Lead Security Engineer
JPMorgan ChaseResponsibilities
- Clarify security requirements for multiple networks and support multi-level ingress and egress traffic security.
- Perform deployment, administration, configuration, testing, documentation, operations, and integration for cloud network security platforms.
- Lead cloud security implementations, including automation, architecture, performance, monitoring, proof of concepts, product design, and operational transition.
- Build and maintain a cloud-based security orchestration platform using DevOps tools, infrastructure as code, and automated security and compliance capabilities.
- Ensure engineering deliverables meet quality controls, firm policies, security standards, resiliency expectations, and auditability requirements.
- Collaborate with stakeholders and senior leaders on vulnerability response, threat risk assessment, disruptive-event triage, and resource management.
- Use and validate enterprise-authorized AI capabilities for threat modeling, vulnerability analysis, code and security recommendations, and documentation.
- Support web application security through collaboration with IT, development, and operations teams.
Requirements
- Formal training or certification in security engineering concepts and 5+ years of applied experience.
- Advanced hands-on coding experience with Java, Python, or Go, plus Terraform.
- Expertise with AWS infrastructure and services including networking, EC2, Lambda, VPC, Route 53, Auto Scaling, Transit Gateway, API Gateway, Step Functions, Secrets Manager, and storage services.
- Proficiency in networking, infrastructure as code, public cloud architecture, and cloud security.
- Experience designing complex cloud architectures, deploying scalable solutions, creating CI/CD pipelines, implementing resiliency and security controls, and triaging issues within software development lifecycles.
- Extensive experience with threat modeling, discovery, vulnerability assessment, and penetration testing, with the ability to work independently.
- Experience with WAF technologies such as AWS WAF, Akamai, Cloudflare, or similar.
- Experience using and validating enterprise-authorized AI capabilities for security engineering workflows, including awareness of data sensitivity and uncertainty escalation.
- Preferred experience with API Gateway development and custom proxy development.
Benefits
- Competitive total rewards package with base salary determined by role, experience, skill set, and location; eligible roles may also receive incentive compensation or forfeitable equity.
- Comprehensive health care coverage and on-site health and wellness centers.
- Retirement savings plan, backup childcare, tuition reimbursement, mental health support, and financial coaching.
- Equal opportunity employment and reasonable accommodations for religious practices, mental health, and physical disability needs.
About JPMorgan Chase
With a history tracing its roots to 1799 in New York City, JPMorganChase is one of the world's oldest, largest, and best-known financial institutions—carrying forth the innovative spirit of our heritage firms in global operations across 100 markets. We serve millions of customers and many of the world’s most prominent corporate, institutional, and government clients daily, managing assets and investments, offering business advice and strategies, and providing innovative banking solutions and services. Social Media Terms and Conditions: https://bit.ly/JPMCSocialTerms JPMorgan Chase & Co. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.