Skip to content

Open nowPosted today

Senior Security Engineer

Corient112 open roles

Where
US IL Chicago 10 SWacker 3100
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Security EngineerCorient · US IL Chicago 10 SWacker 3100
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Corient's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.3% of postings close within 7 days. Measured by our own scanner across the market. Corient postings stay open a median of 29 days.

Share of postings closed within
  1. 1.9%1 day
  2. 4.0%3 days
  3. 8.3%7 days
  4. 15.3%14 days
  5. 34.2%30 days
This job: posted today

Corient median: 29 days open

The posting

Join a team that values your ambition and empowers your growth

At Corient, we help high- and ultra-high-net-worth individuals and families to enjoy a full life, while enabling them to preserve their wealth for future generations, and provide for the people, causes and communities they care about. We focus on exceeding expectations, simplifying lives, and establishing legacies that last for generations. We are always looking for talented and motivated individuals to join our team. If you want to work for a company that values your contributions and supports your growth, we would like to meet you.

Senior Security Engineer

About the Role

We are seeking a Senior Security Engineer to design, implement, and continuously improve enterprise security capabilities across endpoint, cloud, network, data, and security operations environments.

This is a hands-on senior engineering role responsible for the architecture, implementation, integration, and optimization of core security platforms, including Rapid7, Microsoft Defender, Microsoft Purview, Mimecast, and Zscaler. The engineer will serve as a technical owner for these platforms and translate security requirements and identified risks into scalable technical controls.

The role works closely with Security Operations, Infrastructure, Network, Cloud, and Application Engineering teams and requires the ability to independently lead complex technical initiatives and solve problems across multiple technology domains.

Key Responsibilities

Security Platform & Architecture Engineering

  • Serve as a senior technical owner for enterprise security platforms, leading complex implementations, integrations, migrations, and major technology changes.
  • Establish scalable security architectures, engineering standards, and configuration baselines aligned with secure-by-design, defense-in-depth, and Zero Trust principles.
  • Evaluate existing and emerging capabilities to close security gaps, improve effectiveness, simplify the technology environment, and provide senior-level technical guidance across engineering teams.

SIEM, Detection & Security Operations Engineering

  • Engineer and evolve Rapid7 InsightIDR and supporting SIEM capabilities, including telemetry, detection logic, correlation, alerting, and visibility across enterprise environments.
  • Partner with Security Operations and MDR providers to improve detection coverage, reduce operational noise, and translate lessons from incidents into improved controls.
  • Develop SOAR workflows and platform integrations that automate enrichment, investigation, response, remediation, and other security processes.

Vulnerability Management Engineering

  • Engineer and evolve Rapid7 InsightVM capabilities to provide comprehensive and actionable vulnerability visibility across endpoints, servers, network infrastructure, and cloud workloads.
  • Improve vulnerability prioritization and remediation by incorporating severity, exploitability, asset criticality, and environmental context.
  • Partner with technology teams to identify coverage gaps, validate remediation, and improve vulnerability management through automation and platform integration.

Microsoft Security & Data Protection

  • Engineer and optimize Microsoft Defender capabilities across enterprise endpoints, servers, cloud workloads, and Microsoft 365 environments.
  • Design and maintain preventative and detective controls, including endpoint protection, attack surface reduction, threat protection, and related security policies.
  • Engineer Microsoft Purview Data Loss Prevention and information protection capabilities to protect sensitive information while balancing security requirements with legitimate business processes.

Email Security Engineering

  • Engineer and optimize Mimecast or comparable Secure Email Gateway capabilities to protect against phishing, malware, business email compromise, impersonation, and other email-borne threats.
  • Maintain layered email security controls and secure mail-flow architecture across Microsoft 365 and third-party security platforms, including SPF, DKIM, and DMARC.
  • Continuously improve email security controls based on emerging threats, security events, and observed control effectiveness.

Zero Trust & Network Security

  • Support the continued development of Zero Trust capabilities using Zscaler and related technologies.
  • Partner with Network Engineering to strengthen secure internet access, traffic inspection, application control, and network security enforcement.
  • Improve security controls through the effective use of identity, device posture, application, network, and threat context.

