowledge (******************************************************************************************************
**Job Description:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Bank of America is one of the world's leading financial institutions, serving over 66 million consumers and small businesses. Company success is only possible with a strong cyber defense, which enables Bank of America to safely conduct global operations across the United States and in approximately 35 countries. Our primary goal is to safeguard not only the company, but our clients and their trust. The Malware Defense Team is looking for top talent who would like to join one of the most advanced cybersecurity teams in the world.
Responsibilities include, but are not limited to:
- In-depth analysis of malware, including authoring analysis reports.
- Tracking malware campaigns, malicious actors, and related infrastructure.
- Creation of tools and scripts to assist in the analysis of malware analysis.
- Field escalations of potentially malicious files and websites from teams within Malware Defense.
Required Qualifications:
- Strong direct experience of analyzing malware.
- Intermediate to advanced malware analysis skills.
- Experience creating innovative ways to track progression of malware families, infrastructure, and campaigns conducted by e-crime, and cyber espionage actors.
- Experience creating tools and scripts to accelerate malware and threat analysis.
- Background in network traffic analysis - WireShark, Fiddler, proxy logs, etc.
- Experience analyzing malicious web content such as ClickFix, ClearFake, SocGholish, etc.
- Experience authoring YARA, Suricata, and EKFiddle detection rules.
- Experience with penetration testing and/or adversary emulation is a plus.
- Able to work independently on tasks, but also work well within a team environment
Desired Qualifications:
- Experience analyzing malware targeting Linux, Android, and IOT platforms.
Skills:
+ CyberSecurity
+ Data Privacy and Protection
+ Problem Solving
+ Process Management
+ Threat Analysis
+ Business Acumen
+ Data and Trend Analysis
+ Interpret Relevant Laws, Rules, and Regulations
+ Risk Analytics
+ Stakeholder Management
+ Access and Identity Management
+ Data Governance
+ Encryption
+ Information Systems Management
+ Technology System Assessment
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
$76k-102k yearly est. 32d ago
Information Systems Security Officer (ISSO)
Contact Government Services, LLC
Cyber security analyst job in Chicago, IL
Job DescriptionISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities.
Skills and attributes for success:- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. - Maintain responsibility for managing cybersecurity risk from an organizational perspective. - Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.- Provide subject matter expertise for cybersecurity and trusted system technology. - Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.- Research, write, review, disposition feedback, and finalize recommendations regarding cybersecurity policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. - Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cybersecurity risk findings, and other complex problems.
Qualifications:- Bachelor's Degree.- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.- eMASS experience.- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.- Strong desktop publishing skills using Microsoft Word and Excel.- Experience with industry writing styles such as grammar, sentence form, and structure.- Ability to multi-task in a deadline-oriented environment.
Ideally, you will also have:- CISSP, CASP, or a similar certificate is preferred.- Master's Degree in Cybersecurity or related field.- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.- Demonstrated ability to work well independently and as a part of a team.- Excellent work ethic and a high commitment to quality.
Our Commitment:Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems.
For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.
Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.
We care about our employees. Therefore, we offer a comprehensive benefits package.Health, Dental, and VisionLife Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays
Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Join our team and become part of government innovation!Explore additional job opportunities with CGS on our Job Board:**************************************** more information about CGS please visit: ************************** or contact:Email: *******************
#CJ
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
$67k-91k yearly est. Easy Apply 29d ago
Data and System Security Engineer
Ayr Global It Solutions 3.4
Cyber security analyst job in Lincolnshire, IL
AYR Global IT Solutions is a national staffing firm focused on cloud, cybersecurity, web application services, ERP, and BI implementations by providing proven and experienced consultants to our clients.
Our competitive, transparent pricing
model and industry experience make us a top choice of Global System
Integrators and enterprise customers with federal and commercial
projects supported nationwide.
Job Role: Data and System Security Engineer
Location: Lincolnshire, IL
Duration: 6+ Months
Qualifications
Job Description:
Data and System Security engineer
Experience with data encryption management solutions, such as Vormteric and CloudLink
Experience with PKI management solutions, such as ADCS and External providers
Investigative and analytical problem solving skills
Customer service/support experience
Additional Skills:PKI
Knowledge of encryption management technologies, such as Vormetric, CloudLink.
Additional Information
If anyone might be intersted please send resumes to kmarsh@ayrglobal (dot) com or you can reach me direct at **************
How much does a cyber security analyst earn in West Chicago, IL?
The average cyber security analyst in West Chicago, IL earns between $61,000 and $110,000 annually. This compares to the national average cyber security analyst range of $66,000 to $117,000.
Average cyber security analyst salary in West Chicago, IL