Security Operations Associate
Operations
New York, USA
Join a team that helps protect the systems and data that power a global financial institution. You will work hands-on with modern detection and response capabilities, partnering with technologists across the firm to reduce risk and improve resilience. This role offers meaningful exposure to evolving threat activity, investigative work, and continuous improvement of operational security practices.
As a Security Operations Associate at JPMorganChase within the Detection and Response Operations team, you contribute to safeguarding digital assets by proactively detecting, assessing, and responding to threats, vulnerabilities, and security incidents. You use sound judgment to investigate and resolve cybersecurity issues while improving existing processes and response playbooks. You collaborate across teams to drive coordinated security practices and help raise security awareness through clear guidance and documentation.
Job responsibilities
- Conduct security investigations, including log review, triage, and root-cause analysis of suspicious activity
- Perform threat hunting to identify adversary behaviors across endpoints, networks, and cloud environments
- Assess vulnerability impact by validating exposure, mapping to affected assets, and recommending mitigation actions
- Use Security Information and Event Management (SIEM) and detection tooling to improve alert fidelity and response time
- Analyze malware and suspicious files, emails, and artifacts to determine intent, scope, and containment actions
- Partner with cross-functional teams to implement coordinated security processes, standards, and operating procedures
- Contribute to incident response activities, including containment, eradication, recovery support, and post-incident review
- Propose and implement improvements to detection content, runbooks, and response playbooks to strengthen security posture
Required qualifications, capabilities and skills
- Formal training or certification on security operations concepts and 2+ years applied experience
- Demonstrated ability to analyze security events using logs from endpoints, network devices, and cloud services
- Working knowledge of scripting used to automate security tasks (for example, Python, PowerShell, or similar)
- Strong understanding of authentication, authorization, identity controls, and cryptographic concepts
- Experience using security tools such as SIEM platforms, intrusion detection, endpoint detection, and malware analysis utilities
- Familiarity with the MITRE ATT&CK framework and applying it to investigations and threat hunting
- Proven investigative mindset, including hypothesis-driven analysis, evidence validation, and attention to detail
- Strong written communication skills, including clear documentation of findings, actions taken, and recommendations
Preferred qualifications, capabilities and skills
- Experience supporting security operations in a financial services environment
- One or more cybersecurity certifications (for example, Security+, GCIH, GCIA, or comparable credentials)
- Prior experience in a Security Operations Center or in a dedicated detection and response role
- Experience improving detection logic and operational workflows (for example, tuning alerts, creating playbooks, or automation)
#CTC
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.
Strengthen cybersecurity, detect threats, and protect critical digital systems at a leading financial institution.