Lead Security Engineer - IOT Asset Intelligence

JPMorgan Chase JPMorgan Chase · Banking · Jersey City, NJ +1 · Corporate Sector

Lead Security Engineer focused on building a firmwide IoT security program, specifically on telemetry pipelines, SIEM integration, and data quality. The role involves executing software solutions for the IoT visibility platform and actively using AI tools to enhance productivity and code quality.

What you'd actually do

  1. Telemetry Pipeline Development and Maintenance: Executes the design, development, and maintenance of telemetry pipelines that collect, normalize, and route IoT device data across the enterprise visibility platform.
  2. SIEM Integration and Security Operations Support: Supports the integration of IoT visibility data into SIEM platforms, ensuring that device telemetry is correctly parsed, enriched, and mapped to detection use cases.
  3. Data Quality and Normalization: Contributes to data quality initiatives across the IoT visibility program, identifying gaps, inconsistencies, and normalization issues in device telemetry and asset inventory data.
  4. Security Solution Execution: Executes standard security engineering solutions in accordance with existing playbooks and architectural guidance to satisfy security requirements for internal clients including product, platform, and application owners.
  5. AI Assisted Engineering: Actively uses AI tools to accelerate development tasks, improve code quality, automate repetitive workflows, and enhance personal productivity.

Skills

Required

  • Formal training or certification on security engineering concepts
  • 5+ years applied experience
  • Developing security engineering solutions
  • Contribute to production grade pipelines or integrations
  • Write secure, high quality code in one or more programming languages such as Python, Go, or Java
  • Work with limited guidance
  • Telemetry pipelines, log aggregation, or data normalization
  • SIEM platforms such as Splunk or Microsoft Sentinel
  • Log onboarding, parsing, and basic detection engineering
  • Full Software Development Life Cycle
  • Agile methodologies including CI/CD, application resiliency, and security
  • Information and network security, IT risk management, and architectural concepts and patterns
  • Specialized security tools such as vulnerability scanners
  • Familiarity with AI tools and the ability to apply them to improve engineering output and personal productivity

Nice to have

  • Exposure to IoT, OT, or unmanaged device environments
  • Data quality frameworks, automated testing, or observability tooling applied to data pipelines
  • Asset management systems such as CMDB or vulnerability management platforms
  • Data integrations with CMDB or vulnerability management platforms
  • Cloud native environments such as AWS or Azure
  • Data pipeline or security tooling deployment in cloud environments
  • Network protocols such as TCP/IP, DNS, and DHCP
  • Interest in growing toward a senior engineering or architecture role

What the JD emphasized

  • 5+ years applied experience
  • Demonstrable ability to write secure, high quality code
  • Hands on experience or strong working knowledge of telemetry pipelines, log aggregation, or data normalization
  • Working knowledge of SIEM platforms
  • Working knowledge of information and network security, IT risk management, and architectural concepts and patterns