GCM Grosvenor

alternative asset management

CybersecurityEngineer

$130–200k Chicago, Illinois, United States
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid candidates.

The Brief

“Cybersecurity Engineer at GCM Grosvenor. Skills: Cybersecurity program advancement, Security architecture and controls implementation, Core security tooling optimization, Automation for security workflows, Risk assessment and mitigation. Design, implement, and enhance security controls across endpoint, network, cloud, identity, and SDLC. Lead security-focused projects”

What You'll Achieve.

safeguards the confidentiality, integrity, and availability of firm data, systems, and facilities; drive measurable improvements in the firm’s security posture; Monitor compliance with cybersecurity policies and regulatory identify gaps and drive remediation efforts

Industry & Context.

alternative asset management
Problems you'll solve

independent assessment of emerging threats; evaluation of control effectiveness; prioritization of initiatives; ownership of security-focused projects from concept through execution; Ability to independently assess risk, define problems, and implement practical, scalable solutions

Eligibility Requirements

As an onsite/hybrid employee, you are expected to be in the office on Tuesdays, Wednesdays and Thursday.

What They're Looking For.

Must Have

5+ years of progressive experience in cybersecurity or information security engineering roles, Demonstrated experience implementing and engineering security controls in enterprise environments, Experience leading or independently managing technical security projects, Hands-on experience securing and monitoring cloud platforms (AWS, Azure, etc.), Deep understanding of common security controls including DLP, MFA, encryption, intrusion detection, and mobile device/application management, scripting and automation skills (PowerShell, Python, or similar), Experience designing and maintaining centralized logging and SIEM solutions, Ability to independently assess risk, define problems, and implement practical, scalable solutions

Nice to Have

software engineering experience preferred, Experience in financial services or investment management preferred, Relevant security certifications (CISSP, CISM, GIAC, AWS Security, etc.) are a plus

What You'll Do.

and enhance security controls across endpoint

Lead security-focused projects

Own and optimize core security tooling

Develop and implement automation to enhance threat detection

and reporting metrics

Conduct and oversee annual penetration testing

social engineering exercises

and remediation tracking

Partner with cross-functional technology teams to embed secure design principles and hardening standards

Monitor compliance with cybersecurity policies and regulatory identify gaps and drive remediation efforts

Serve as a technical escalation point during incident response

Contribute to post-incident analysis and control improvements

Identify emerging threats

and technologies and recommend strategic direction

How You'll Work.

Team & Collaboration

Collaborates with infrastructure, software engineering, and the service desk teams; Partner with cross-functional technology teams; Collaborates with IT and business teams

Communication Scope

communication skills with the ability to influence stakeholders and represent the security function effectively; stakeholder communication

Process & Methodology

scoping, planning, execution, stakeholder communication, documentation, ownership of security-focused projects from concept through execution, prioritization of initiatives, Utilizes Agile principles to prioritize, plan, and execute cybersecurity initiatives

Full Job Description

SUMMARY The Cybersecurity Engineer joins an existing security operations team of 2 that are responsible for the continued evolution, design, and advancement of the firm’s cybersecurity program. This role safeguards the confidentiality, integrity, and availability of firm data, systems, and facilities in alignment with organizational policies and regulatory expectations. The security operations team leads the implementation of security architecture, controls, and technical solutions across the enterprise, while proactively identifying risks and recommending strategic improvements. This individual operates as a highly self-directed contributor within a nimble global team responsible for cybersecurity and enterprise risk. The role requires independent assessment of emerging threats, evaluation of control effectiveness, prioritization of initiatives, and ownership of security-focused projects from concept through execution. The Cybersecurity Engineer regularly collaborates with infrastructure, software engineering, and the service desk teams to drive measurable improvements in the firm’s security posture. As an onsite/hybrid employee, you are expected to be in the office on Tuesdays, Wednesdays and Thursday. RESPONSIBILITIES Design, implement, and enhance security controls across endpoint, network, cloud, identity, and SDLC. Lead security-focused projects, including scoping, planning, execution, stakeholder communication, and documentation. Own and optimize core security tooling (Application security, AI security, endpoint protection, IDS/IPS, SIEM, vulnerability management, threat intelligence platforms, etc.), ensuring effective configuration and continuous improvement. Develop and implement automation to enhance threat detection, alerting, response workflows, ticket creation, and reporting metrics. Conduct and oversee annual penetration testing, social engineering exercises, and remediation tracking. Partner with cross-functional technology teams to embed secure desi

Free ATS check

Applying for this Cybersecurity Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Greenhouse

  • Create a Greenhouse profile before applying — it saves time across multiple applications.
  • Upload your resume as a PDF; the parser handles it better than Word.
  • Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
  • Enable email notifications to track application status in real time.

ANONYMOUS · UNFILTERED

What do employees actually say about GCM Grosvenor?

Real rants from real employees. Read before you apply.

Read Company Rants →