Cloud Software Security Engineer

JPMorgan Chase JPMorgan Chase · Banking · Dublin, Ireland · Corporate Sector

Lead Software Security Engineer responsible for delivering secure software solutions, preventing misuse, and implementing tamper-proof, audit-defensible methods within a large financial institution. Focuses on designing, developing, and troubleshooting security solutions, minimizing vulnerabilities, and conducting security assessments.

What you'd actually do

  1. Executes creative security solutions, design, development, and technical troubleshooting with the ability to think beyond routine or conventional approaches to build solutions and break down technical problems
  2. Develops secure and high-quality production code and reviews and debugs code written by others
  3. Minimizes security vulnerabilities by following industry insights and governmental regulations to continuously evolve security protocols, including creating processes to determine the effectiveness of current controls
  4. Works with stakeholders and business leaders to understand security needs and recommend business modifications during periods of vulnerability
  5. Conducts discovery, vulnerability, penetration testing, and threat scenarios on multiple organizational assets to identify and assess if vulnerabilities are present, and executes threat modelling for multiple applications including external applications interacting with the internal JPMorgan Chase network

Skills

Required

  • Formal training or certification on Public Cloud environment concepts and proficient advanced experience
  • Cybersecurity Foundational concepts / knowledge such as IAM, Authentication, OIDC, SAML, etc
  • Skilled in planning, designing, and implementing enterprise level security solutions
  • Strong experience in developing and architecting cloud-native applications with AWS services.
  • Proficiency and hands-on experience in Data Analytics AWS services such as Redshift, Lake Formation, etc as well as SaaS Data Platform Technologies such as Snowflake, Databricks.
  • Practical exposure with Infrastructure as Code (IaC) solutions such as Terraform and CloudFormation
  • Experience in developing enterprise software and proficiency in multiple languages, preferably Python
  • Ability to conceptualize, design, validate and implement creative solutions to complex technical issues
  • Demonstrated ability to quickly and proficiently understand new architectures and designs

Nice to have

  • Cloud Certifications including AWS Developer Associate, AWS Solutions Architect Associate
  • Snowflake Certifications
  • AI/ML field knowledge and trends.
  • DSPM – Data Security Posture Management tools knowledge.

What the JD emphasized

  • preventing misuse, circumvention, and malicious behaviour
  • tamper-proof, audit defensible methods
  • Minimizes security vulnerabilities
  • governmental regulations
  • discovery, vulnerability, penetration testing, and threat scenarios
  • threat modelling