1

Adversary Emulation Jobs in Illinois (NOW HIRING)

Sr. Red Team Engineer

Chicago, IL · Hybrid

$158K - $198K/yr

Red Team campaigns and adversary emulation exercises. * Purple-Team exercises and efficacy tests. * Impact and Blast-Radius analysis of vulnerabilities and attacks. * Develop scripts, tools, and ...

AI Red Team Lead Engineer

Chicago, IL · On-site

$105.60K - $139.10K/yr

Significant red team experience, including adversary emulation and multi-stage attack chains * Proven skill developing proof-of-concept exploits and custom offensive tooling * Strong understanding of ...

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Advisor Red Team

Chicago, IL

$112.50K - $187.50K/yr

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Advisor Red Team

Chicago, IL

$112.50K - $187.50K/yr

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Conduct comprehensive threat emulation exercises, actively simulating cyber-attacks to uncover ... achieve adversary goals. * Strong experience and expertise in phishing techniques, social ...

Adversary Emulation information

What are the key skills and qualifications needed to thrive in Adversary Emulation, and why are they important?

To thrive in Adversary Emulation, you need deep knowledge of cybersecurity, attack methodologies, and penetration testing, often supported by degrees in computer science or related certifications such as OSCP or CISSP. Familiarity with tools like Cobalt Strike, Metasploit, and SIEM platforms is commonly required. Analytical thinking, creativity, and strong communication skills are essential to mimic real-world threats and report findings clearly. These skills are crucial for accurately simulating adversary tactics, identifying security gaps, and helping organizations strengthen their cyber defenses.

What are the typical challenges faced by professionals in Adversary Emulation roles?

Adversary Emulation specialists often encounter the challenge of staying ahead of rapidly evolving attack techniques and threat actor behaviors. They must continuously update their knowledge and adapt their methodologies to realistically mimic current adversaries, which requires ongoing research and collaboration with threat intelligence teams. Additionally, balancing the realism of simulated attacks with organizational risk tolerance and ensuring minimal disruption during assessments can be complex. Working closely with security operations, incident response, and IT teams is essential to maximize the value of each engagement and provide actionable insights for improving defenses.

What is adversary emulation?

Adversary emulation is a cybersecurity practice in which security professionals simulate real-world cyber attackers, or adversaries, to test and improve an organization’s defenses. By mimicking the tactics, techniques, and procedures (TTPs) used by actual threat actors, adversary emulation helps organizations identify vulnerabilities, assess detection and response capabilities, and strengthen their overall security posture. These exercises are often based on threat intelligence and frameworks like MITRE ATT&CK to ensure realistic scenarios.

What is the difference between Adversary Emulation vs Penetration Tester?

AspectAdversary EmulationPenetration Tester
CredentialsCybersecurity certifications, threat intelligence knowledgeSecurity certifications, ethical hacking certifications
Work EnvironmentSimulates real-world adversary tactics in controlled environmentsIdentifies vulnerabilities through controlled testing
Industry UsageUsed in threat simulation, red teaming, and advanced security assessmentsUsed in vulnerability assessments and security audits

Adversary Emulation focuses on mimicking real-world attacker tactics to test defenses, while Penetration Testing identifies vulnerabilities by exploiting weaknesses. Both roles are essential for comprehensive cybersecurity strategies but differ in scope and approach.

What are popular job titles related to Adversary Emulation jobs in Illinois? For Adversary Emulation jobs in Illinois, the most frequently searched job titles are:
What job categories do people searching Adversary Emulation jobs in Illinois look for? The top searched job categories for Adversary Emulation jobs in Illinois are:
What cities in Illinois are hiring for Adversary Emulation jobs? Cities in Illinois with the most Adversary Emulation job openings:
Sr. Info Security Specialist

Sr. Info Security Specialist

Cboe Global Markets

Chicago, IL • Hybrid

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 7 days ago


Job description

Job Description:

Building trusted markets - powered by our people

At Cboe Global Markets, we inspire our people to solve complex challenges together because what we do matters. We providethe financialinfrastructure that powers the global economy. As a leading provider of market infrastructure and tradable products, Cboe delivers cutting-edge trading, clearing and investment solutions to market participants around the world.

We'rebuilding meaningful ways to support professional and personal development while strengthening the trustwe'veearned as a global market leader. Our teams are empowered to share ideas, actively pursuethemand bring on a challenge. As champions of internal mobility and access to opportunity, we encourage our people to "go for it" and equip our managers with the training to coach their teams to the next level. We strive toprovideemployees a safe space to network, share ideas and create opportunities.

To support strong partnership and team connection, this role follows a four day in office work model.

Location Overview

Cboe HQislocated inthe historic Old Post Office district, it's a landmark that blends classic architecture with modern amenities. The building features expansive spaces with high ceilings and large windows, offering an abundance of natural light and panoramic views of the city skyline and the Chicago River.

With its prime location in the heart of downtown, the OPO Building provides easy access to major transportation hubs, including Union Station and multiple CTA lines, making it convenient for commuters. The building is home to a variety of amenities, including restaurants,afitness center, and collaborative workspaces, creating a vibrant and dynamic work environment in one of Chicago's most iconic areas.

Role Overview

TheSecurity Operationsteam ishiringaSenior Red TeamSpecialist.

