Lead Security Engineer - Cloud Threat Hunting

JPMorgan Chase & Co.
United States
23 days ago
Apply on jpmc.fa.oraclecloud.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services Software System Penetration Testing Microsoft Azure Big Data Software as a Service Cloud Computing Cloud Computing Security Cloud Engineering Software Documentation Cyber Security Query Languages
+12 more
Intrusion Detection and Prevention Cloud Services Kusto Query Language SQL Databases Google Cloud Cloud Platform System Cyber Threat Analysis Cloudformation Cybercrime Terraform Prisma Cloud Platform Splunk

Job description

As a Lead Cybersecurity Architect at JPMorganChase within the Cybersecurity & Technology Controls group, you will be at the forefront of securing the firm’s public cloud adoption - ensuring that cloud platforms, services, and applications are designed, deployed, and operated in a secure and compliant manner. You will partner across engineering, product, and risk teams to embed security into the fabric of cloud architecture, translating complex threat landscapes into actionable, scalable controls. This is a high-impact role where your expertise will directly shape the firm’s cloud security posture and resilience., * Partner with stakeholders across product, engineering, and risk and controls teams to understand firm control requirements, recommend implementations across a broad range of cloud architectures, and ensure secure-by-design principles are embedded throughout

  • Develop, plan, and execute hypothesis-driven, cloud-focused threat hunts, translating findings into actionable security outcomes including detection rules, alert tuning, and compensating controls
  • Apply specialized tooling to query, analyze, correlate, and interpret large datasets to identify potential threats and emerging risk patterns
  • Deliver threat models and risk-based assessments of cloud services, cloud platforms, and cloud-based applications to inform architecture and engineering decisions
  • Perform security reviews of infrastructure-as-code for cloud platform development, ensuring alignment with firm standards and industry best practices
  • Develop preventive and detective controls to enforce control requirements across cloud environments at enterprise scale
  • Interface with broader cybersecurity teams to ensure platform integration with security operations, threat intelligence, and incident response - operationalizing detections, improving triage playbooks, and supporting cloud threat investigations
  • Provide expert guidance on the cloud threat landscape, adversary tradecraft, and emerging risks to inform strategic security decisions
  • Contribute to documentation and agile processes in support of security programs, driving consistency and repeatability across the team

Requirements

  • Formal training or certification on cybersecurity concepts and 5+ years applied experience (e.g., Security+, CEH, CCSP, CISSP, or equivalent)
  • Hands-on cloud-native experience across one or more major cloud platforms (AWS, Azure, or Google Cloud), including relevant cloud security certification
  • Demonstrated experience with threat modeling methodologies and delivering risk-based security assessments
  • Experience with cloud security posture management tooling (e.g., Wiz, Prisma Cloud, CrowdStrike Falcon, or equivalent)
  • Knowledge of infrastructure-as-code frameworks (e.g., Terraform, CloudFormation, or equivalent) and their security implications
  • Ability to lead cross-functional security initiatives and drive outcomes without direct authority
  • Strong prioritization skills with a risk-based approach to decision-making across competing demands
  • Ability to think beyond conventional approaches to build innovative solutions and break down complex technical problems, * Experience in offensive security disciplines including penetration testing, red teaming, or purple teaming
  • Proficiency with at least one query language used for threat detection and hunting (e.g., KQL, Splunk SPL, or SQL), with comfort working across large and complex datasets
  • Experience working within agile delivery frameworks and contributing to security program documentation at an enterprise level

Benefits & conditions

We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.

About the company

JPMorganChase is one of the world’s leading financial services firms, with assets exceeding $2 trillion and operations spanning more than 60 countries. We are a global leader in investment banking, consumer and commercial banking, financial transaction processing, and asset management. At JPMorganChase, technology and security aren’t just support functions - they are core to how we serve clients, protect the firm, and drive innovation at scale., JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jpmc.fa.oraclecloud.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

3:28 min

Defining big data and machine learning fundamentals

Ayon Roy · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:32 min

Overview of Terraform and Terraform Cloud features

Devlin Duldulao · LIVE

2:10 min

Why organizations combine big data and machine learning

Ayon Roy · LIVE

Videos

See all

Related articles

See all