Cybersecurity Operations [Multiple Positions Available]

J.P. Morgan
J.P. Morgan

Operations

Jersey City, NJ, USA

USD 165,672-260k / year + Equity

Posted on Aug 25, 2026

DESCRIPTION:

Duties: Lead the cloud security workstream firm-wide, including strategic planning, resource allocation, eligibility decisions, and establish assessment priorities for cloud-based applications and platforms. Define and implement assessment methodologies, frameworks, and quality standards to govern penetration testing practices across the team. Review and approve penetration testing deliverables prepared by team members to ensure technical accuracy, consistency, and alignment with firm standards. Present security research, threat intelligence, and vulnerability trends to senior leadership and cross-functional stakeholders to inform enterprise risk decisions. Direct manual security assessments and penetration tests targeting critical applications, cloud environments, and infrastructure to identify and mitigate cybersecurity threats. Drive the adoption of automation to improve the efficiency and scalability of penetration testing activities. Collaborate with cross-functional teams to clarify findings, support remediation efforts, and provide subject matter expertise on offensive and cloud security. Prepare and present reports on findings and vulnerabilities to technical and non-technical leadership to support informed decision-making. Mentor and develop junior team members through structured coaching, performance feedback, and technical training to build team capabilities in offensive security.

QUALIFICATIONS:

Minimum education and experience required: Bachelor's degree in Computer Engineering, Information Technology or related field of study plus 5 years of experience in the job offered or as Cybersecurity Operations, Assessments & Exercises Associate, Software Engineer, or related occupation.

Skills Required: This position requires experience with the following: Leading cloud security initiatives and penetration testing engagements for cloud platforms including AWS, Azure, and GCP; Performing penetration testing using manual and automated testing of web, API, cloud, infrastructure, thick-client, and mobile applications to identify vulnerabilities; Developing and implementing security assessment methodologies using OWASP, NIST, and PTES frameworks; Overseeing quality assurance of penetration testing products and deliverables; Developing automation tools and scripts using Python and Bash to enhance penetration testing efficiency; Identifying and articulating systemic security issues related to threats, vulnerabilities, and risks; Providing actionable remediation recommendations; Presenting technical findings and writing technical reports for stakeholders.

Job Location: 575 Washington Blvd, Jersey City, NJ 07310.

We offer a competitive total rewards package including base salary determined based on the role, experience, skill set, and location. For those in eligible roles, discretionary incentive compensation which may be awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process. In addition, please visit: https://careers.jpmorgan.com/us/en/about-us.

Full-Time. Salary: $165,672 - $260,000 per year.


JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.

JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans


Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.
Lead the cloud security workstream firm-wide, including strategic planning, resource allocation, eligibility decisions, and establish assessment priorities for cloud-based applications and platforms.