The Senior Red Team Specialist is a highly skilled individual contributor within the Security Operations organization, responsible for planning and executing advanced offensive security operations that emulate realworld adversaries and rigorously test enterprise security controls. This role is deeply technical and handson, with active engagement across endpoint, identity, cloud, SaaS, network, and application environments.

This position partners closely with Detection Engineering, Threat Hunting, Incident Response, and Purple Team functions to ensure red team engagements drive measurable improvements in detection coverage, response effectiveness, and overall defensive posture. While the role does not own enterprisewide red team strategy, it plays a key role in shaping red team tactics, tooling, and execution standards, and in translating offensive findings into actionable defensive outcomes.

Your responsibilities will be:
  • Executing adversary emulation and red team engagements aligned to realworldthreat actortechniques and objectives

  • Performing handson offensive operations, including initial access, persistence, privilege escalation, lateral movement, and commandandcontrol

  • Developing,maintaining, and safely using custom red team tooling, scripts, and techniques

  • Working closely with detection and threat hunting teams tovalidatedetections and response effectiveness during red and purple team exercises

  • Assistingin the design and execution of assumed breach scenarios and multistage attack chains

  • Identifyingcontrol gaps, detection blind spots, and architectural weaknesses across enterprise environments

  • Supporting incident response teams during complex investigations byprovidingattacker tradecraft insight

  • Producing clear, actionable reporting that translates technical findings into operationally relevant recommendations

  • Contributing to the improvement of red team processes, safety controls, and engagement playbooks

  • Mentoring junior analysts and contributing to skills development across the security operations team

The ideal candidate has
  • 5+ years of experience in red teaming, penetration testing, or offensive security,withdemonstratedhandson impact

  • Bachelor's degree or equivalent practical experience

  • Strong knowledge of attacker tradecraft and TTPs across modern enterprise environments

  • Handson experience attacking and evading controls in endpoint, identity, cloud, and hybrid infrastructures

  • Working understanding of defensive security technologies, such as EDR, SIEM, identity protection, and cloud security controls

  • Experience collaborating in purple team exercises and adapting techniques based on detection feedback

  • Ability to independently plan and execute offensive tasks within a defined engagement scope

  • Strong written and verbal communication skills, including technical documentation and reporting

  • High ethical standards and experienceoperatingwithin defined rules of engagement

You'llreally stand out with:
  • Experience executing threatintelligenceinformed adversary emulation, not just vulnerabilitydriven testing

  • A track recordof helping convert red team findings into improved detections or response playbooks

  • Strong scripting or automation skills (e.g., Python, PowerShell, Bash) to support tooling and operations

  • Familiarity with MITRE ATT&CK for mapping activity and communicating impact

  • Experienceoperatingin regulated or large enterprise environments

  • Demonstrated ability to mentor junior analysts or contribute to internal training materials

  • Curiosity, adaptability, and a continuous improvement mindset

Benefits and Perksof working forCboeGlobal Markets

We value the total wellbeing of our people - including health, financial,personaland social wellness. We believe standard benefits like health insurance and fair pay area givenat any organization. Still, you shouldknowwe offer:

  • Fair and competitive salary and incentive compensation packages with an upside for overachievement
  • Generous paid time off, including vacation, personal days, sickdaysand annual community service days
  • Health, dental and vision benefits, including access to telemedicine and mental health services
  • 2:1 401(k) match, up to 8% matchimmediatelyupon hire
  • Discounted Employee Stock Purchase Plan
  • Tax Savings Accounts for health,dependentand transportation
  • Employee referral bonus program
  • Volunteer opportunities to help you give back to your communities

Some of our associates' favorite benefits andperksinclude:

  • Complimentary lunch,snacksand coffee in anyCboeoffice

  • Paid Tuitionassistanceand education opportunities

  • Generous charitable giving company match

  • Paid parental leave and fertility benefits

  • On-site gyms and discounts to other fitness centers

  • Paid Time Off

More AboutCboeGlobal Markets

We'rereimagining the future of the workplace by focusing on what matters most, our people. Our journey is an inclusive one.We'reinvesting deeply in leadership programs and career development initiatives that ensure everyone has an equal chance to succeed.

We work with purpose, solving problems with ingenuity, collaboration, and a lot of passion.We'rean engaged and excited team connecting markets across borders and embracing growth in all its forms to achieve incredible outcomes.

Learn more about life atCboeonour websiteandLinkedIn.

Equal Employment Opportunity

We'reproud to be an equal opportunity employer do not discriminate against any employee or applicant for employment based on any legally protected characteristic, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, orveteran status. We are committed to fostering a workplace where all individuals are valued and respected.

#LI-CP1


This position is not eligible for visa sponsorship. Candidates must be legally authorized to work in the United States without the need for employer sponsorship now or in the future.

Salary Ranges (applicable for US locations only)

At Cboe, we are committed to providing a competitive, transparent, and marketinformed total rewards program. The anticipated base salary range for this role is $121,550-$157,300, with actual compensation determined by jobrelated factors such as skills, relevant experience, education, internal alignment, and location.

This role may also be eligible for annual incentive compensation and, where applicable, participation in Cboe's long-term equity programs.

Additional information about Cboe's total rewards program, including benefits and other compensation components, can be found here: Total Rewards at CBOE.


Any communication from Cboe regarding this position will only come from a Cboe recruiter who has a @cboe.com email or via LinkedIn Recruiter. Cboe does not use any other third party communication tools for recruiting purposes.