Lead Security Engineer - Cloud Threat Hunting
Core
Lead cloud threat hunting and security assessments for JPMorganChase's public cloud platforms, services, and applications.
Role type
Senior IC Lead Security Engineer (Cloud Threat Hunting)
Builds
Hypothesis-driven threat hunts, detection rules, alert tuning, compensating controls, and risk-based security assessments.
Domain
Financial Services / Cloud Security
Required skills
Cloud security posture management (Wiz, Prisma Cloud, CrowdStrike Falcon), Infrastructure-as-code security (Terraform, CloudFormation), Threat modeling, Risk-based assessment, Cross-functional leadership, Prioritization, Creative problem solving
Preferred skills
Offensive security (penetration testing, red teaming, purple teaming), Threat detection query languages (KQL, Splunk SPL, SQL), Large dataset analysis, Agile delivery, Enterprise security program documentation
Technologies
AWS, Azure, Google Cloud, Wiz, Prisma Cloud, CrowdStrike Falcon, Terraform, CloudFormation, KQL, Splunk SPL, SQL
Responsibilities
Partner with product, engineering, and risk teams to apply secure-by-design principles across cloud architectures. Develop, plan, and run hypothesis-driven cloud threat hunts. Convert hunt findings into detection rules, alert tuning, and compensating controls. Query, analyze, and correlate large datasets to uncover threats and risk patterns. Deliver threat models and risk-based assessments for cloud services and applications. Review infrastructure-as-code for security alignment. Design preventive and detective controls at enterprise scale. Integrate with security operations, threat intelligence, and incident response. Provide expert guidance on the cloud threat landscape and adversary techniques.
Seniority
Senior, hands-on IC with leadership influence
