Sr Lead Security Engineer

Overview

On Site
Full Time

Skills

Problem Solving
Conflict Resolution
Cyber Security
Software Development
Testing
Product Design
Quality Control
Decision-making
Orchestration
Network Security
Regulatory Compliance
DevOps
Risk Assessment
Management
Training
Security Engineering
Python
Terraform
Amazon EC2
Virtual Private Cloud
API
Step-Functions
Storage
Cloud Architecture
Cloud Security
Cloud Computing
Continuous Integration
Continuous Delivery
Agile
Threat Modeling
Penetration Testing
Collaboration
Web Application Security
Firewall
Web Applications
SQL
Scripting
OWASP
WAF
Akamai
Amazon Web Services
Computer Networking
Investment Banking
Corporate Banking
Banking
Asset Management
Health Care
Backup
Coaching
Recruiting
SAP BASIS
Law
Finance
Human Resources
Marketing

Job Details

Job Description

Join a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers.

As a Senior Lead Security Engineer at JPMorgan Chase within the Cybersecurity Technology and Controls organization, you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Drive significant business impact through your capabilities and contributions and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains.

Job responsibilities

  • Facilitates security requirements clarification for multiple networks to enable multi-level security to satisfy organizational needs
  • Works at code-level using Python and drives the maturity of the Cybersecurity software development lifecycle with advanced understanding of line of business technology drivers
  • Performs deployment, administration, management, configuration, testing, document, operations and integration tasks related to the Cloud Network Security Platforms and champion a DevOps security model to ensure security is automated and elastic across all platforms
  • Leads and develops new Cloud Security Implementations
  • Designs and develops strategies to provide end-to-end automation, architecture design, performance and monitoring, best practices, proof of concepts, product design, and transition to operations
  • Ensures quality control of engineering deliverables and ensures firm policies are compliant with strict security standards
  • Drives decision making by analyzing complex data systems, ensures all engineering activities are in conformance with firm policies & objectives
  • Leverages DevOps tools to build, harden, maintain and develops a comprehensive Cloud-based security orchestration platform for network security and infrastructure as code
  • Develops automated security and compliance capabilities in support of DevOps processes in a large-scale Cloud computing environment
  • Collaborates with technologists, stakeholders, and senior business leaders to recommend business modifications during periods of vulnerability. Be responsible for triaging based on risk assessments of various threats and managing resources to cover impact of disruptive events

Required qualifications, capabilities, and skills
  • Formal training or certification on Security Engineering concepts and 5+ years applied experience
  • Advanced hands-on coding experience in Python/Go and Terraform
  • Expertise with AWS Infrastructure such as networking, EC2, Lambdas, server-less solutions, VPC, routes53, autoscaling, Transit Gateway, API Gateway, Step Functions, secrets manager and storage services
  • Proficient in core concepts for Networking, IaaC, Public Cloud architecture and Cloud Security
  • Expertise developing and designing complex cloud architectures, deploying of scalable solutions, creating and handling CI/CD pipelines, application resiliency, security design and implementation, and triaging issues in Agile Software Development Lifecycle methodology
  • Extensive experience with threat modeling, discovery, vulnerability, and penetration testing
  • Ability to tackle design and functionality problems independently with little to no oversight
  • Collaborate with cross-functional teams, including IT, development, and operations, to ensure web application security.
    Deploy and configure web application firewalls to protect web applications from threats such as SQL injection, cross-site scripting (XSS), and other OWASP Top Ten vulnerabilities. Customize WAF rules and policies to meet the specific security needs of the organization.
  • Experience with WAF technologies such as AWS WAF, Akamai, Cloudflare, or similar.

Preferred qualifications, capabilities, and skills
  • Certifications in AWS, Networking, or Security.

About Us

JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.

JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans

About the Team

Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.