Lead Security Engineer, Cloud Threat Hunting

JPMorgan Chase

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
OH
Posted
4 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $180k
$119k most similar roles pay here $231k

This listing doesn't post a salary. Most similar roles pay $149,500–$209,500.

Based on 240 similar postings.

Employer

About JPMorgan Chase

JPMorgan Chase & Co. is a global financial services firm and one of the largest banks in the world, offering investment banking, commercial banking, asset management, and consumer financial services.

JPMorgan Chase currently has 1138 open roles on FindRole.

Most-posted roles

View all roles at JPMorgan Chase

At a glance

TL;DR · Lead Security Engineer, Cloud Threat Hunting

Lead Security Engineer - Cloud Threat Hunting joins the Cybersecurity & Technology Controls group to secure public cloud adoption by embedding security into the fabric of cloud architecture. This role involves partnering with product, engineering, and risk teams to implement secure-by-design principles across various cloud architectures. Key responsibilities include executing hypothesis-driven threat hunts, performing infrastructure-as-code reviews, delivering threat models, and developing preventive and detective controls at enterprise scale. The candidate will utilize specialized tools for data analysis and query languages like KQL, Splunk SPL, or SQL to identify emerging risk patterns. Required expertise includes experience with AWS, Azure, or Google Cloud platforms, security posture management tools such as Wiz or Prisma Cloud, and infrastructure-as-code frameworks like Terraform or CloudFormation. The role focuses on translating complex threat landscapes into actionable security outcomes for cloud services.

What you'll do

  • Embed secure-by-design principles into cloud architectures by partnering with product, engineering, and risk teams.
  • Execute hypothesis-driven threat hunts to develop detection rules and alert tuning for cloud environments.
  • Analyze large datasets using specialized tools to identify emerging risks and potential threats.
  • Deliver threat models and risk-based assessments of cloud services to inform architectural decisions.
  • Perform security reviews of infrastructure-as-code to ensure alignment with firm standards.
  • Develop preventive and detective controls to enforce security requirements at an enterprise scale.
  • Integrate platform capabilities with security operations, threat intelligence, and incident response playbooks.
  • Provide expert guidance on the cloud threat landscape and adversary tradecraft to inform strategic decisions.

What we're looking for

  • Formal training or certification in cybersecurity concepts and 5+ years of applied experience (e.g., Security+, CEH, CCSP, CISSP).
  • Hands-on cloud-native experience across one or more major platforms (AWS, Azure, or Google Cloud) including a relevant cloud security certification.
  • Demonstrated experience with threat modeling methodologies and delivering risk-based security assessments.
  • Experience with cloud security posture management tooling such as Wiz, Prisma Cloud, CrowdStrike Falcon, or equivalent.
  • Knowledge of infrastructure-as-code frameworks (e.g., Terraform, CloudFormation) and their security implications.
  • Ability to lead cross-functional security initiatives and drive outcomes without direct authority.
  • Experience in offensive security disciplines including penetration testing, red teaming, or purple teaming (preferred).
  • Proficiency with at least one query language for threat detection (e.g., KQL, Splunk SPL, or SQL) across large datasets (preferred).

More like this

Similar roles

Lead Security Engineer

JPMorgan Chase

Plano, TX 14 days ago
AWS Terraform Python Java Go Infrastructure as Code CI/CD DevOps Cloud Security WAF Lambda VPC Route 53 Transit Gateway API Gateway Step Functions Threat Modeling Penetration Testing Agile
5+ yrs exp

Lead Security Engineer, Threat Modeling

JPMorgan Chase

Plano, TX 36 days ago
Cybersecurity Threat Modeling SDLC System Design Application Development AWS GCP AI Machine Learning Network Security Risk Management Security Testing
5+ yrs exp

Senior Security Engineer, Cloud Threat Detection

The Hartford

Hartford, CT +3 26 days ago $128,400$192,600
AWS GCP Splunk SIEM Python PowerShell Bash MITRE ATT&CK SOAR CloudTrail GuardDuty CrowdStrike Wiz Orca SentinelOne Microsoft Defender XDR Identity and Access Management (IAM)
5+ yrs exp Hybrid

Staff Security Engineer

Twilio

Remote 20 days ago $155,520$194,400
AI Threat Hunting SIEM SOAR Terraform CloudFormation AWS GCP Infrastructure as Code Incident Response Service-Oriented Architecture MITRE ATLAS Automation Security Engineering
Remote

Security Engineer, Cloud

Ramp

Remote (New York, NY) +1 161 days ago $211,400$290,600
AWS Terraform Python Flask Azure GCP Cloud Security Infrastructure DevOps Multi-service Deployment
5+ yrs exp Remote

Cloud Security Engineer

Leidos

Seaside, CA 133 days ago $107,900$195,050
Cloud Security RMF DevSecOps Zero Trust FedRAMP DISA SRG STIGs eMASS AWS Azure Kubernetes Docker IAM Fortify Sonatype Encryption
10+ yrs exp