Lead Security Engineer

JPMorgan Chase JPMorgan Chase · Banking · OH · Corporate Sector

Lead Security Engineer at JPMorgan Chase focused on delivering secure software solutions. The role involves executing security solutions, developing secure code, minimizing vulnerabilities, and conducting security testing. It emphasizes the use of enterprise-authorized AI capabilities to accelerate threat modeling, vulnerability analysis, and security documentation, with a strong focus on validation and data sensitivity. The role requires experience in software engineering, security solution design, programming languages, SDLC, agile methodologies, threat modeling, and knowledge of the financial services industry.

What you'd actually do

  1. Executes creative security solutions, design, development, and technical troubleshooting with the ability to think beyond routine or conventional approaches to build solutions and break down technical problems
  2. Uses enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately.
  3. Develops secure and high-quality production code and reviews and debugs code written by others
  4. Minimizes security vulnerabilities by following industry insights and governmental regulations to continuously evolve security protocols, including creating processes to determine the effectiveness of current controls
  5. Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.

Skills

Required

  • 5 plus years of experience in software engineering
  • Skilled in planning, designing, and implementing enterprise level security solutions
  • Advanced in one or more programming languages (Go, Rust, Swift, C++)
  • Proficient in all aspects of the Software Development Life Cycle
  • Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
  • Proven ability to break down complex problems into solvable chunks
  • Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.
  • Advanced understanding of agile methodologies such as CI/CD, Application Resiliency, and Security
  • Experience with threat modeling, discovery, vulnerability, and penetration testing
  • In-depth knowledge of the financial services industry and their IT systems

Nice to have

  • Experience implementing security focused software on Mac, Windows or Linux
  • Experience working as a full stack developer in an enterprise environment
  • Experience in Banking or other highly regulated industry (insurance, healthcare, etc)
  • Experience effectively communicating with senior business leaders

What the JD emphasized

  • Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
  • Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.