52 incident response engineer jobs at 42 companies in Berkeley, IL
1d
Save
Mark Applied
Hide
1d
Manager, Security Incident Response
Chicago, Illinois, United States
$130k-$150k/yrHybridFull Time
Hub International: Provides global insurance brokerage and risk management services.
5+ YOE5+ years security experience, hands-on DFIR and detection engineering, team leadership, cloud and Microsoft stack expertise, PowerShell/Python scripting, SIEM/EDR/SOAR experience.
PowerShell, Python, Shell scripting, TCP/IP, DNS, CDN, HTTP, WAF, OAuth, SAML, AWS, Azure, GCP, Microsoft Active Directory/Entra, O365, Microsoft 365 Unified Audit Log, SIEM, EDR, SOAR, NIST 800-61, SANS
T-MobileNASDAQ: TMUS: Provides wireless voice, data, and mobile internet services.
4+ YOEBachelor's in CS/IT plus ~5 years (or advanced degree plus ~3 years); 4-7 years in security software, project leadership, network information security, and incident response; experience with SIEM, EDR, SOAR, forensics and scripting.
Balyasny Asset Management: Global multi-strategy investment firm managing diverse financial assets.
Experience in production engineering/SRE or application support for real-time trading systems; strong monitoring, incident response, troubleshooting, automation, and collaboration skills.
Vouch: Vouch provides insurance brokerage and risk management for startups.
Deep cloud engineering (AWS), CI/CD and delivery automation, Terraform and IaC, security and incident response, SOC 2 experience, identity and access management, production reliability and compliance.
Balyasny Asset Management: Global multi-strategy investment firm managing diverse alternative asset classes.
Experience in production engineering/SRE or app support for real-time trading systems; monitoring, incident response, troubleshooting, automation, Linux, Python, and SQL skills; strong operational discipline.
Optimal Market Technologies: Operates a broker-dealer platform for wholesale options execution.
Hands-on Linux and network administration, strong scripting/automation, Infrastructure-as-Code experience, production support and incident response ownership, staff management/mentoring, familiarity with C++, Python, SQL, Azure, and real-time trading systems.
C++, Python, SQL, Linux, CentOS7, RHEL9, Microsoft Azure, Microsoft Azure Virtual Desktop (AVD), Claude Code, FIX Protocol, PostgreSQL, AERON
Spotless Brands: Operates regional car wash and automotive detailing service brands.
5+ YOEBachelor's or equivalent,5+ years cybersecurity experience,hands-on security engineering,incident response,vulnerability management,knowledge of NIST CSF and compliance (SOC 2,PCI-DSS);certifications preferred.
Echo Global Logistics: Provides freight brokerage and managed transportation services.
4+ YOE4+ years in security operations/incident response, expertise with SIEM/SOAR/EDR/XDR, detection engineering, SOAR playbooks, experience in SOX and SOC 2 Type 2 environments, and hands-on AI/LLM application to security.
Optiver: Global market maker providing liquidity to financial markets.
Hands-on security engineer to protect cloud (AWS, Microsoft 365) and on-prem systems; monitor operations, perform incident response, automate security workflows, conduct risk assessments, and embed security best practices across the organization.
AWS, GuardDuty, CloudTrail, Security Hub, AWS Config, KMS, IAM, Microsoft 365, Microsoft Entra ID, Conditional Access, MFA, PIM, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for O365, Microsoft Purview, DLP, Microsoft Secure Score, Python, PowerShell, Microsoft Graph API, REST, SIEM, EDR, SOAR, CASB, Git, Windows, Linux, TCP/IP, DNS, VPN, SAML, OAuth, OIDC, RBAC, PAM, SSO
Akuna Capital: Proprietary trading firm providing liquidity in global options markets.
3+ YOE3-5 years in cybersecurity or security engineering; experience with SIEM, EDR, cloud security (Azure/AWS/GCP), incident response, threat hunting, scripting (PowerShell/Python), and security operations frameworks.
MITRE ATT&CK, SIEM, EDR, MFA, Microsoft 365, PowerShell, Python, Cortex XSOAR, Splunk SOAR (Phantom), Tines, Torq, Microsoft Defender XDR, Microsoft Sentinel, CrowdStrike, SentinelOne, DLP, CASB, Azure, AWS, GCP, Windows, Linux, macOS, NIST Cybersecurity Framework, CIS Controls, ISO 27001, OWASP LLM Top 10, MITRE ATLAS
Interactive BrokersNASDAQ: IBKR: Automated global electronic brokerage and trading services provider.
6+ YOE6+ years experience in cybersecurity/incident response, basic security concepts, familiarity with SIEM/EDR, incident triage and investigation, strong analytical and communication skills; degree or certification in cybersecurity/IT or equivalent experience.
Chicago Trading Company: Proprietary trading firm specializing in derivatives and risk management.
Troubleshoot live trading systems, incident response, Linux CLI, Python and Bash scripting, communicate with traders and developers; SQL/Snowflake preferred.
Virtusa: Digital engineering and IT business transformation services provider.
Tier-3 production support experience with code-level debugging, incident response, SQL data fixes, scripting (Python, Bash), and observability/monitoring expertise.