Technology Support Lead - Incident Management & Response (imr)

JPMorgan Chase JPMorgan Chase · Banking · Seattle, WA +1 · Corporate Sector

This role is for a Technology Support Lead in the Cybersecurity & Technology Controls Incident Management & Response team at JPMorgan Chase. The primary focus is on 24/7 incident management and response, executing the firm-wide Cybersecurity Incident Management Playbook, and collaborating with various teams to safeguard infrastructure. The role involves analyzing metrics, improving processes, and engaging in continuous improvement.

What you'd actually do

  1. Serve as a key member of the Cybersecurity & Technology Controls (CTC) Incident Management & Response (IMR) team within the Global Incident Command Center (GICC) and Security Operations Center (SOC), providing 24/7 support for incident management and response.
  2. Execute the Firm-wide Cybersecurity Incident Management Playbook to orchestrate actions during the lifecycle of cybersecurity events, aiming to prevent or mitigate impacts.
  3. Act as the frontline defense for cybersecurity incidents, ensuring effective and timely resolution of security issues against the firm's infrastructure.
  4. Collaborate with internal and external partners, including regulatory, compliance, privacy, and media communications teams, to manage incidents.
  5. Utilize command and control, communication, and documentation skills to ensure the stability, capacity, and resiliency of products.

Skills

Required

  • Formal training or certification on technology support concepts
  • 5+ years applied experience in Incident Management or Incident Response
  • Demonstrated command and control, documentation, and communication skills
  • Experience communicating technical topics to senior management
  • Ability to work closely with business, technology, and project management partners
  • Strong understanding of the ITIL framework
  • Experience with incident management tools
  • Basic understanding of various operating systems, network fundamentals, cyber tools, and cloud architecture
  • High-level understanding of cybersecurity attack frameworks, such as MITRE ATT&CK and Cyber Kill Chain
  • Ability to exercise excellent judgment and decision-making skills under pressure
  • Ability to influence senior technology managers
  • Proactive with a strong bias for action, naturally inquisitive, and committed to continuous improvement

Nice to have

  • Demonstrated ability to multitask and prioritize in a stressful environment
  • Ability to use available mainstream AI tools to increase productivity and innovate existing processes
  • ITIL Certification
  • Baseline cybersecurity certifications, such as Security+ or Google Cybersecurity Certificate
  • Awareness of the wider roles of interconnecting cybersecurity teams
  • Experience with delivering constructive feedback to a team on a continuous basis

What the JD emphasized

  • 5+ years applied experience
  • Minimum of five years of experience in an Incident Management or Incident Response function in an enterprise environment.
  • Demonstrated command and control, documentation, and communication skills in previous roles.
  • Ability to work closely with business, technology, and project management partners to execute projects and improvements for the CTC IMR team.
  • Strong understanding of the ITIL framework and experience with incident management tools.
  • Ability to exercise excellent judgment and decision-making skills under pressure and know when to escalate issues.