Job Description
Your seniority as a security engineer puts you in the ranks of the top talent in your field. Play a critical role at one of the world's most iconic financial institutions where security is vital.
As a Security Engineer III at JPMorgan Chase within the Cybersecurity and Technology Controls organization, you serve as a seasoned member of a team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Carry out critical technology solutions with tamper-proof, audit defensible methods across multiple technical areas within various business functions in support of the firm's business objectives
Job responsibilities
- Performs deployment, configuration, testing, and integration tasks in accordance with defined engineering stories, and support product operations
- Drives the maturity of the Cybersecurity Software Development Lifecycle (SDLC) with advanced understanding of line of business technology drivers and their impact on architecture design, performance, monitoring, best practices, and firm policies
- Works at code-level with Python and AWS/Terraform
- Develops automated security and compliance capabilities in support of DevOps processes in a large-scale Cloud computing environment
- Supports secure Cloud adoption by working hands-on with development teams to foster a Cloud-first mindset in transitioning workloads
- Develops and improves the quality of technical engineering documentation and drives the maturity of the Cybersecurity software development lifecycle
- Drives strategic decision making by analyzing complex data systems
- Understands Line of Business technology drivers and their impact on architecture design, performance, monitoring, best practices, and firm policies
- Ensures all engineering activities conform to firm policies and objectives
- Leverages DevOps tools to build, harden, maintain, and instrument a comprehensive Cloud-based security orchestration platform, developing automated security and compliance capabilities in support of DevOps processes in a large-scale Cloud computing environment
- Collaborates with technologists, stakeholders, and senior business leaders to recommend business modifications during periods of vulnerability
Required qualifications, capabilities, and skills
- Formal training or certification on Security Engineering concepts and 3+ years applied experience
- Proficient in hands-on coding with Python
- Expertise with Terraform or AWS Infrastructure such as networking, EC2, Lambdas, server-less solutions, VPC, routes53, autoscaling, Transit Gateway, API Gateway, Step Functions, secrets manager and storage services
- Experience in Public Cloud experience in mission-critical environments, including analyzing complex data systems, failure analysis/root cause analysis, and maintaining technical engineering documentation
- Ability to develop and designing complex cloud architectures, deploying of scalable solutions, creating and handling CI/CD pipelines, application resiliency, security design and implementation, and triaging issues in Agile Software Development Lifecycle (SDLC) methodology
- Proficient in core concepts for Networking, IaC, Public Cloud architecture and Cloud Security
- Proficient knowledge in threat modeling, discovery, vulnerability, and penetration testing
- Ability to manage design and functionality problems independently with little to no oversight
Preferred qualifications, capabilities, and skills
- Certifications in AWS, Networking, or Security
- Familiarity with programming languages such as Java or Go
- Proficient knowledge of F5
About Us
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
About the Team
The Cybersecurity & Technology Controls group at JPMorganChase aligns the firm's cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group's number one priority is to enable the business by keeping the firm safe, stable and resilient.
High Risk Roles (HRR) are sensitive roles within the technology organization that require high assurance of the integrity of staff by virtue of 1) sensitive cybersecurity and technology functions they perform within systems or 2) information they receive regarding sensitive cybersecurity or technology matters. Users in these roles are subject to enhanced pre-hire screening which includes both criminal and credit background checks (as allowed by law). The enhanced screening will need to be successfully completed prior to commencing employment or assignment.
Top Skills
Similar Jobs at JPMorganChase
What you need to know about the Seattle Tech Scene
Key Facts About Seattle Tech
- Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Amazon, Microsoft, Meta, Google
- Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Madrona, Fuse, Tola, Maveron
- Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute