Senior Cyber Detection Engineer – Cloud Technical Lead
4 weeks ago
You will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC and cloud experience who enjoys researching TTPs and the threat landscape and translating that research data into high quality detections. Your role involves actively seeking effective and comprehensive detection strategy and capabilities, ensuring detections are thoroughly tested, alerts are relevant, of value and playbooks are available to and understood by cybersecurity operations teams.
As one of the team’s specialists on cloud technologies, you will work to mature the Attack Analysis team in how we secure, monitor and respond to incidents in both private and public cloud environments. You will work with internal security engineering and cloud engineering teams to ensure that Attack Analysis requirements are represented in the architecture, design and implementation of cloud environments. You'll help design, write and automate detection and incident response processes and tools for public and private cloud environments.
Working in cybersecurity takes passion for technology, speed, a desire to learn, and vigilance in order to keep every asset safe. You'll be on the front lines of innovation, working with a highly motivated team focused on analyzing, designing, developing and delivering solutions built to stop adversaries and strengthen our operations. Your research and work will ensure stability, capacity and resiliency of our products. Working with your internal team, as well as technologists and innovators across our global network, your ability to identify threats, provide intelligent analysis and positive actions will stop crimes and strengthen our data.
As a member of the Attack Analysis team, you will fit into a Global team providing 24/7 monitoring and Incident Response, acting as the frontline for attacks against the firms' infrastructure. As a Detection Engineer, your role will include advanced analysis, threat hunting, evaluation of new security technology as well as ensuring larger technology projects at the company are ready to be integrated into the Attack Analysis team and monitoring function. There is also an emphasis on coaching and mentoring in this role; you'll work to bring up the technical expertise of the entire team around you. This could include running training sessions for the team in range or virtual environments, leading hunting exercises, serving as a technical escalation point and coaching the team through adopting monitoring responsibility.
Key areas of focus include: Public/Private Cloud Engineering and Incident Response, Detection Engineering, Threat Modelling. Hands-on experience with at least 1 cloud platform (AWS, Azure, GCP) is required.
Primary Qualifications
Min. 6 years of working experience with at least 4 years of hands-on experience in Security Operations and Incident Response or Computer Network Operations (CNO) or Computer Network Defense (CND). Hands-on experience with at least 1 cloud platform (AWS, Azure, GCP) including infrastructure, security and cloud APIs. Bachelor’s degree in Computer Science, Information Security, Digital Forensics or equivalent qualification. Excellent written and verbal communication skills to describe security event details and technical analysis with audiences within the cybersecurity organization and other technology groups. Strong collaboration and stakeholder engagement skills. Experience with the creation and tuning of alerting rules from a SIEM and other devices in response to changing threats. Ability to research TTPs and develop high fidelity detections in various tools/languages including but not limited to: Splunk, CrowdStrike, Azure Sentinel, Suricata, Snort. Ability to use data science and analytical skills to identify anomalies over large datasets. Experience with log analysis and correlation of large datasets from multiple data sources to identify and investigate attack patterns. Experience with threat hunting on a large, enterprise network both as an individual and leading hunting exercises with other team members. Ability to perform packet-level analysis and strong understanding of common network protocols and the OSI model. Experience using scripting languages (Python, Powershell, Bash, to parse machine-generated data, interact with REST APIs and automate repetitive tasks.Additional Technical Qualifications
Experience with regular expressions and their applications. Experience with Digital Forensics & Incident Response processes including memory & file system analysis methodologies. Experience with analyzing Endpoint Detection & Response (EDR) telemetry and excellent knowledge of operating system internals (Windows, Linux, macOS). Knowledge with command line tools across Windows and Linux. Familiarity with malware analysis (both static and dynamic), binary triage, and file format analysis.-
Senior Cyber Detection Engineer
5 days ago
London, United Kingdom JPMorgan Chase & Co. Full timeSenior Cyber Detection Engineer – Cloud Technical Lead You will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC and cloud experience who...
-
Senior Cyber Detection Engineer
2 weeks ago
London, United Kingdom JPMorgan Chase & Co. Full timeSenior Cyber Detection Engineer – Cloud Technical Lead You will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC and cloud experience...
