Job responsibilities
- Learn and understand end-to-end data flows in Insider Threat Program space (SMTP, end point, web traffic, API traffic, etc).
- Integrate 3rd party vendor applications into JPMC distributed environment.
- Lead and drive automation across the infrastructure in order to reduce manual operations, increase delivery speed while reducing risk.
- Translate customer needs into outcomes while following secure Systems Development Life Cycle principles such as secure-by-design, coordination of architecture and design with internal teams and continuous integration/delivery.
- Ensure production environment infrastructure is highly available, stable and alerts generated by Dynatrace monitoring are reviewed and addressed in a timely manner.
- Interface with multiple groups including but not limited to: DLP Content, Proxy Team, SCD (Secure Content Delivery) Team, SRE Team, Employee Compute, Architecture, 3rd party vendors to identify required, transformative technologies.
- Assist SRE team in troubleshooting production issues. Write and maintain documentation in Confluence.
- Effectively manage all communication channels: Jira, Outlook (emails and meetings) and Teams IM.
Required qualifications, capabilities, and skills
- Formal training or certification on security concepts and 3+ years of experience in Python development.
- Installation and configuration of large enterprise 3rdparty software. Experience with single node Oracle databases. Ansible, Terraform infrastructure automation
- Understanding SMTP, web and end point protocols and ability to troubleshoot issues. Strong research, analytical and problem solving skills
- Independent problem-solving, highly motivated and self-directing. Strong interpersonal and communication skills; capable of writing documentation, training users in complex topics, making presentations to junior and very senior audience
- Ability to work under pressure in a fast-paced environment while remaining productive and professional; exercise patience and ability to multi task
- Excellent command of Cybersecurity organization practices, operations risk management processes, principles, architectural requirements, engineering threats and vulnerabilities, including incident response methodologies
- Keen understanding of national and international laws, regulations, policies and ethics related to financial industry cybersecurity
- Distributed systems expert, keeping technical skills current. Expertise in Agile and can work with at least one of the common frameworks
Preferred qualifications, capabilities, and skills
- Experience with Broadcom Symantec DLP, MS Purview and Prisma Palo Alto Networks
- Experience with Monitoring systems: Splunk, Netcool, AppDynamics, Apica, etc.
- Experience with RDBMS technologies: SQL, Oracle, SQL Server, MySQL, Postgres, etc.
- Experience with messaging and data transport API(s): REST framework, SCIM.
- Experience of Agile development: Scrum, Kanban, Scrumban
- Experience with cloud providers: AWS, Azure and GCP
- Experience with troubleshooting tools: strace/ptrace, netstat, lsof, tcpdump, wireshark, gdb, etc.