Qualifications

  • Bachelor's degree in Computer Science, Engineering, Information Security, or a related field, or equivalent professional experience.
  • 7+ years of experience in security engineering, infrastructure security, cloud security, or a related technical discipline, with demonstrated experience independently designing and implementing enterprise security solutions.
  • Strong hands-on experience across multiple security domains, including SIEM/detection engineering, vulnerability management, endpoint security, data protection, email security, and security automation.
  • Experience with technologies such as Rapid7 InsightIDR/InsightVM, Microsoft Defender/Purview, Mimecast or comparable Secure Email Gateway technologies, and Zscaler or comparable SASE/Secure Web Gateway platforms.
  • Strong scripting, automation, integration, and troubleshooting skills using technologies such as PowerShell, Python, REST APIs, and platform APIs.
  • Strong understanding of enterprise security architecture, Zero Trust, defense-in-depth, and frameworks such as NIST CSF, CIS Controls, and MITRE ATT&CK.

Preferred Qualifications

  • Experience engineering security technologies within a large, distributed enterprise or hybrid cloud environment.
  • Experience integrating SIEM, MDR, endpoint security, vulnerability management, email security, ticketing, and SOAR technologies.
  • Relevant security or technology certifications such as CISSP, CCSP, GIAC, Microsoft, Rapid7, Zscaler, Mimecast, or comparable certifications.

Physical Requirements

  • This position requires the physical capabilities to work in an office environment, which may include prolonged periods of sitting at a desk and working on a computer. Corient seeks to make reasonable accommodations that enable individuals with disabilities to perform essential duties when possible.
  • This position may require the ability to lift up to 15 pounds.
  • This position is required to work onsite 4 days per week.

U.S. Eligibility Requirements

  • Must be 18 years of age or older.
  • Must have unrestricted work authorization to work in the United States. For U.S. employment opportunities, Corient hires U.S. citizens or permanent residents. Exceptions to these requirements will be determined based on shortage of qualified candidates with a particular skill. Corient will require proof of work authorization.
  • Corient participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S. If E-Verify cannot confirm that you are authorized to work, this employer is required to give you written instructions and an opportunity to contact Department of Homeland Security (DHS) or Social Security Administration (SSA) so you can begin to resolve the issue before the employer can take any action against you, including terminating your employment. Employers can only use E-Verify once you have accepted a job offer and completed the Form I-9.
  • Must be willing to execute Corient’s Employee Agreement or Confidentiality and Non-Disclosure Agreement, which require, among other things, post-employment obligations relating to non-solicitation, confidentiality, and non-disclosure.

What You Can Expect from Us

Our dedication to the Employee Experience at Corient is aimed at supporting, empowering, and inspiring our talented team through:

  • 401(k) Plan with Employer Matching
  • Four Medical Plan options that is generously subsidized by Corient
  • Employer paid Dental, Vision & Life and AD&D Insurance
  • Employer paid Short-term & Long-term Disability
  • Paid Maternity & Parental Leave
  • Flexible Spending Accounts & Health Savings Accounts
  • Dependent Care FSA
  • Commuter & Transit FSA
  • Corporate Discount Program - Perkspot
  • Training Reimbursement
  • Paid Professional Designations
  • Giving back to the community - Volunteer days

Corient is the world’s largest multi-family office and non-bank wealth manager focused on serving ultra-high- and high-net-worth clients. As the industry’s only global professional services partnership, we combine the personal service and objectivity of a boutique with the scale and resources of a global institution. Our partnership model fosters collaboration over competition, bringing together the collective expertise of Corient to each relationship to deliver a transparent, client-first experience. As a fully integrated global firm, we deliver comprehensive solutions across investment management, wealth strategy and family office services to help clients simplify their lives, manage their wealth and establish lasting legacies.

Full participation of all employees in a safe, healthy and respectful environment is key to individual and company success. We are committed to fully utilizing the abilities of all our employees and expect each of our employees to honor this commitment in their daily responsibilities.

We are an equal opportunity employer. All candidates will be recruited and, if applicable, selected and employed without regard to sex, race, religion, marital status, veteran status, age, national origin, sexual orientation, gender identity, color, creed, ancestry, disability, genetic information or any other basis prohibited by law.

This position description is intended to provide a general overview of the expectations and responsibilities of this position and may not include all tasks that may be assigned. As the nature of business demands change, so may the functions of this position. Additional duties and responsibilities may be assigned with or without notice.

Corient refers to the separate but affiliated entities under common control of Corient Holdings Inc. Client assets include all assets of Corient Holdings Inc., including majority- and minority-owned businesses.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Corient's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Corient's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Corient's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.