Skip to Main Content
Location icon
London

Senior Security Architect - SecOps and Vulnerability Management

JPMorganChase
Facilities & Security
Facilities & Security
Negotiable
Company logo image
Description

Location
London

Hours
Full Time

Salary
Competitive, commensurate with experience

About the Role
Join JPMorganChase to directly influence the future of technology as a Senior Security Architect - SecOps and Vulnerability Management. Collaborate with top cybersecurity and engineering talent to solve complex challenges and enable safe, secure innovation. This role offers the opportunity to grow your skills in a dynamic environment designed for achievers and to help build products that prioritize security from the start.

As part of the Cybersecurity & Technology Controls team for International Consumer, you will proactively partner with technology and business colleagues to identify and address security issues. You will embed a security culture, lead threat modeling, and drive architecture reviews to ensure products are secure by design. Your role is pivotal in managing emerging risks, influencing product strategy, and serving as the subject matter expert for SecOps and Vulnerability Management strategy, embedding detection and response capabilities on a modern technology stack.

You will collaborate globally, supporting audit, regulatory, and risk initiatives, with a focus on cloud computing and emerging technologies. Key responsibilities include designing and managing enterprise SIEM architecture, developing advanced detection logic, architecting SBOM lifecycle management, building risk-based vulnerability management platforms, automating incident response workflows, and cultivating a security-first culture across teams.

Requirements

Experience
- Hands-on experience advising and influencing enterprise SIEM platforms such as Microsoft Sentinel, Splunk, or Chronicle/SecOps.
- Proficient in writing and reviewing advanced detection logic (KQL, SPL, or YARA rules).
- Deep knowledge of generating, managing, and analyzing Software Bills of Materials (SBOMs) using frameworks like CycloneDX or SPDX, and integrating with tools such as Dependency-Track or Snyk.
- Advanced threat modeling experience (e.g., STRIDE-LM) for SIEM data flows, log ingestion pipelines, and vulnerability management platforms.
- Experience architecting vulnerability programs using tools like Tenable, Qualys, or Wiz, utilizing EPSS alongside CVSS for patch prioritization.
- Ability to design and influence automated response playbooks using SOAR platforms.
- Practical experience creating reference architectures and patterns for engineering teams.
- Proven ability to design and deploy automated preventive and detective guardrails at scale.
- Strong written and verbal communication skills with demonstrated success influencing peers and stakeholders.
- Experience using enterprise-authorized AI capabilities to support cybersecurity architecture workflows with strong validation and data sensitivity awareness.

About you
- Ability to solve design and functionality problems independently.
- Ability to evaluate and recommend emerging technologies for future state architecture.
- Strong sense of urgency in managing emerging security issues and recommending resolutions.
- Collaborative mindset with the ability to cultivate a security-first culture across product, technology, and business teams.
- Willingness to challenge existing processes respectfully and drive continuous improvement.

Qualifications
- Experience deploying AI-native capabilities within Google SecOps, leveraging Gemini-powered intelligence and ML-based anomaly detection is preferred.
- Experience partnering with Red/Purple Teams to simulate attacks and validate SIEM rules.
- Ability to identify thematic vulnerability trends to drive high-impact remediation.
- Experience operating in regulated organizations with a 3LoD model.
- Proven ability to translate policy and regulatory requirements into engineer-friendly controls.
- Experience in financial services consumer businesses or Fintech organizations is advantageous.
- Commitment to upskilling and learning modern technologies.

JPMorganChase is an equal opportunity employer valuing diversity and inclusion, committed to providing reasonable accommodations for applicants and employees as needed.

Expiry date: 23/08/2026
Senior Security Architect - SecOps and Vulnerability Management
Company:
JPMorganChase
Job Type:
Full-time
Location:
London