Security Operations Associate

JPMorgan Chase & Co.

Seattle (WA)

On-site

USD 90,000 - 125,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

JPMorgan Chase & Co. in Seattle is seeking a Security Operations Associate to protect the firm’s systems and data.

You will work hands-on with modern detection and response capabilities, partnering with technologists across the firm to reduce risk and improve resilience. You will investigate threats, vulnerabilities, and security incidents, use SIEM tooling, and contribute to incident response and playbooks.

Qualifications

  • Formal training or certification in security operations with 2+ years of experience.
  • Ability to analyze security events using logs from endpoints, networks, and cloud services.
  • Scripting knowledge to automate security tasks (Python/PowerShell).
  • Understanding of authentication, authorization, identity controls, and cryptographic concepts.
  • Experience with SIEM platforms, IDS, EDR, and malware analysis tools.
  • Familiarity with the MITRE ATT&CK framework and applying it to investigations.
  • Strong investigative mindset with evidence validation and attention to detail.
  • Excellent written communication with clear findings and recommendations.

Responsibilities

  • Conduct security investigations including log review and root-cause analysis.
  • Perform threat hunting across endpoints, networks, and cloud environments.
  • Assess vulnerability impact and recommend mitigations.
  • Use SIEM and detection tooling to improve alerts and response time.
  • Analyze malware, emails, and artifacts to determine intent and containment.
  • Collaborate with cross-functional teams to implement security processes and SOPs.
  • Contribute to incident response activities including containment and recovery.
  • Improve detection content and runbooks to strengthen security posture.

Skills

Threat detection
Investigation & analysis
Scripting (Python/PowerShell)
Communication
Incident response
Threat hunting
Cross-team collaboration

Education

Security operations certification/training

Tools

SIEM platforms
Endpoint/Network security tools
Malware analysis utilities
Cloud security tools

Job description

Join a team that helps protect the systems and data that power a global financial institution. You will work hands-on with modern detection and response capabilities, partnering with technologists across the firm to reduce risk and improve resilience. This role offers meaningful exposure to evolving threat activity, investigative work, and continuous improvement of operational security practices.

As a Security Operations Associate at JPMorganChase within the Detection and Response Operations team, you contribute to safeguarding digital assets by proactively detecting, assessing, and responding to threats, vulnerabilities, and security incidents. You use sound judgment to investigate and resolve cybersecurity issues while improving existing processes and response playbooks. You collaborate across teams to drive coordinated security practices and help raise security awareness through clear guidance and documentation.

Job responsibilities

  • Conduct security investigations, including log review, triage, and root-cause analysis of suspicious activity
  • Perform threat hunting to identify adversary behaviors across endpoints, networks, and cloud environments
  • Assess vulnerability impact by validating exposure, mapping to affected assets, and recommending mitigation actions
  • Use Security Information and Event Management (SIEM) and detection tooling to improve alert fidelity and response time
  • Analyze malware and suspicious files, emails, and artifacts to determine intent, scope, and containment actions
  • Partner with cross-functional teams to implement coordinated security processes, standards, and operating procedures
  • Contribute to incident response activities, including containment, eradication, recovery support, and post-incident review
  • Propose and implement improvements to detection content, runbooks, and response playbooks to strengthen security posture

Required qualifications, capabilities and skills

  • Formal training or certification on security operations concepts and 2+ years applied experience
  • Demonstrated ability to analyze security events using logs from endpoints, network devices, and cloud services
  • Working knowledge of scripting used to automate security tasks (for example, Python, PowerShell, or similar)
  • Strong understanding of authentication, authorization, identity controls, and cryptographic concepts
  • Experience using security tools such as SIEM platforms, intrusion detection, endpoint detection, and malware analysis utilities
  • Familiarity with the MITRE ATT&CK framework and applying it to investigations and threat hunting
  • Proven investigative mindset, including hypothesis-driven analysis, evidence validation, and attention to detail
  • Strong written communication skills, including clear documentation of findings, actions taken, and recommendations

Preferred qualifications, capabilities and skills

  • Experience supporting security operations in a financial services environment
  • One or more cybersecurity certifications (for example, Security+, GCIH, GCIA, or comparable credentials)
  • Prior experience in a Security Operations Center or in a dedicated detection and response role
  • Experience improving detection logic and operational workflows (for example, tuning alerts, creating playbooks, or automation)

#CTC

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Associate
Security Operations Associate

JPMorgan Chase • Seattle (WA)

On-site
USD 119,000 - 150,000
Security Operations & Threat Response Associate
Security Operations & Threat Response Associate

JPMorgan Chase • Seattle (WA)

On-site
USD 119,000 - 150,000
Insider Threat Senior Associate - Acquisition Cybersecurity Team
Insider Threat Senior Associate - Acquisition Cybersecurity Team

J.P. Morgan • New York (NY)

On-site
USD 90,000 - 120,000
Threat Detection & Incident Response Associate
Threat Detection & Incident Response Associate

JPMorgan Chase & Co. • Seattle (WA)

On-site
USD 90,000 - 125,000
Security Operations Vice President – Blockchain & Digital Assets
Security Operations Vice President – Blockchain & Digital Assets

JPMorgan Chase & Co. • New York (NY)

On-site
USD 180,000 - 290,000
Cyber Intelligence Vice President
Cyber Intelligence Vice President

JPMorgan Chase & Co. • Washington

On-site
USD 180,000 - 240,000
Cyber Intelligence Senior Associate
Cyber Intelligence Senior Associate

Next Frontier Capital • Plano (TX)

On-site
USD 120,000 - 180,000
Cyber Intelligence Director
Cyber Intelligence Director

Cyber UK • United States

On-site
USD 130,000 - 160,000
Cyber Intelligence Vice President -Blockchain
Cyber Intelligence Vice President -Blockchain

JPMorgan Chase & Co. • New York (NY)

On-site
USD 180,000 - 320,000
Technology Cybersecurity Operational Risk Management Lead - Vice President
Technology Cybersecurity Operational Risk Management Lead - Vice President

JPMorgan Chase & Co. • Plano (TX)

On-site
USD 110,000 - 140,000