GCM Grosvenor

Cybersecurity Engineer

GCM Grosvenor$130K — $200K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Computer Science, Information Technology, or equivalent practical experience.
  • 5+ years of progressive experience in cybersecurity or information security engineering roles.
  • Experience with enterprise security control implementation and engineering.
  • Strong scripting and automation skills in languages like PowerShell or Python.
  • Relevant security certifications such as CISSP, CISM, or AWS Security are a plus.

Responsibilities

  • Design, implement, and enhance security controls across various environments.
  • Lead security-focused projects, managing scoping, planning, and execution.
  • Own and optimize core security tools such as SIEM and vulnerability management.
  • Develop automation for threat detection and incident response workflows.
  • Conduct annual penetration testing and oversee remediation efforts.
  • Collaborate with technology teams to embed secure design principles.
  • Monitor compliance with cybersecurity policies and drive remediation efforts.

Benefits

  • Flexible working arrangement with a hybrid model, requiring in-office presence three days a week.
  • Opportunities for professional development and certification support.
  • A collaborative team culture emphasizing accountability and continuous improvement.
  • Engagement in cutting-edge cybersecurity strategies and technologies.
Full Job Description
SUMMARY

The Cybersecurity Engineer is responsible for the continued evolution, design, and advancement of the firm's cybersecurity program. This role safeguards the confidentiality, integrity, and availability of firm data, systems, and facilities in alignment with organizational policies and regulatory expectations. The Cybersecurity Engineer leads the implementation of security architecture, controls, and technical solutions across the enterprise, while proactively identifying risks and recommending strategic improvements.

This individual operates as a highly self-directed contributor within a nimble global team responsible for cybersecurity and enterprise risk. The role requires independent assessment of emerging threats, evaluation of control effectiveness, prioritization of initiatives, and ownership of security-focused projects from concept through execution. The Cybersecurity Engineer regularly collaborates with infrastructure and the service desk teams to drive measurable improvements in the firm's security posture.

As an onsite/hybrid employee, you are expected to be in the office on Tuesdays, Wednesdays and Thursday.

RESPONSIBILITIES
  • Design, implement, and enhance security controls across endpoint, network, cloud, identity, and application environments.
  • Lead security-focused projects, including scoping, planning, execution, stakeholder communication, and documentation.
  • Own and optimize core security tooling (Endpoint Protection, IDS/IPS, SIEM, vulnerability management, threat intelligence platforms, etc.), ensuring effective configuration and continuous improvement.
  • Develop and implement automation to enhance threat detection, alerting, response workflows, ticket creation, and reporting metrics.
  • Conduct and oversee annual penetration testing, social engineering exercises, and remediation tracking.
  • Partner with cross-functional technology teams to embed secure design principles and hardening standards into infrastructure and cloud platforms.
  • Monitor compliance with cybersecurity policies and regulatory requirements; identify gaps and drive remediation efforts.
  • Serve as a technical escalation point during incident response and contribute to post-incident analysis and control improvements.
  • Identify emerging threats, tools, and technologies and recommend strategic direction for the cybersecurity program.


EDUCATION, SKILLS AND EXPERIENCE REQUIREMENTS
  • Bachelor's Degree in Computer Science, Information Technology, or equivalent practical experience.
  • 5+ years of progressive experience in cybersecurity or information security engineering roles.
  • Demonstrated experience implementing and engineering security controls in enterprise environments.
  • Experience leading or independently managing technical security projects.
  • Strong familiarity with CIS Framework and system hardening standards.
  • Hands-on experience securing and monitoring cloud platforms (AWS, Azure, etc.).
  • Deep understanding of common security controls including DLP, MFA, encryption, intrusion detection, and mobile device/application management.
  • Strong scripting and automation skills (PowerShell, Python, or similar).
  • Experience designing and maintaining centralized logging and SIEM solutions.
  • Ability to independently assess risk, define problems, and implement practical, scalable solutions.
  • Strong communication skills with the ability to influence stakeholders and represent the security function effectively.
  • Experience in financial services or investment management preferred.
  • Relevant security certifications (CISSP, CISM, GIAC, AWS Security, etc.) are a plus.


AT A GLANCE - GCM's CYBERSECURITY & RISK TEAM
  • Oversees the firm's Cybersecurity, Risk Management, Business Continuity, Change Management, and Disaster Recovery programs.
  • Collaborates with IT and business teams to embed security best practices across the enterprise.
  • Participates in client meetings, regulatory examinations, and security due diligence processes.
  • Utilizes Agile principles to prioritize, plan, and execute cybersecurity initiatives.
  • Maintains a strong team culture centered on accountability, ownership, and continuous improvement.


Actual base salary may vary based on factors such as individual's experience, skills, and qualifications for the role. Employees may be eligible for a discretionary bonus based on factors such as individual, team, and company performance as well as a comprehensive benefits package.

CHICAGO ANNUAL PAY RANGE

$130,000-$200,000 USD

About GCM Grosvenor

GCM Grosvenor is a global investment and advisory firm headquartered in Chicago, Illinois. The firm was founded in 1971 and has since grown to become one of the world's largest alternative asset managers, with over $57 billion in assets under management as of 2021. GCM Grosvenor offers a wide range of investment strategies across private equity, infrastructure, real estate, credit, and hedge funds. The firm serves a diverse client base, including institutional investors, high-net-worth individuals, and family offices.
Learn more about GCM Grosvenor
Size
1,000 employees
Industry
NASDAQ

Similar Jobs

More Jobs at GCM Grosvenor

More Information Technology Jobs

Find similar Cybersecurity Engineer jobs: