Cybersecurity Operations

2 weeks ago


London, United Kingdom JPMorgan Chase & Co. Full time

This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board.

Job Description

You will be one of the team's subject matter experts on SIEM, you will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC experience who enjoys researching TTPs and the threat landscape and translating that research data into high quality detections. Your role involves actively seeking effective and comprehensive detection strategy and capabilities, ensuring detections are thoroughly tested, alerts are relevant, of value and playbooks are available to and understood by cybersecurity operations teams. Additionally, you'll work to help mature the Attack Analysis team in how we secure, monitor and respond to incidents on-prem as well as both private and public cloud environments. You'll work with internal security engineering teams to ensure that Attack Analysis requirements are represented in the architecture, design and implementation of various environments. You'll help design, write and automate detection and incident response processes and tools.

Working in cybersecurity takes passion for technology, speed, a desire to learn, and vigilance in order to keep every asset safe. You'll be on the front lines of innovation, working with a highly motivated team focused on analyzing, designing, developing and delivering solutions built to stop adversaries and strengthen our operations. Your research and work will ensure stability, capacity and resiliency of our products. Working with your internal team, as well as technologists and innovators across our global network, your ability to identify threats, provide intelligent analysis and positive actions will stop crimes and strengthen our data.

As a member of the Attack Analysis team, you will fit into a Global team providing 24/7 monitoring and Incident Response, acting as the frontline for attacks against the firms' infrastructure. As a Detection Engineer, your role will include advanced analysis, threat hunting, evaluation of new security technology as well as ensuring larger technology projects at the company are ready to be integrated into the Attack Analysis team and monitoring function. There is also an emphasis on coaching and mentoring in this role; you'll work to bring up the technical expertise of the entire team around you. This could include running training sessions for the team in range or virtual environments, leading hunting exercises, serving as a technical escalation point and coaching the team through adopting monitoring responsibility.

Key areas of focus include: Detection Engineering

Primary Qualifications

  • Min. 6 years of working experience with at least 4 years of hands-on experience in Security Operations and Incident Response or Computer Network Operations (CNO) or Computer Network Defense (CND).
  • Bachelor's degree in Computer Science, Information Security, Digital Forensics or equivalent qualification.
  • Excellent written and verbal communication skills to describe security event details and technical analysis with audiences within the cybersecurity organization and other technology groups.
  • Strong collaboration and stakeholder engagement skills.
  • Experience with the creation and tuning of alerting rules from a SIEM and other devices in response to changing threats.
  • Ability to research TTPs and develop high fidelity detections in various tools/languages including but not limited to: Splunk, CrowdStrike, Azure Sentinel, Suricata, Snort.
  • Ability to use data science and analytical skills to identify anomalies over large datasets.
  • Experience with log analysis and correlation of large datasets from multiple data sources to identify and investigate attack patterns.
  • Experience with threat hunting on a large, enterprise network both as an individual and leading hunting exercises with other team members.
  • Ability to perform packet-level analysis and strong understanding of common network protocols and the OSI model.
  • Experience using scripting languages (Python, Powershell, Bash, etc.) to parse machine-generated data, interact with REST APIs and automate repetitive tasks.

Additional Technical Qualifications

  • Hands-on experience with at least 1 cloud platform (AWS, Azure, GCP) including infrastructure, security and cloud APIs.
  • Experience with regular expressions and their applications.
  • Experience with Digital Forensics & Incident Response processes including memory & file system analysis methodologies.
  • Experience with analyzing Endpoint Detection & Response (EDR) telemetry and excellent knowledge of operating system internals (Windows, Linux, macOS).
  • Knowledge with command line tools across Windows and Linux.
  • Familiarity with malware analysis (both static and dynamic), binary triage, and file format analysis.

When you work at JPMorgan Chase & Co., you're not just working at a global financial institution. You're an integral part of one of the world's biggest tech companies. In 14 technology hubs worldwide, our team of 40,000+ technologists design, build and deploy everything from enterprise technology initiatives to big data and mobile solutions, as well as innovations in electronic payments, cybersecurity, machine learning, and cloud development. Our $9.5B+ annual investment in technology enables us to hire people to create innovative solutions that will not only transform the financial services industry, but also change the world.

At JPMorgan Chase & Co. we value the unique skills of every employee, and we're building a technology organization that thrives on diversity. We encourage professional growth and career development, and offer competitive benefits and compensation. If you're looking to build your career as part of a global technology team tackling big challenges that impact the lives of people and companies all around the world, we want to meet you.

It's time to take your career to the next level, and we can help. Apply today.

About Us

J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world's most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as any mental health or physical disability needs.

About the Team

The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm's cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group's number one priority is to enable the business by keeping the firm safe, stable and resilient.

High Risk Roles (HRR) are sensitive roles within the technology organization that require high assurance of the integrity of staff by virtue of 1) sensitive cybersecurity and technology functions they perform within systems or 2) information they receive regarding sensitive cybersecurity or technology matters. Users in these roles are subject to enhanced pre-hire screening which includes both criminal and credit background checks (as allowed by law). The enhanced screening will need to be successfully completed prior to commencing employment or assignment.

#J-18808-Ljbffr

  • London, United Kingdom Satomergroup Full time

    Location: London, United Kingdom (remote) About the employer: our client is an innovative cybersecurity consulting firm headquartered in the city of London. They are eager to welcome a Junior Cybersecurity Analyst to our fully remote team, providing an opportunity for entry-level professionals to kickstart their careers in the ever-evolving field of...

