1

Overnight Malware Reverse Engineer Jobs in Chicago, IL

Threat Hunter

Chicago, IL · Hybrid

$97K - $189K/yr

Coordinates escalation for advanced forensics and malware reverse engineering. * Communicates security incidents clearly to business and non-technical stakeholders. May perform additional duties as ...

Threat Hunter

Chicago, IL · On-site

$97K - $189K/yr

Coordinates escalation for advanced forensics and malware reverse engineering. * Communicates security incidents clearly to business and non-technical stakeholders. May perform additional duties as ...

Cyberbit Range deploys real-world attacks using reverse-engineered malware onto a virtual corporate network, allowing users to defend against live attacks using commercial-grade security tools to ...

Overnight Malware Reverse Engineer information

See Chicago, IL salary details

$44.8K

$132.2K

$334.8K

How much do overnight malware reverse engineer jobs pay per year?

As of May 28, 2026, the average yearly pay for overnight malware reverse engineer in Chicago, IL is $132,244.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,100.00 and $133,900.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an Overnight Malware Reverse Engineer, and why are they important?

To thrive as an Overnight Malware Reverse Engineer, you need expertise in computer science, malware analysis, assembly language, and a strong understanding of operating systems, typically supported by a degree in cybersecurity or computer science. Familiarity with tools like IDA Pro, Ghidra, OllyDbg, Wireshark, and relevant certifications such as GIAC Reverse Engineering Malware (GREM) are highly valuable. Strong problem-solving skills, attention to detail, and the ability to work independently are essential soft skills for this role, especially during off-hours. These capabilities are critical for quickly identifying, analyzing, and mitigating malware threats to protect organizational assets around the clock.

What are some unique challenges faced by Overnight Malware Reverse Engineers, and how can they effectively manage them?

Overnight Malware Reverse Engineers often encounter the challenge of rapidly analyzing new and sophisticated threats during non-standard hours, which can impact communication with day-shift teams. To manage this, it's important to maintain detailed documentation of findings and utilize secure collaboration tools for seamless handoffs. Additionally, staying alert and focused during overnight shifts can be demanding, so establishing a consistent routine and leveraging scheduled check-ins with colleagues can help maintain productivity and well-being.

What does an Overnight Malware Reverse Engineer do?

An Overnight Malware Reverse Engineer analyzes and breaks down malicious software during nighttime or overnight shifts to identify its behavior, functionality, and potential impact on systems. They use specialized tools and techniques to dissect malware code, understand how it operates, and develop strategies for detection and removal. This role is crucial for organizations that require 24/7 cybersecurity monitoring and rapid response to threats that may emerge outside of regular business hours. Their findings help inform security teams and improve overall defense mechanisms against cyberattacks.

What is the difference between Overnight Malware Reverse Engineer vs Malware Analyst?

AspectOvernight Malware Reverse EngineerMalware Analyst
Primary FocusReverse engineering malware to understand its structure and behaviorAnalyzing malware to identify threats and develop defenses
Skills & CertificationsReverse engineering, assembly language, debugging tools, malware analysis certificationsThreat detection, incident response, malware analysis certifications
Work EnvironmentSecurity teams, cybersecurity firms, often in shifts or overnightSecurity operations centers, cybersecurity teams, regular hours

Overnight Malware Reverse Engineers focus on dissecting malware to uncover its inner workings, often working in shifts. Malware Analysts primarily identify and respond to threats, with a broader scope of threat detection. Both roles require cybersecurity expertise, but the reverse engineer emphasizes technical malware dissection, while analysts focus on threat assessment and mitigation.

What are the most commonly searched types of Malware Reverse Engineer jobs in Chicago, IL? The most popular types of Malware Reverse Engineer jobs in Chicago, IL are:
What are popular job titles related to Overnight Malware Reverse Engineer jobs in Chicago, IL? For Overnight Malware Reverse Engineer jobs in Chicago, IL, the most frequently searched job titles are:
What job categories do people searching Overnight Malware Reverse Engineer jobs in Chicago, IL look for? The top searched job categories for Overnight Malware Reverse Engineer jobs in Chicago, IL are:
Threat Hunter

Threat Hunter

Cna

Chicago, IL • Hybrid

$97K - $189K/yr

Full-time

Posted 4 days ago


Job description

You have a clear vision of where your career can go. And we have the leadership to help you get there.At CNA, we strive to create a culture in which people know they matter and are part of something important, ensuring the abilities of all employees are used to their fullest potential.

Threat Hunter, Consulting Director is a senior-level individual contributor focused on proactively searching adversarial activity in the network with the goal of discovering threats prior to an adversary completing its mission. This role utilizes advanced skills to perform enterprise forensics including operating system artifact analysis, log analysis, network traffic analysis, and the MITRE ATT&CK framework. This position is responsible for developing innovative and creative detection tactics and techniques that protect client data and corporate assets from diverse threats. The role is a key member of a highly technical team operating in a rapidly changing environment.

JOB DESCRIPTION:

Essential Duties & Responsibilities

Performs a combination of duties in accordance with departmental guidelines:

  • Leads and conducts real-time and historical analysis using the full security suite including Endpoint Protection, SIEM, Firewall, EDR, IDS, Email Gateway, Web Content Filtering, and Identity Management technologies.

  • Conducts incident response triage analysis on suspected hosts todeterminepotential attacks and scope.

  • Conducts threat hunting operations based on the latest threat intelligence.

  • Creates strategies for enterprise-wide hunts based on triage findings and intelligence efforts.

  • Maintains awareness of emerging attack tactics, techniques, and procedures.

  • Collaborates with SOC, Threat Intelligence, Incident Response, and Enterprise Security teams.

  • Identifiesvisibility gaps and recommends improvements.

  • Manages day-to-day SOC monitoring, investigations, response, and intelligence activities.

  • Coordinates escalation for advanced forensics and malware reverse engineering.

  • Communicates security incidents clearly to business and non-technical stakeholders.

May perform additional duties as assigned.

Reporting Relationship

Typically AVP or above

Skills, Knowledge & Abilities

  • In-depth knowledge of SIEM, IDS/IPS, web proxies, DLP, CASB, DNS security, DDoS protection, and firewalls.

  • Advanced experience with forensic tools for OS artifact, memory, and network analysis.

  • Strong understanding of malware, reverse engineering principles, and network protocols.

  • Demonstrated ability to build, execute, and lead enterprise threat hunting programs.

  • Ability to work collaboratively in high-pressure incident response environments.

  • Demonstrated ability to apply artificial intelligence and machine-learning techniques to threat hunting, including use of LLMs, UEBA, and statistical models to surface anomalous behavior, enrich low-signal telemetry, and accelerate hypothesis-driven hunts across large enterprise datasets.

  • Experience evaluating, tuning, and operationalizing AI-enabled security capabilities (e.g., AI-assisted SIEM, EDR/XDR, and detection engineering workflows), with an understanding of model limitations, bias, false-positive risk, and the need for analytically defensible outcomes suitable for executive, legal, and regulatory review.

Education & Experience

  • Bachelor's degree in Computer Scienceor related discipline, or equivalent experience.

  • Typicallya minimum of 10years of experience in cyber monitoring, threat hunting, incident response, forensics, or related disciplines.

#LI-KJ1 #LI-HYBRID

In certain jurisdictions, CNA is legally required to include a reasonable estimate of the compensation for this role. In District of Columbia, California, Colorado, Connecticut, Illinois, Maryland, Massachusetts, New York and Washington, the national base pay range for this job level is $97,000 to $189,000 annually.Salary determinations are based on various factors, including but not limited to, relevant work experience, skills, certifications and location. CNA offers a comprehensive and competitive benefits package to help our employees - and their family members - achieve their physical, financial, emotional and social wellbeing goals. For a detailed look at CNA's benefits, please visitcnabenefits.com.

CNA is committed to providing reasonable accommodations to qualified individuals with disabilities in the recruitment process. To request an accommodation, please contactleaveadministration@cna.com.