> Markdown version of [/jobs/ext/2004961-security-engineer](https://www.wearedevelopers.com/jobs/ext/2004961-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** BV HOLDINGS LLC - **Location:** Chicago, IL, United States - **Salary:** $150,000.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Proxy Servers, User Authentication, Cloud Computing, Cloud Computing Security, Configuration Management, Cyber Security, Databases, Information Leak Prevention, Data Security, Linux, Domain Name System (DNS), Multi-Factor Authentication, Home Automation, Identity and Access Management, Virtual Private Networks (VPN), Information Systems Security Architecture Professional, Python (Programming Language), Linux System Administration, Log Analysis, Microsoft Security Essentials, Microsoft Software, Network Architecture, Networking Basics, Network Administration, OAuth, OpenID, Windows PowerShell, Systems Development Life Cycle, Protocol Independent Multicast, Role-Based Access Control, Cloud Services, Security Assertion Markup Language (SAML), Security Information and Event Management, Single Sign-On, Software Engineering, Systems Integration, TCP/IP, Transmission Control Protocol (TCP), Software Vulnerability Management, EndPointSecurity, Scripting, Enterprise Software Applications, Cloud Platform System, Office365, Firewalls (Computer Science), Git, Graphql, Data Management, Opsworks, Restful APIs, Software Version Control, Devsecops, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** August 9, 2026 - **Apply:** https://www.careerbuilder.com/job-details/security-engineer-chicago-il--97a61375-106b-4231-a625-1088a74b7476 ## About the Role You are a hands-on security engineer with strong technical fundamentals and a passion for building secure, scalable systems. You may come from a background in Security Engineering, Security Operations, Cloud Security, Identity & Access Management, DevSecOps, or a related field., * Approach security challenges with an engineering mindset and prefer pragmatic, effective solutions to unnecessary complexity. * Look for opportunities to automate repetitive work through scripting, tooling, and emerging technologies, including AI-enabled security workflows. * Have hands-on experience in security engineering, security operations, or DevSecOps, with a track record of monitoring, incident response, and risk reduction. * Stay curious about evolving threats, cloud technologies, detection techniques, and emerging security trends. * Communicate effectively across technical and non-technical teams and can clearly articulate security concepts to a variety of audiences. * Are comfortable collaborating with engineers, infrastructure teams, and business stakeholders, and constructively challenging assumptions when needed. * Take ownership of problems from investigation through resolution and enjoy working in a fast-paced, highly collaborative environment., Access Control, Amazon Web Services (AWS), Analysis Skills, Application Programming Interface (API), Artificial Intelligence (AI), Authentication, Automation, Best Practices, Cloud Computing, Communication Skills, Computer Security, Continuous Improvement, DNS (Domain Name System), Detail Oriented, Emerging Technology, Establish Priorities, Firewalls, Git, Home Automation, Identity Data Management, Incident Response, Information/Data Security (InfoSec), Linux Operating System, Liquidity, Loss Prevention, Machine Tool, Microsoft Access Database, Microsoft Product Family, Microsoft Windows Operating System, Network Administration/Management, OAuth, Operations, Operations Security (OPSEC), People Management, Pricing, Problem Solving Skills, Process Improvement, Protocol Independent Multicast (PIM), Python Programming/Scripting Language, REST (Representational State Transfer), Risk, Risk Analysis, Risk Management, Scalable System Development, Scripting (Scripting Languages), Security Analysis, Security Assertion Markup Language (SAML), Security Attacks, Security Information and Event Management (SIEM), Security Monitoring, Single Sign-On (SSO), Software Engineering, Source Code/Configuration Management (SCM), Stock Market, Strategic Planning, System Integration (SI), System Operations, Systems Administration/Management, TCP/IP (Transmission Control Protocol/Internet Protocol), Team Player, Trend Analysis, VPN (Virtual Private Network), Windows PowerShell ## Description We are seeking a motivated, hands-on Security Engineer to join our security team. In this role, you will help protect, monitor, and continuously improve the security of our global systems - including cloud (AWS and M365) and on-premises infrastructure. You'll play a central part in risk mitigation, incident response, automation of security operations, and embedding security best practices across our organization. What you'll do As a Security Engineer at Optiver, you'll be responsible for monitoring, protecting, and continuously improving the security of our global systems and infrastructure. At Optiver, this means proactive threat prevention, swift identification of security risks, and rapid response to incidents to ensure our systems remain secure under all circumstances. An engineering mindset, attention to detail, and a preference for pragmatic solutions are essential to keeping our systems operating. In practice, this means you will work on a range of activities in collaboration with the global security team on activities such as: Security Operations & Monitoring * Monitor daily security operations, identify threats, investigate alerts, and respond to incidents across cloud and on-prem environments. * Maintain and tune security tools across AWS, Microsoft 365, endpoints, and network infrastructure. Cloud & Identity Security * Strengthen Microsoft 365 and Entra ID security through Conditional Access, MFA, PIM, Defender for Endpoint/Identity/O365, and tenant configuration hardening. * Implement and support data protection capabilities, including Microsoft Purview, sensitivity labels, DLP, and insider risk policies. Automation & Engineering * Build and maintain security automation using Python and PowerShell, with a strong focus on reducing manual processes and improving detection and response. * Integrate systems using APIs (Graph API, REST, etc) to enhance security workflows. * Work with AI and our AI engineering teams to ensure the security of the environment Risk Assessment & Security Controls * Perform vulnerability assessments, review system configurations, and develop practical mitigation strategies. * Conduct security reviews of systems, cloud workloads, and new technologies. * Ensuring and assuring our security controls are effective and working as intended Incident Response * Lead or contribute to incident response activities including investigation, containment, communication, and remediation. * Analyze logs, IOCs, and behavior patterns using SIEM tools and threat intelligence. Collaboration & Enablement * Work closely with engineering, technology, and business teams to embed security best practices. * Provide guidance on secure architecture, access controls, and identity management. * Support user education and uplift security behaviors across the business. What you'll get You'll join a culture of collaboration and excellence, surrounded by curious thinkers and creative problem-solvers. Motivated by a passion for continuous improvement, you'll thrive in a supportive, high-performing environment alongside talented colleagues, collectively tackling some of the toughest challenges in the financial markets., * Securing and supporting cloud environments, particularly AWS, including services such as IAM, GuardDuty, CloudTrail, Security Hub, AWS Config, and KMS. * Working with Microsoft security technologies including Entra ID, Conditional Access, Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), Microsoft Defender, and Secure Score. * Using security tools such as EDR, SIEM, vulnerability management, SOAR, CASB, or related technologies. * Investigating security events, responding to incidents, and managing security risks across cloud and on-premises environments. * Managing identity and access controls, including RBAC, PAM, SSO, and federation technologies such as SAML, OAuth, and OIDC. * Supporting and securing Windows and Linux environments. * Applying networking fundamentals including TCP/IP, DNS, VPNs, proxies, and firewalls to secure enterprise systems. * Building automation and tooling using Python and/or PowerShell. * Integrating systems through APIs and working with version control systems such as Git. * Implementing or supporting data protection technologies such as Microsoft Purview, data loss prevention (DLP), classification, and information protection solutions. ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Security Basics for Vibe Coders](https://www.wearedevelopers.com/magazine/598-security-basics-for-vibe-coders) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)