-
Security Operations - Threat Detection Engineer…
- JPMorgan Chase (New York, NY)
-
Embrace the challenge of maintaining robust digital security, driving operational excellence, and implementing cutting-edge solutions in cybersecurity.
As a Vice President - Threat Detection Engineer you will contribute deep expertise in adversary behavior, strong security engineering and data analysis skills, and the ability to convert threat intelligence into effective detection. You will regularly collaborate with cross-functional teams to develop a coordinated approach to security, ensuring the integrity, confidentiality, and availability of sensitive data and systems. You will apply advanced analytical, technical, and problem-solving skills to enable operational excellence and implement innovative solutions to address complex security challenges. By staying current with industry best practices, policies, and procedures, you will contribute to maintaining a secure digital environment and driving continuous improvement in the firm.
Collaborating closely with Security Operations Center (SOC) analysts, threat hunter, red team members, and internal security engineering teams, you will develop scalable, high-fidelity detections using logs, telemetry, and behavioral analytics from diverse data sources. The ideal candidate will have SOC experience, a passions for researching TTPs and the threat landscape, and the ability to translate this research into high-quality detections.
As a Threat Detection Engineer, your responsibilities will include advanced analysis, threat hunting, evaluating new security technologies, and ensuring the integration of larger technology projects into the Cyber Defense team and monitoring function. You will apply advanced analytical, technical, and problem-solving skills to achieve operations excellence.
Job responsibilities
+ Execute and influence the design of comprehensive security strategies, policies, and procedures to enhance threat detection capabilities and protect the organization's digital assets and infrastructure from cybersecurity threats
+ Design, implement, and continuously refine advanced threat detection rules, logic, and models in SIEM, EDR, and cloud-native platforms (e.g., Splunk, Sentinel, CrowdStrike, AWS/Azure/GCP).
+ Utilize detection-as-code- pipelines and SRE principles to build and maintain detections with appropriate versioning, QA, and testing workflows.
+ Perform threat model review, architecture reviews and detection gap assessments.
+ Operationalize MITRE ATT&CK mappings, threat intel insights, and adversary simulations results to develop precise detection logic.
+ Proactively monitor and analyze complex data and systems to identify indicators of vulnerabilities and compromises, utilizing advanced tools and techniques to detect anomalies and contribute to the development of strategies for security investigation, threat mitigation, and incident response
+ Collaborate with cross-functional teams to ensure a coordinated approach to security, sharing insights, and promoting best practices across the organization
+ Evaluate and enhance the organization's security posture by staying current with industry trends, emerging threats, and regulatory requirements, driving innovation and process improvements.
Required qualifications, capabilities, and skills
+ Obtain 5+ years of experience in cybersecurity operations, with a focus on threat detection, incident response, and security infrastructure management, or SOC operations.
+ Demonstrated expertise in multiple security domains, including network security, malware analysis, threat hunting, and security architecture and design, with proficiency in using Security Information and Event Management (SIEM) tools and advanced analytics techniques
+ Advanced knowledge of network and infrastructure configuration/security, including experience in designing and implementing security solutions for on-premises, cloud, or hybrid environments
Preferred qualifications, capabilities, and skills
+ Experience with detection-as-code methodologies and tools (e.g., Git-based pipelines, CI/CD for security content).
+ Background in cloud security (AWS/GCP/Azure), particularly around detection and log correlation in IaaS and SaaS environments.
+ Familiarity with SOAR platforms, and anomaly-based detection techniques.
+ Experience leveraging Large Language Models (LLMs) for security use cases such as log parsing, alert triage, threat narrative generation, or threat intelligence summarization.
+ Experience in integrating LLMs into detection workflows to enhance context enrichment, rule generation, or automated investigation support.
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
Base Pay/Salary
New York,NY $152,000.00 - $260,000.00 / year
-
Recent Searches
- Strategic Partner Development Lead (California)
- Senior Data Analyst AML (Virginia)
- Program Manager Global Attraction (Florida)
- Assistant Director Development (Michigan)
Recent Jobs
-
Security Operations - Threat Detection Engineer | Cybersecurity
- JPMorgan Chase (New York, NY)