Jobleads-US
Seattle / Global
You have blocked notifications
Oops! You have blocked notifications. Click here for more info
You have blocked notifications, please check your browser settings.
You're currently subscribed to job notifications
Subscribe to notifications
You will no longer receive notifications
Seattle / Global
Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies.
As a Lead Security Engineer at JPMorganChase within the Cybersecurity Technology and Controls, you are an integral part of a team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. As a core technical contributor, you are responsible for carrying out critical technology solutions with tamper-proof, audit-defensible methods across multiple technical areas within various business functions.
Job responsibilities
Execute creative security solutions, design, development, and technical troubleshooting with the ability to think beyond routine or conventional approaches to build solutions or break down technical problems
Develop secure and high-quality production code, and review and debug code written by others
Minimize security vulnerabilities by following industry insights and governmental regulations to continuously evolve security protocols, including creating processes to determine the effectiveness of current controls, and conduct discovery, vulnerability, penetration testing, and threat scenarios to identify and assess vulnerabilities
Work with stakeholders and business leaders to understand security needs and recommend business modifications during periods of vulnerability
Use enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately
Apply reuse-first, AI-assisted practices within software development lifecycle and toolchain routines to strengthen security testing and control validation, ensuring traceability, auditability, and alignment to resiliency and security expectations
Required qualifications, capabilities, and skills
Formal training or certification on security engineering concepts and 5+ years applied experience
Skilled in planning, designing, and implementing enterprise-level security solutions
Experience leading teams in the safe use of enterprise-authorized AI capabilities for security engineering workflows, including validation habits and awareness of data sensitivity
Ability to review and validate AI-assisted security recommendations before adoption, escalating uncertainty appropriately, and ensure outcomes align to security, resiliency, and auditability expectations
Experience building internal tools, workflow automation, or pipeline management systems
Expertise in identity and access management technologies including OAuth2.0, SAML, Attribute-Based Access Control, Role-Based Access Control, Policy-Based Access Control, and Open Policy Agent
Advanced proficiency in Java, Python, or Node.js with demonstrated production-quality code delivery
Advanced understanding of agile methodologies, continuous integration and continuous delivery, application resiliency, security, and service ownership
Extensive experience with threat modeling, discovery, vulnerability, and penetration testing
Preferred qualifications, capabilities, and skills
Experience with dashboard and reporting tools such as Grafana, Splunk, Prometheus, or custom-built dashboards
Experience with hybrid identity environments including Azure Active Directory/Entra ID Connect, AWS Cognito, and OpenID Connect Federation
Familiarity with regulated industry environments such as financial services, healthcare, or government
Experience with BloodHound, SharpHound, or equivalent Active Directory attack path analysis tools
#CTC
#J-18808-Ljbffr
Seattle / Global
Seattle / Global
Bellevue / Global
Seattle / Global
Seattle / Global
Seattle / Global