  • Cybersecurity Analyst

    2 weeks ago


    London, United Kingdom Latitude Full time

    We are seeking a Cybersecurity Analyst who will be responsible for supporting computer network defense, to include auditing the network for vulnerabilities, identifying relevant threats, recommending corrective actions, developing solutions for security issues, and investigating security incidents and breaches. Responsibilities Conducts network monitoring...

  • Principal Cybersecurity Architect

    Found in: Talent UK C2 - 1 week ago


    London, United Kingdom FactSet Full time

    Responsibilities Engage with business partners, customers, and other external stakeholders as a security SME of communicating FactSet's overall security posture and maintaining stakeholder trust. Work with business stakeholders to ensure high-value assets are identified, tracked, and prioritized in the application of cybersecurity programs and...

  • Head of Cybersecurity

    2 weeks ago


    London, United Kingdom NDK Consulting.co.uk Ltd Full time

    As the Head of Cybersecurity, you'll be leading the charge to ensure our digital assets and operations are locked down tight. With a focus on managing our client’s Cybersecurity team and setting up robust protocols, you'll play a crucial role in safeguarding our organization against cyber threats. If you're ready to take on a pivotal role in...


  • London, United Kingdom McDermott International, Ltd Full time

    Job Description Company Overview: People power our future. That is why advancing a dynamic, inclusive environment, where everyone grows and thrives is critically important to us. Our ingenuity fuels daily life. Together, we’ve forged some of the most trusted partnerships across the energy value chain to make what was once just an idea a reality: laying...

  • Associate Director, Cybersecurity Services

    Found in: Talent UK C2 - 1 week ago


    London, United Kingdom Fortrea Full time

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...

  • ICT Cybersecurity Manager

    Found in: Jooble UK C2 - 2 weeks ago


    London, United Kingdom ECW Search Full time

    IT Manager - High Growth Automotive Business London ~£Company Bonus Scheme ~ Private Health Care ~ Pension ~25 days holiday plus bank holidays About the business Our client is a leading automotive business dedicated to delivering high-quality vehicles and services to customers worldwide. They pride themselves on innovation, quality, and...


  • London, United Kingdom ECW Search Full time

    IT Manager - High Growth Automotive Business London ~£Company Bonus Scheme ~ Private Health Care ~ Pension ~25 days holiday plus bank holidays About the business Our client is a leading automotive business dedicated to delivering high-quality vehicles and services to customers worldwide. They pride themselves on innovation, quality, and...

  • Cybersecurity Analyst

    2 weeks ago


    London, United Kingdom Latitude Full time

    Cybersecurity Analyst (Active Public Trust Required) Latitude Latitude Inc is an organization providing staffing solutions and government services for companies and public sector. View company page Position Overview: As a Cybersecurity Analyst you will play a key role in monitoring, analyzing, and responding to cybersecurity threats and incidents. You...


  • London, United Kingdom CMA CGM Full time

    CEVA Logistics provides global supply chain solutions to connect people, products and providers all around the world. Present in 170 countries and with more than 110,000 employees spread over 1,300 sites, we are well on our way to achieving our vision: to be a Top 5 global 3PL. We believe that our employees are the key to our success. We want to engage and...


  • London, United Kingdom Fortrea Full time

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...

  • Associate Director, Cybersecurity Services

    Found in: beBee jobs GB - 1 week ago


    London, Greater London, United Kingdom Fortrea Full time

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...

  • Associate Director, Cybersecurity Services

    Found in: beBee jobs GB - 17 hours ago


    London, Greater London, United Kingdom Fortrea Full time

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...

  • Software Engineer III

    Found in: Talent UK C2 - 1 week ago


    London, United Kingdom JPMorgan Chase & Co. Full time

    As a Security Engineer III at JPMorgan Chase within Cybersecurity and Technology Controls, you serve as a seasoned member of an engineering team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. The solutions you build...


  • London, United Kingdom Wavestone Full time

    Cybersecurity Management Consultant - Senior Consultant / Manager Discover Wavestone : we are a new consulting firm providing customized solutions designed to steer our clients in making their most strategic decisions. Wavestone is a leading global transformation consulting firm known for navigating critical challenges and driving sustainable growth. We...


  • London, United Kingdom Fortrea Full time

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...

  • Lead Security Engineer

    Found in: Talent UK C2 - 1 week ago


    London, United Kingdom JPMorgan Chase & Co. Full time

    As a Lead Security Engineer at JPMorgan Chase within Cybersecurity and Technology Controls, you serve as a seasoned member and leader of an engineering team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. The solutions...

  • Cybersecurity Perimeter Response Team Analyst

    Found in: Talent UK C2 - 1 week ago


    London, United Kingdom JPMorgan Chase & Co. Full time

    Job Responsibilities You will follow best practices like threat recognition, pattern analysis, and surveillance detection to set up high-quality and highly efficient processes to ensure internal security. Also, you will work directly with all Line of Business App Teams, Subject matter experts, Production Management Teams, Product Owners, Senior...

  • Associate, Cybersecurity

    Found in: Talent UK C2 - 1 week ago


    London, United Kingdom Brunswick Group Full time

    OpportunityAssociates advise clients and drive execution on accounts, focusing on delivery of workstreams and proactive development of ideas. They nurture a wide internal network across offices and specialisms to share, develop and deliver the best examples of work for internal and external use; as well as broadening their external network.Associates...


  • London, United Kingdom Brunswick Group Full time

    Opportunity Associates advise clients and drive execution on accounts, focusing on delivery of workstreams and proactive development of ideas. They nurture a wide internal network across offices and specialisms to share, develop and deliver the best examples of work for internal and external use; as well as broadening their external network. Associates...