Talent.com
Security Engineer
Security EngineerSupernova Technology • Chicago, IL, US
Security Engineer

Security Engineer

Supernova Technology • Chicago, IL, US
job_description.job_card.1_day_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Job Description

Job Description

About Us

Founded in 2014, we offer the industry’s first and only cloud-based, fully-customizable, end-to-end software solution to automate securities-based lending from origination through the life of the loan. By combining thought leadership in suitability and risk management with industry-leading education and the latest technology, Supernova enables advisors to deliver holistic, goals-based advice and to help their clients achieve financial wellness. We partner with the industry’s largest banks, most prominent insurance companies and leading online brokerages to democratize access to securities-based lending and better the entire financial ecosystem.

Why Join Supernova?

At Supernova Technology, we believe that the best results come from a team that is passionate, driven, and supported in all aspects of their professional lives. Here, you’ll work alongside talented and innovative individuals who are committed to driving the future of securities-based lending technology. We foster a culture of collaboration, continuous learning, and growth, where each person’s contributions make a real impact.

Job Overview

We are seeking a highly motivated and detail-oriented Security Engineer to help secure our securities-backed lending SaaS platform. The successful candidate will focus primarily on application security, secure SDLC, and application vulnerability management, while also assisting with the execution and implementation of broader information security initiatives. You’ll partner with engineering, SRE / DevOps, and business teams to embed security into our build and delivery processes, support risk reduction across cloud and endpoint surfaces, and drive measurable remediation outcomes in a regulated financial-services environment.

RESPONSIBILITIES

  • Perform hands-on web / API penetration tests, validate scanner findings, and provide clear PoCs, impact statements, and prioritized remediation aligned with OWASP.
  • Integrate and tune SAST, DAST, SCA, container, and secret-detection tools in CI / CD; define pass / fail gates and PR checklists.
  • Conduct lightweight threat modeling and security design reviews for new features such as authentication, session management, and secrets handling.
  • Manage the full application vulnerability lifecycle (discover → prioritize → fix → retest → close) with SLAs and metrics.
  • Assist in hardening AWS and ECS / Docker workloads (IAM roles, network segmentation, image policies, logging / monitoring) and support patch hygiene across cloud, container, and endpoints.
  • Participate in incident response, including exploit reproduction, log analysis, impact assessment, and lessons learned.
  • Provide evidence for audits (ISO 27001, SOC 2, NIST SSDF), maintain policies and developer guidance, and support vendor / security evaluations.
  • Translate findings into developer-ready tickets, publish secure-coding guidance, and partner with engineering to streamline secure delivery.
  • Prototype automation, explore AI / LLM-assisted workflows to improve triage and code review, and share improvements across teams.
  • Contribute to organization-wide cybersecurity training and awareness efforts.

QUALIFICATIONS

  • Bachelor's degree in security engineering, information assurance, or related field.
  • 2–3 years of experience in security or software engineering (internships, labs, or open-source count), preferably in regulated industries.
  • Strong knowledge of web / API security issues (auth, session management, injections, SSRF, CSRF, access control) and common cloud / web misconfigurations.
  • Experience with SDLC security tools (SAST / DAST / SCA / secret detection / container scanning), CI / CD workflows, and Git.
  • Scripting or coding skills (Python or JavaScript / TypeScript) and ability to read backend code.
  • Familiarity with AWS security basics (IAM least privilege, KMS, logging / monitoring, security groups) and Docker / ECS runtime considerations.
  • Clear communication skills with the ability to translate risk into actionable remediation.
  • Experience using AI / LLM-assisted tools for triage, documentation, or code review preferred.
  • Exposure to WAF / CDN tuning, API protection, and risk-based remediation SLAs / metrics preferred.
  • Familiarity with frameworks like OWASP ASVS / SAMM, NIST SSDF, ISO 27001, SOC 2, PCI DSS preferred.
  • Relevant security certifications preferred.
  • Our Employee Benefits

    At Supernova Technology, we provide a robust benefits package to support the health and well-being of our employees. Our offerings include :

    Medical, Dental, and Vision Insurance :   Multiple plans with coverage for employees and dependents.

    HSA and FSA Accounts :   Tax-advantaged accounts for health and dependent care expenses.

    Life and Disability Insurance :  Employer-paid basic coverage with options for additional voluntary coverage.

    Compensation :  $95,000 - $130,000

    Retirement Savings :  401(k) plan with employer contributions.

    Employee Assistance Program (EAP) :   Confidential support services, including free therapy sessions.

    Paid Time Off :   Flexible PTO policies.

    Additional Perks :  Commuter benefits, pet insurance, continuing education assistance, and more.

    Note : Actual salary at the time of hire may vary and may be above or below the range based on various factors, including but not limited to, the candidate's relevant qualifications, skills and experience, and the location where this position may be filled.

    Our Core Values

    Our core values drive everything we do. At Supernova, we...

    Form, execute, and communicate new ideas that add value to our employees and customers

    Strive through obstacles and failures

    Follow-through on promises or commitments to others, accept responsibility, and answer for actions & decisions

    Listen to, understand, and support our employees and customers

    Act with speed, positive attitude, and flexibility

    Exceed expectations and surpass ourselves every day; we embrace a sense of pride and never stop growing

    Join us and make an impact while growing your career at Supernova.

