The Lead Security Engineer will develop CSPM guardrails for Data and AI/ML, evaluate security technologies, and ensure cloud security compliance. Responsibilities include vulnerability management, partnering with product managers, and contributing to the engineering community.
Job Description
Play a vital role in shaping the future of an iconic company and make a direct impact in a dynamic environment designed for top achievers.
As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity & Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications and platform products. Drive significant business impact through your capabilities and contributions, and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains. We are looking for an experienced lead security engineer to join our team as a specialist in cloud security posture management in Data and AI/ML. You will be responsible for developing and deploying CSPM guardrails across Data and AI/ML technologies. We are looking for a cloud security leader who is passionate about Data & AI/ML security and automating cloud security drift monitoring at scale. You will be required to apply your in-depth of cloud security knowledge and expertise to all aspects of cloud security posture management development lifecycle, as well as partner continuously with your many product stakeholders on a daily basis to stay focused on common goals. You'll work in a collaborative, trusting, thought-provoking environment-one that encourages diversity of thought and creative solutions that are in the best interests of our customers . Best yet, you will be joining a team of highly motivated and skilled security architects who will help you to lay the foundations of a great career at JP Morgan Chase.
Job responsibilities
Required qualifications, capabilities, and skills
Preferred qualifications, capabilities, and skills
About Us
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world's most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Play a vital role in shaping the future of an iconic company and make a direct impact in a dynamic environment designed for top achievers.
As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity & Technology Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications and platform products. Drive significant business impact through your capabilities and contributions, and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains. We are looking for an experienced lead security engineer to join our team as a specialist in cloud security posture management in Data and AI/ML. You will be responsible for developing and deploying CSPM guardrails across Data and AI/ML technologies. We are looking for a cloud security leader who is passionate about Data & AI/ML security and automating cloud security drift monitoring at scale. You will be required to apply your in-depth of cloud security knowledge and expertise to all aspects of cloud security posture management development lifecycle, as well as partner continuously with your many product stakeholders on a daily basis to stay focused on common goals. You'll work in a collaborative, trusting, thought-provoking environment-one that encourages diversity of thought and creative solutions that are in the best interests of our customers . Best yet, you will be joining a team of highly motivated and skilled security architects who will help you to lay the foundations of a great career at JP Morgan Chase.
Job responsibilities
- Develop and deploy cloud security posture management guardrails across Data & AI/ML technologies
- Maintain and enhance existing cloud security posture management guardrails in Data & AI/ML technologies
- Guides the evaluation of current cybersecurity principals, processes, and controls, and leads the evaluation of new technology using existing standards and frameworks
- Provide thought leadership for cloud security posture management in Data and AI/ML technologies
- Identify and address security vulnerabilities, security risks, and other compliance issues
- Partner with product managers to create key objectives and roadmaps
- Works with stakeholders and senior leaders to recommend business modifications during periods of vulnerability
- Serves as function-wide subject matter expert in one or more areas of focus
- Actively contributes to the engineering community as an advocate of firm wide frameworks, tools, and practices of the Software Development Life Cycle
Required qualifications, capabilities, and skills
- Proficient in cloud security posture management (e.g., Wiz, Lacework, Orca Security, Prisma Cloud, Crowd Strike Falcon Cloud Security, etc.) coding in one of more languages
- Advanced expertise in one or more programming languages or applications
- Experience engineering with infrastructure as code (e.g., Terraform, Cloud Formation, etc.)
- Solid understanding of agile methodologies such as DevOps, CI/CD, application resiliency, and security
- Strong understanding of cloud computing concepts and services such as AWS, Azure, GCP, etc
- Demonstrable interest in cloud security
- Strong analytical and evaluation skills to identify and address security challenges effectively with both technical and non-technical stakeholders at many levels within and outside of the firm
- Ability to tackle development and functionality problems independently with little to no oversight
- Bias for action, highly organised and proficient in documentation
Preferred qualifications, capabilities, and skills
- Demonstrable interest in Data & AI/ML Security concepts, threats, and vulnerabilities including Data Analytics and Generative Large Language Models
- Cloud & Security certifications such as AWS Solutions Architect Associate/Professional, AWS Security Speciality, AWS Data Engineer Associate, HashiCorp Terraform Associate, Azure Security Engineer Associate etc.
About Us
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world's most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Top Skills
AWS
Azure
Cloud Formation
Crowd Strike Falcon Cloud Security
GCP
Lacework
Orca Security
Prisma Cloud
Terraform
Wiz
Similar Jobs at JPMorganChase
Financial Services
The Lead Security Engineer is responsible for developing secure software solutions, conducting vulnerability assessments, and implementing enterprise security protocols.
Top Skills:
Agile MethodologiesAWSCi/CdSoftware Development Life Cycle
Financial Services
The ETF Product Vice President will lead the European ETF strategy, manage product development, collaborate with teams, and drive client solutions while ensuring successful product launches and enhancements.
Top Skills:
Cross-Functional CollaborationCustodyEtfFund Accounting
Financial Services
As a Client Solutions Analyst, you will manage project implementation from start to finish, ensuring a smooth onboarding process and promoting business opportunities while collaborating with internal teams and clients.
Top Skills:
Microsoft Office Applications
What you need to know about the Boston Tech Scene
Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.
Key Facts About Boston Tech
- Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
- Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
- Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
- Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories