Business Process Red Team Operator

JPMorgan Chase

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Wilmington, DE
Posted
17 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $169k
$117k most similar roles pay here $216k

This listing doesn't post a salary. Most similar roles pay $134,750–$202,512.

Based on 240 similar postings.

Employer

About JPMorgan Chase

JPMorgan Chase & Co. is a global financial services firm and one of the largest banks in the world, offering investment banking, commercial banking, asset management, and consumer financial services.

JPMorgan Chase currently has 1117 open roles on FindRole.

Listed pay typically runs $186,160–$215,000 across 7 roles with salary data.

Most-posted roles

View all roles at JPMorgan Chase

At a glance

TL;DR · Business Process Red Team Operator

As a Business Process Red Team Operator within the Assessments & Exercises team, you will join the Cybersecurity Red Team to enhance the firm's cybersecurity and resiliency posture. You will perform and manage hands-on offensive security activities, specifically focusing on social engineering and assessments of critical business processes like payment operations, fraud, and supplier management. Your daily work involves designing and executing risk-driven tests, simulations, and penetration tests while evaluating preventative controls and incident response processes. You will utilize tools such as Cobalt Strike, Metasploit, Nmap, Nessus, and Burp Suite to conduct covert security tests. The role requires expertise in networking fundamentals, various operating systems, and advanced adversary emulation. You will also leverage threat intelligence to identify vulnerabilities and collaborate with cross-functional teams to provide data-driven remediation recommendations for complex technical and fraud risks.

What you'll do

  • Perform and manage hands-on offensive security activities using social engineering techniques against critical assets.
  • Conduct business process assessments including tabletop exercises and live testing of payment, fraud, and supplier management controls.
  • Design and execute risk-driven simulations such as penetration tests, cyber exercises, and resiliency tests.
  • Evaluate the effectiveness of preventative controls and identify opportunities to automate control evaluations.
  • Develop comprehensive assessment reports that include detailed findings, risk assessments, and remediation recommendations for senior stakeholders.
  • Utilize threat intelligence and security research to improve the firm's assessment strategy and risk management.
  • Perform covert security tests involving vulnerability identification, exploitation, and post-exploitation activities.

What we're looking for

  • 5+ years of experience in cybersecurity or resiliency with skills to plan, design, and coordinate offensive security testing and simulations.
  • Knowledge of US financial services sector cybersecurity practices, risk management processes, and incident response methodologies.
  • Proficiency in multiple security assessment methodologies (e.g., OWASP Top Ten, NIST) and various offensive testing tools.
  • Ability to perform covert security tests including vulnerability identification, exploitation, and post-exploitation activities.
  • Strong understanding of networking fundamentals, operating systems, and software vulnerability/exploitation techniques using tools like Cobalt Strike or Metasploit.
  • Experience in multiple business verticals such as call centers, payment processes, and client service organizations.
  • Social engineering background (or intelligence, law enforcement, or similar experience) (preferred).
  • Relevant certifications such as OSCP, OSEP, CREST, SANS, CFE, or CAMS (preferred).

More like this

Similar roles

Business Process Red Team Operator

JPMorgan Chase

Columbus, OH 91 days ago
Red Teaming Penetration Testing Social Engineering OWASP NIST Cobalt Strike Metasploit Nmap Nessus Burp Suite Python Ruby Perl C C++ C# Java Linux Windows Unix Cloud Architecture Threat Intelligence Incident Response Firewalls IDS/IPS DLP
5+ yrs exp

Red Team Operations Lead

Booz Allen Hamilton

Augusta, GA 23 days ago $86,800$198,000
Red Teaming Purple Teaming Cobalt Strike Sliver Mythic Active Directory EDR) evasion Docker Python Go C# C++ Reverse Engineering Linux Windows Phishing Social Engineering Cloud Technologies

Senior Red Team Operator

Booz Allen Hamilton

Chantilly, VA 17 days ago $86,800$198,000
Red Teaming Purple Teaming Active Directory Python Bash C/C++ C# Rust Go PowerShell Java Nessus Metasploit Burp Suite Pro Cobalt Strike Mythic Azure M365 Terraform x86 Reverse Engineering JTAG UART OWASP ATT&CK

Red Team Penetration Tester

Booz Allen Hamilton

Dahlgren, VA 2 days ago $86,800$198,000
Penetration Testing Red Team Operations Kali Metasploit NMAP Cobalt Strike Wireshark tcp dump Java PHP SQL No SQL HTML Linux Windows Reverse Engineering C2 WSUS
5+ yrs exp

Red Team Penetration Tester

Booz Allen Hamilton

Virginia Beach, VA 2 days ago $86,800$198,000
Penetration Testing Kali Metasploit NMAP Cobalt Strike Wireshark tcp dump Java PHP SQL NoSQL HTML Linux Windows Reverse Engineering C2 WSUS
5+ yrs exp

Lead Penetration Test Engineer

S&P Global

Boston, MA +11 22 days ago $135,000$200,000
Penetration Testing Vulnerability Management DAST SAST SCA CI/CD Burp Suite Nessus Metasploit Nmap OWASP Top 10 MITRE ATT&CK Python Go Bash PowerShell JavaScript AWS Azure GCP Java
8+ yrs exp Hybrid