Senior Penetration Tester - Assessments & Exercises Vice President
- Design and execute testing and simulations - such as penetration tests, technical controls assessments, cyber exercises, or resiliency simulations, and contribute to the development and refinement of assessment methodologies, tools, and frameworks to ensure alignment with the firm's strategy and compliance with regulatory requirements
- Evaluate controls for effectiveness and impact on operational risk, as well as opportunities to automate control evaluation
- Collaborate closely with cross-functional teams to develop comprehensive assessment reports - including detailed findings, risk assessments, and remediation recommendations - making data-driven decisions that encourage continuous improvement
- Utilize threat intelligence and security research to stay informed about emerging threats, vulnerabilities, industry best practices, and regulations. Apply this knowledge to enhance the firm's assessment strategy and risk management. Engage with peers and industry groups that share threat intelligence analytics
- 5+ years of experience in cybersecurity or resiliency, with demonstrated exceptional organizational skills to plan, design, and coordinate the development of offensive security testing, assessments, or simulation exercises
- Significant experience conducting manual penetration tests against a wide variety of applications and technologies including web, mobile, thick clients, internal and external facing infrastructures, cloud, with a focus on third-party testing
- Knowledge of US financial services sector cybersecurity or resiliency organization practices, operations risk management processes, principles, regulations, threats, risks, and incident response methodologies
- Ability to identify systemic security or resiliency issues as they relate to threats, vulnerabilities, or risks, with a focus on recommendations for enhancements or remediation, and proficiency in multiple security assessment methodologies (e.g., Open Worldwide Application Security Project (OWASP) Top Ten, National Institute of Standards and Technology (NIST) Cybersecurity Framework), offensive testing tools, or resiliency testing equivalents
- Excellent communication, collaboration, and report writing skills, with the ability to influence and engage stakeholders across various functions and levels
- Proficiency in security concepts for both Windows and Unix-like Operating Systems
- Experience in source code review and/or building software with multiple programming languages (i.e. Python, Java, Rust, etc.)
- Experience in reverse engineering standalone, thick client and mobile applications
- Certifications like OSWE, CREST (CRT, CCT), OSCP, OSCE, GXPN, GWAPT, GPEN, BSCP
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans Base Pay/Salary
Jersey City,NJ $152,000.00 - $260,000.00 / year; Chicago,IL $133,000.00 - $225,000.00 / year; Brooklyn,NY $152,000.00 - $260,000.00 / year; Washington,DC $152,000.00 - $260,000.00 / year
Recommended Jobs
Experienced Automotive Service Technician
Join our team at Peltier KIA Longview as an Experienced Automotive Service Technician. We offer a positive work environment where everyone is focused being on the same page. Our team believes in the p…
Class A Local Truck Driver Job
Class A Local Truck Driver Job $5,000 SIGN-ON BONUS UNDER NEW MANAGEMENT! Home Daily, Weekly Pay, Direct Deposit! Paid One-Day Orientation, Various other Bonus Opportunities! Benefits, Company & O…
ACCOUNTS RECEIVABLE SENIOR
Description Essential Functions Responsible for the daily operations of cash receipts functions. Processes daily cash receipts. Serves as backup for Accounts Receivable Specialist. Maint…
Warehouse Laborer for Recycling Plant
Orange, TX Recycling Plant is seeking a Warehouse Laborer to assist operators with running machines used in the recycling process. JOB DESCRIPTION Assist Bailers, Pelletizers, Roll Cutters, an…
Sales Engineer, West
Druva is the leading provider of data security solutions, empowering customers to secure and recover their data from all threats. The Druva Data Security Cloud is a fully managed SaaS solution offe…
Clinical Research Nurse - Medicine - Lung Center
At Houston Methodist, the Clinical Research Nurse (CRN) position is licensed clinician who is responsible for, with minimal supervision, supporting, facilitating and coordinating the daily clinical t…
DevOps Engineer
We’re not rockstars or ninjas, just a team of developers working to make life a little easier for doctors and their patients. Our platform, built on a Ruby on Rails API with AngularJS and React front…
Senior Technical Product Manager
Description Company Overview : Itential is a global leader in automation and orchestration for NetDevOps teams with products built to support both network and cloud infrastruct…
Senior Staff Engineer, Hardware Design TPL
Senior Staff Engineer, Hardware Design Req ID: 127752 Band: 11 Region: Americas Country: United States State/Province: Texas City: Richardson Summary As a Technical Product Leader within…
Music Instructor-Keys/Piano
Job Description Job Description School of Rock is a growing, passionate community dedicated to enriching lives through performance-based music education. With over 350 schools, and a strong inter…