Senior Information Security Engineer
Supernova Technology™ - Chicago, IL
Hiring: Senior Information Security Engineer Company: Supernova Technology™ Location: Chicago, IL Job Posted Time: 2026-09-03 07:42:40 Target Skills & Keywords : AWS, Bash, CI/CD, Cloudflare, DAST, DNS, Docker, ECS, IaC, Linux, Pen Testing, PowerShell, Python, REST, SAST, SCA, SIEM, SOC 2, SaaS, Splunk, TLS, VPN, WAF, macOS About the job Experience: •5+ years in security engineering, threat hunting, detection engineering, security operations, incident response, or infrastructure security. Required Skills: •We are seeking a highly skilled and hands-on Senior Security Engineer to help protect Supernova’s financial technology platform and enterprise environment. This senior individual-contributor role combines proactive threat hunting, detection engineering, incident response, and ownership of critical security technologies and infrastructure. •This role is well suited for someone who enjoys both investigating sophisticated security activity and building the systems, integrations, and processes needed to prevent, detect, and respond to it. •Run hypothesis-driven and intelligence-led threat hunts across endpoint, network, identity, cloud, email, application, and SaaS telemetry, analyzing large datasets to surface suspicious behavior, control gaps, and emerging attack techniques. •Turn threat intel and adversary TTPs into hunt hypotheses and detection logic; build and tune SIEM queries, correlation rules, dashboards, and alerts aligned to MITRE ATT&CK. •Convert hunt findings and incident lessons into durable detections, prevention controls, and playbooks; continuously evaluate detection coverage, false-positive rates, and telemetry quality. •Track emerging threats relevant to financial services, cloud, and software supply chains. •Design, implement, test, and own security technologies end-to-end, including SIEM, EDR/XDR, IDS/IPS, firewalls, WAF, vulnerability management, email security, identity protections, and automation, from requirements and design through deployment, documentation, post-implementation validation, and ongoing operation. •Strengthen security across AWS, Microsoft 365, Entra ID, Windows, macOS, Linux, containers, and SaaS, partnering with infrastructure, IT, and engineering teams. Qualifications: •Proven ability to independently lead complex technical projects end-to-end. •Applied hands-on capability in enterprise security platforms (SIEM, EDR/XDR, firewalls, IDS/IPS, WAF, vuln management, email/identity security) and threat hunting across varied telemetry. •Strong knowledge of attacker TTPs, IR processes, and MITRE ATT&CK. •Solid grasp of network security fundamentals (segmentation, firewalls, VPNs, DNS, HTTP/TLS, access control). •Scripting/automation ability (Python, PowerShell, Bash, REST APIs). •Strong analytical skills with incomplete/ambiguous information, and excellent communication with technical and non-technical audiences. •High integrity and discretion with privileged systems and sensitive investigations. •Fintech, financial services, or other regulated tech experience preferred. •Operational familiarity with tools like CrowdStrike, Microsoft Defender, Splunk, Rapid7, Palo Alto, Fortinet, Cisco, or Cloudflare preferred. •AWS security services, cloud-native detection, and Docker/ECS or comparable container-security experience preferred. Compensation: •$110,000 - $140,000 / year •Medical, Dental, and Vision Insurance: Multiple plans with coverage for employees and dependents Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!