Security Operation Center Analyst, Attack Analysis

1 day ago


Singapore JPMorgan Chase & Co Full time

**JOB DESCRIPTION**
As a Security Operation Center (SOC) Analyst at JPMorgan Chase within the Cybersecurity Technology and Controls, Attack Analysis team, you will fit into a global team providing 24/7 monitoring and incident response, acting as the frontline for attacks against the firms’ infrastructure. Your role will include monitoring alerts triggered from in-house bespoke signatures in a Security Information and Event Management (SIEM) solution, perform start-to-finish case investigation, threat hunting, file analysis, as well as getting involved in projects that aim to improve the capability of the team. You’ll have opportunities to attend training and conferences that benefit the skillset of the team and your own. You’ll be encouraged to conduct your own hunting investigations and create rule logic to fill the gaps in monitoring that you identify or alert on upcoming threats you think may be targeted at the firm. The work you’ll do is vital, as it will protect over $18 trillion of assets under custody and around $400 billion in deposits every day.

**Job responsibilities**
- Reacts promptly to escalations to the SOC team via the Cyber Alert mailbox, SOC Hotline, and escalation channels (Symphony Chat, ServiceNow etc.)
- Performs in-depth analysis of cases and assists with investigations that are the results of firmwide operational processes for incident response, and cybersecurity operations event management
- Ensures SOC operations remain effective and sustainable through optimizing detection strategy as well as continuous enhancement of investigation procedures
- Contributes to projects that aim to improve the team’s capability

**Required qualifications, capabilities, and skills**
- Bachelor’s degree in Computer Science or related disciplines
- Minimum 2 years of relevant experience
- Good level of knowledge in network fundamentals, for example: OSI Stack, TCP/IP, DNS, HTTP(S), SMTP
- Good level of knowledge in Windows and/or Linux operating systems, how to investigate them for signs of compromise
- Demonstrable knowledge in log analysis and PCAP analysis
- Foundational level of understanding of file analysis; extracting indicators, providing a report, implementing mitigations
- Basic knowledge of cloud architecture (e.g., AWS Cloud)
- Ability to demonstrate a structured, analytical approach to investigating alerts and/or indicators and documenting your findings in a manner that both peer and executive level colleagues can understand
- Appreciation of the wider roles of interconnecting Cyber Security teams and collaboration with each of those (i.e. Forensics / Threat Intelligence / Penetration Testing / Vulnerability Management / “Purple Teaming” etc.)
- Willing to work a shift pattern that includes weekend work

**ABOUT US**

J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.

**ABOUT THE TEAM**

The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm’s cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group’s number one priority is to enable the business by keeping the firm safe, stable and resilient.



  • Singapore JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** Working in cybersecurity takes passion for technology, speed, a desire to learn, and vigilance in order to keep every asset safe. You’ll be on the front lines of innovation, working with a highly motivated team focused on analyzing, designing, developing and delivering solutions built to stop adversaries and strengthen our operations....


  • Singapore Percept Solutions Full time

    Join to apply for the Senior Cyber Security Operation Analyst role at Percept Solutions 1 year ago Be among the first 25 applicants Join to apply for the Senior Cyber Security Operation Analyst role at Percept Solutions Get AI-powered advice on this job and more exclusive features. Job Description Conduct technical analysis and triage of triggered alerts...


  • Singapore LSEG Full time $80,000 - $120,000 per year

    ROLE PROFILE: The London Stock Exchange Group seeks an experienced, dedicated and driven Attack Monitoring Analyst to join the Global Security Operations teamROLE SUMMARY:LSEG Security Operations is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents.This role is for an Attack...


  • Singapore Citibank (Switzerland) AG Full time

    ## For additional information, please review .The Security Operations Center Cyber Fraud Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks on a 24x7 basis. The overall objective of this role is to ensure the execution of Information Security directives and...


  • Singapore Citi Full time

    The Security Operations Center (SOC) Cyber Threat Analyst will be part of the SOC Team. This center monitors analyses and responds to infrastructure threats and vulnerabilities on a 24x7 basis. SOC Analysts are responsible for performing the day-to-day monitoring of Citi's environment analyzing responding to events as necessary and providing technical...


  • Singapore Citigroup Full time

    **Discover your future at Citi**: Working at Citi is far more than just a job. A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, you’ll have the opportunity to grow your career, give back to your community and make a real impact. **Job Overview**: We are seeking a highly skilled and experienced...


  • Singapore Cygnify Full time

    **Job Title: Security Operations Center (SOC) Analyst - Financial Services** **Location**: Singapore **About**: A leading financial services organisation is seeking a skilled Security Operations Center (SOC) Analyst to join our team in Singapore. **Responsibilities**: - ** Security Monitoring**: - Monitor security alerts and events to identify potential...


  • Singapore INSYGHTS SECURITY PTE. LTD. Full time

    **Key Responsibilities** As a Cyber Security Engineer, your primary role will be, but are not limited to: 1) Incident Investigation - Perform in-depth analysis of security alerts escalated by L1 analysts. - Investigate suspicious activity using SIEM, EDR, NDR, firewall and other logs.Use threat intelligence to enrich investigations and identity attacker...


  • Singapore Citi Full time

    The Security Operations Center Cyber Fraud Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks on a 24x7 basis. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data...


  • Singapore Citigroup Full time

    **Discover your future at Citi**: Working at Citi is far more than just a job. A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, you’ll have the opportunity to grow your career, give back to your community and make a real impact. **Job Overview**: The Security Operations Center Cyber Fraud Analyst...