Security Operations Vice President - Vulnerability Management

JPMorgan Chase & Co.

Plano (TX)

On-site

USD 90,000 - 110,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

JPMorgan Chase & Co. is hiring for a Cybersecurity position focused on Vulnerability Management, requiring 5+ years of experience. The role involves assessing new vulnerabilities, defining risk ratings, and driving daily workflows in a dynamic environment.

The successful candidate will possess strong Cyber Security knowledge, experience with Incident Management, and the ability to work independently. Familiarity with AI capabilities and tools such as SQL and Splunk will be beneficial.

Qualifications

  • 5+ years of experience in Cyber Operations/Vulnerability Management.
  • Strong knowledge of Vulnerability Management workflows, CVE systems.
  • Experience with Incident Management and cross-team alignment.

Responsibilities

  • Review new vulnerabilities and assess their risks.
  • Define risk ratings and document impacted assets.
  • Drive global team’s daily workflow and represent the team.

Skills

Cyber Operations
Vulnerability Management
Cyber Security Controls
SQL
Agile Methodology

Education

Formal Training or certification in Cyber Security

Tools

SQL
Splunk
Jira

Job description

Working in Cybersecurity takes a passion for balancing technology with determining the inherent risk of a vulnerability by balancing preventative controls against known exploits, and above all, vigilance in keeping JPMC technology secure for our customers & clients. You’ll be on the front lines of managing vulnerabilities by making critical decisions on the inherent risk to the infrastructure or the application itself and thus the risk to the firm clients & customers. You will be working with a highly‑motivated team laser‑focused on analyzing, scoping, developing and delivering solutions built to stop adversaries and strengthen our security posture. Your research and work will ensure stability and resiliency of our current technology products, emerging technology and our vast application estate. Working in tandem with various internal teams both in Cyber and various Line of Business partners, as well as technologists and innovators across our global network, by leading the positive actions that will stop adversaries and strengthen customer’s confidence.

Job Responsibilities
  • Review new vulnerabilities published from multiple sources and identify those that may pose risk to the firm.
  • Define an accurate risk rating in line with proprietary and industry standard risk rating methodologies. Document impacted assets and/or application(s) providing a detailed write up on the risk and exposure posed by vulnerabilities.
  • Assess threat actor intelligence, exploit code, and/or conceptual code to determine attack vectors. Recommend any risk mitigation factors and define the remediation activity if known.
  • Assess security researcher identified vulnerabilities to provide recommendations on remediation and identify additional risk.
  • Drive the global teams’ daily workflow, undertaking daily case‑load analysis and prioritization. Represent the global team and be the technical lead on major incidents impacting the Vulnerability Management space.
  • Demonstrate the ability to develop and form strong working relationships with the partnering Cybersecurity Operations functions and key technology leaders in the region. Provide technical leadership within the team, mentoring and guiding junior team members.
  • Uses enterprise‑authorized AI capabilities within the work environment to accelerate security investigation triage and incident reporting, validating outputs and handling operational data according to sensitivity and security requirements.
  • Drives reuse‑first adoption of AI‑assisted workflows to enhance threat detection and response processes, ensuring outputs are validated and aligned to security, resiliency, and auditability expectations.
Required qualifications, capabilities, and skills
  • Formal Training or certification with 5+ years’ experience in a Cyber Operations/Vulnerability Management role with a strong knowledge of operational processes supporting Vulnerability Management and the wider Security Operations Center; with the ability to demonstrate comprehension of the end‑to‑end Vulnerability Management workflow (to include industry standards such as CVE, CPE, CVSS).
  • Demonstrated experience coordinating Incident Management and/or cyber incident response, including cross‑team alignment and clear stakeholder communications.
  • Strong and broad understanding of Cyber Security Controls (Physical, Logical, Processes and Procedures). Strong and broad understanding of leading vendor products/applications e.g., Oracle [Java], VMWare, F5, Citrix, Microsoft; to include product lifecycle & release schedules.
  • Strong and broad understanding of open‑source software deployment in a large technology estate. Strong understanding of Cloud and Public/Private Cloud environments. Strong deductive reasoning, multi‑tasking, critical thinking, problem solving, and prioritization skills.
  • Familiarity with Cyber vulnerability detection and scanning tools. Experience of working with data sources via SQL, JSON, APIs and Splunk will be highly beneficial.
  • Experience with Agile and experience working to manage remediation actions via an active backlog and Jira an advantage.
  • Demonstrated experience using enterprise‑authorized AI capabilities within the work environment to support security operations workflows with strong validation habits and awareness of data sensitivity.
  • Ability to review and validate AI‑assisted investigation findings and recommendations before implementation, escalating when uncertain and ensuring outcomes align to security and auditability expectations.
Preferred qualifications, capabilities, and skills
  • Have an aptitude for Vulnerability Research and Exploit Development (either from a professional background or by demonstrating an aptitude e.g. through capture the flag challenges).
  • Experience with frontier AI models and the ability to conduct AI assisted vulnerability research.
  • Be operationally focused and enjoy working in a dynamic environment, with the day‑to‑day focus on quick and timely risk reduction activities.
  • Be a self‑starter who will take the initiative while being able to work independently and challenge the status quo.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Vulnerability Management
Manager, Vulnerability Management

Vanguard • Malvern

On-site
USD 170,000 - 230,000
Senior Security Manager - Vulnerability Management
Senior Security Manager - Vulnerability Management

Alter Domus • Chicago (IL)

On-site
USD 140,000 - 190,000
Security Engineer III-Python, Bash, Vulnerability Assessments
Security Engineer III-Python, Bash, Vulnerability Assessments

JPMorgan Chase & Co. • Columbus (OH)

On-site
USD 110,000 - 150,000
Senior Vulnerability Analyst
Senior Vulnerability Analyst

PRI Global • O’Fallon (MO)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer - Vulnerability Management
Cybersecurity Engineer - Vulnerability Management

Janestreet • New York (NY)

On-site
USD 100,000 - 130,000
Staff Vulnerability Management Engineer
Staff Vulnerability Management Engineer

United States Digital Space LLC • Seattle (WA), San Francisco (CA)

Hybrid
USD 180,000 - 240,000
Assessments & Exercises - Cybersecurity Solutions Engineer
Assessments & Exercises - Cybersecurity Solutions Engineer

JPMorgan Chase & Co. • Jersey City (NJ)

On-site
USD 100,000 - 140,000
Manager, Vulnerability Management
Manager, Vulnerability Management

Vanguard • Charlotte (NC)

Hybrid
USD 140,000 - 180,000
Hybrid work model
Principal Security Engineer
Principal Security Engineer

Valley Bank • Morristown (NJ)

On-site
USD 180,000 - 240,000
VIPR & VMDR Expert
VIPR & VMDR Expert

Armis • Town of Poland (NY)

On-site
USD 140,000 - 200,000