J
Lead Security Engineer - Dotnet Core, Docker, Kubernetes
Job Description
JPMorganChase is seeking a Lead Security Engineer to join their Cybersecurity Technology & Controls team in Columbus, Ohio, working onsite to shape secure software across multiple technology domains. This role emphasizes building high-quality, tamper-resistant security controls at scale and leveraging AI-assisted development practices to accelerate threat modeling, vulnerability analysis, and secure coding.
Responsibilities
- Design and deliver enterprise-scale security engineering solutions by applying established security patterns to meet the needs of internal product, platform, and application owners.
- Develop secure, production-grade code and maintain algorithms that operate in tandem with relevant systems, ensuring reliability and data integrity at scale.
- Utilize enterprise-authorized AI capabilities to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, while validating outputs and safeguarding sensitive data.
- Apply specialized vulnerability scanning and analysis tools to correlate incident data, identify threats, and assess risk probability and impact; proactively reveal hidden issues to improve coding hygiene and system architecture.
- Produce architecture and design artifacts for complex applications, ensuring design constraints are met throughout the engineering lifecycle.
- Leverage AI-assisted development tools such as GitHub Copilot to accelerate secure software delivery, including code refactoring, test generation, and code review support, while upholding secure coding standards and accountability.
- Support the delivery of agentic AI solutions, including threat modeling of agent behaviors, defining guardrails, and implementing appropriate audit logging controls.
- Lead security-awareness initiatives, training, and exercises to strengthen the team’s security readiness.
- Apply reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability and alignment with resiliency and security expectations.
Requirements
- Formal training or certification in security engineering with 5+ years of applied experience.
- Proficiency in C# on .NET 6 or later and SQL Server/T-SQL for enterprise application development.
- Strong understanding of the Software Development Life Cycle and hands-on experience with version control and CI/CD pipelines (Git, Bitbucket, GitHub, Jenkins).
- Solid knowledge of information and network security, IT risk management, and architectural concepts and patterns.
- Experience with agile methodologies, continuous integration and delivery practices, and application resiliency principles.
- Experience using development and security tools such as Visual Studio and code quality analysis platforms.
- Proven ability to work with enterprise-authorized AI capabilities to support security workflows with robust validation and data-sensitivity awareness.
- Ability to review and validate AI-assisted code and security recommendations before adoption, escalating uncertainty to ensure alignment with security, resiliency, and auditability.
- Proficiency with AI-assisted development tools, including GitHub Copilot, for code generation, refactoring, test creation, and code review within secure usage practices.
- Strong analytical and problem-solving skills with the ability to interpret and communicate complex security risks clearly.
Technologies
- C#, .NET 6
- SQL Server, T-SQL
- Git, Bitbucket, GitHub, Jenkins
- Visual Studio
- GitHub Copilot
- Docker, Kubernetes
- Blazor, Razor, MVC frameworks
- Entity Framework, Entity Framework Core
Benefits
- Comprehensive health care coverage
- On-site health and wellness centers
- Retirement savings plan
- Backup childcare
- Tuition reimbursement
- Mental health support
- Financial coaching
Preferred Qualifications, Capabilities, and Skills
- Experience designing and delivering agentic AI solutions, including multi-step workflows, tool and function calling, and human-in-the-loop approval patterns.
- Familiarity with GenAI solution patterns such as retrieval-augmented generation, embeddings and vector search, and document ingestion pipelines within the .NET ecosystem.
- Experience with modern front-end technologies including Blazor, Razor, or MVC frameworks and Entity Framework or Entity Framework Core.
- Familiarity with containerization and orchestration technologies such as Docker and Kubernetes.
- Experience with multi-threading techniques and asynchronous programming patterns in .NET applications.
- Exposure to cloud technologies with certification in one or more major cloud providers.
Similar Jobs
J
J
J
J
J
J