-
Senior Cyber Detection Engineer
2 weeks ago
London, United Kingdom JPMorgan Chase & Co. Full timeSenior Cyber Detection Engineer – Cloud Technical Lead You will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC and cloud experience who...
-
Senior Cyber Detection Engineer
5 days ago
London, United Kingdom JPMorgan Chase & Co. Full timeYou will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC and cloud experience who enjoys researching TTPs and the threat landscape and...
-
Senior Cyber Detection Engineer
3 weeks ago
London, United Kingdom JPMorgan Chase & Co. Full timeThis job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board. Job Description You will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal...
-
Sr. Sales Systems Engineer
3 weeks ago
London, United Kingdom Stellar Cyber Full timeStellar Cyber is a fast-growing Cybersecurity company focused on delivering holistic cyberattack protection to organizations while significantly reducing total costs of ownership with its innovative Open XDR (eXtended Detection and Response) platform based on advanced ML and security technologies. Stellar Cyber has been recognized by Gartner as one of the...
-
Sr. Sales Systems Engineer
2 weeks ago
London, United Kingdom Stellar Cyber Inc. Full timeStellar Cyber is a fast-growing Cybersecurity company focused on delivering holistic cyberattack protection to organizations while significantly reducing total costs of ownership with its innovative Open XDR (eXtended Detection and Response) platform based on advanced ML and security technologies. Stellar Cyber has been recognized by Gartner as one of...
-
Cyber Defence Lead Detection Engineer
4 weeks ago
London, United Kingdom Live Nation (Music) UK Limited Full timeDescription A Live Nation Entertainment, our goal is to maintain the trust and confidence of our fans, artists, employees and partners. Combined with maintaining the highest level of data security, our handling of information is designed to put the individual in control, ensuring that we handle their information in a way that best serves them and...
-
Lead Cloud Sec Analyst Gcp
6 days ago
London, United Kingdom Oscar Technology Full timeMy Client, A Financial Services organisation is looking for a Lead Cloud Security Analyst (GCP) for an initial 12 month contract The role is INSIDE and paying £700P/D Inside of IR35 This is a hybrid working role with travel into the offices in London 2 days a week Lead Cloud Security Analysts report into the Cloud Security Manager or Operations Manager...
-
Senior Cloud Security Engineer
6 days ago
London, United Kingdom Moralis Full timeSenior Cloud Security Engineer Read all the information about this opportunity carefully, then use the application button below to send your CV and application.What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security...
-
Senior Cloud Security Engineer
1 day ago
London, United Kingdom Moralis Full timeJob Description Senior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work...
-
Senior Cloud Security Engineer
7 days ago
London, United Kingdom Moralis Full timeSenior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work closely with the Cloud...
-
Senior Cloud Security Engineer
6 days ago
London, United Kingdom Moralis Full timeJob DescriptionSenior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work closely with...
-
Cyber Security Specialist
4 weeks ago
London, United Kingdom GCS Full timeThe Cyber Security unit is accountable and responsible for safeguarding our company's critical infrastructure, intellectual property, and customer data against evolving cyber threats, ensuring no interruption to operations. We take a proactive approach to building, deploying, and operating our Cyber capabilities to fortify our defenses, employing innovative...
-
Senior Cloud Security Engineer
7 days ago
Greater London, United Kingdom Moralis Full timeSenior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work closely with the Cloud...
-
Senior Cloud Security Engineer
7 days ago
Greater London, United Kingdom Moralis Full timeSenior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work closely with the...
-
Senior Cloud Security Engineer
7 days ago
Greater London, United Kingdom Moralis Full timeSenior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work closely with the Cloud...
-
Senior Cloud Security Engineer
7 days ago
Greater London, United Kingdom Moralis Full timeSenior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work closely with the Cloud...
-
Senior Cloud Security Engineer
2 hours ago
Greater London, United Kingdom Moralis Full timeSenior Cloud Security Engineer Read all the information about this opportunity carefully, then use the application button below to send your CV and application.What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security...
-
Senior Cloud Security Engineer
7 days ago
Greater London, United Kingdom Moralis Full timeSenior Cloud Security Engineer What you’ll be working on: Configuring cloud security applications and security policies. Tuning alerts with the L3 Ops teams to ensure the right alerts are being alerted. Roll out a security solution across cloud accounts within all regions including Kubernetes & containers. Objectives: To work closely with the Cloud...