    We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

    serp_jobs.job_alerts.create_a_job

    Security Engineer • Chicago, IL, US

    Job_description.internal_linking.related_jobs
    Senior Product Security Offensive Engineer

    Senior Product Security Offensive Engineer

    iManage • Chicago, IL, US
    serp_jobs.job_card.full_time
    We offer a flexible working policy that supports a healthy balance between personal and professional well-being.This role requires in-office presence on Tuesdays & Thursdays to collaborate, con...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Engineer (Remote)

    Senior Security Engineer (Remote)

    AbbVie • North Chicago, IL, US
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkab...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Information Security Engineer 2

    Senior Information Security Engineer 2

    Frontline Education • Naperville, IL, US
    serp_jobs.job_card.full_time
    Senior Information Security Engineer 2 .Remote or Hybrid to Wayne, PA; Naperville, IL.We are seeking a Senior Information Security Engineer 2 for an exciting opportunity to be part of a small secur...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Security Engineer

    Security Engineer

    Robert Half • Niles, IL, US
    serp_jobs.job_card.full_time
    We are looking for a skilled Security Engineer to join our team on a long-term contract basis in Niles, IL.In this role, you will collaborate closely with business stakeholders and IT teams to ensu...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Sr. Security Engineer - Hybrid Opportunity (Based in West Des Moines, IA)

    Sr. Security Engineer - Hybrid Opportunity (Based in West Des Moines, IA)

    The Mutual Group • Chicago, IL, US
    serp_jobs.job_card.full_time
    We’re looking for a seasoned Senior Security Engineer with 5–10 years of hands-on experience in cybersecurity, with a strong focus on AWS cloud environments. This role demands a deep com...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Staff Security Engineer - United States

    Staff Security Engineer - United States

    JumpCloud • Chicago, IL, US
    serp_jobs.job_card.full_time
    All roles at JumpCloud® are Remote unless otherwise specified in the Job Description.JumpCloud® delivers a unified open directory platform that makes it easy to securely manage identities, ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Offensive Security Engineer, Web 3

    Offensive Security Engineer, Web 3

    Care Dynamics, LLC • Chicago, IL, US
    serp_jobs.job_card.full_time
    Offensive Security Engineer, Web3.Full-time • Remote (US).serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Principal Engineer

    Principal Engineer

    Akkodis • Round Lake, IL, United States
    serp_jobs.job_card.temporary
    The rate may be negotiable based on experience, education, geographic location, and other factors.You will lead the development of creative solutions to challenging problems associated with the des...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Enterprise Security Engineer

    Senior Enterprise Security Engineer

    Flexport • Chicago, IL, US
    serp_jobs.job_card.full_time
    At Flexport, we believe global trade can move the human race forward.That's why it's our mission to make global commerce so easy there will be more of it. We're shaping the future of a $...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Information Security Engineer II

    Information Security Engineer II

    MetroSys • Chicago, IL, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    About the Role MetroSys is seeking a skilled Information Security Engineer II to support and lead efforts around vulnerability management within a dynamic, enterprise-scale environment.This individ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Security Engineer (Remote)

    Security Engineer (Remote)

    AbbVie • North Chicago, IL, US
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkab...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Information Security Engineer

    Information Security Engineer

    Vail Systems Inc. • Mundelein, IL, US
    serp_jobs.job_card.full_time
    Interested in enhancing security in a dynamic environment while collaborating with experts and continuously learning about emerging threats and technologies?. The Information Security Engineer will ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Sales Engineer, Central (AIM Security)

    Sales Engineer, Central (AIM Security)

    Cato Networks • Chicago, IL, US
    serp_jobs.job_card.full_time
    Welcome to the future of cloud networking and security!.Cato Networks is the first company to converge enterprise networking and security into one centralized and global service that is delivered b...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Information Security Engineer / Analyst

    Information Security Engineer / Analyst

    KonnectIT • Chicago, Illinois, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Information Security Engineer / Analyst.The ideal candidate will bring expertise in.IPS / IDS, vulnerability management, incident response, and risk assessment. This role is critical to ensuring the c...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Security Engineer

    Security Engineer

    Paylocity • Schaumburg, IL, US
    serp_jobs.job_card.full_time
    Paylocity is an award-winning provider of cloud-based HR and payroll software solutions, offering the most complete platform for the modern workforce. The company has become one of the fastest-growi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Security Engineer (Chicago)

    Senior Security Engineer (Chicago)

    Solution Partners, Inc. • Chicago, IL, US
    serp_jobs.job_card.part_time
    We're seeking a seasoned Senior Security Engineer to help lead our security architecture and engineering efforts.This role will drive strategic and operational leadership in security architecture, ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Security Engineer

    Lead Security Engineer

    Morningstar, Inc. • Chicago, IL, US
    serp_jobs.job_card.full_time
    We are seeking a Lead Security Engineer to help drive our security detection and response efforts.In this role, you will be responsible for designing, implementing, and improving security monitorin...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days
    Senior Security Engineer

    Senior Security Engineer

    Solution Partners, Inc. • Chicago, IL, United States
    serp_jobs.job_card.full_time
    We're seeking a seasoned Senior Security Engineer to help lead our security architecture and engineering efforts.This role will drive strategic and operational leadership in security architecture, ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted