J
Security Engineer III-Python, Bash, Vulnerability Assessments
Job Description
Security Engineer III within JPMorganChase's Cybersecurity & Technology Controls, Runtime Vulnerability Assessment team operates and advances the firm's global vulnerability scanning program to enable timely detection across assets from on-premises data centers to cloud environments.
Responsibilities
- Manage the global scanner fleet, including appliance deployment, health monitoring, scan profile tuning, and recovery across Asia-Pacific, Europe, the Middle East & Africa, and North American data centers.
- Build and maintain automation tooling for scanner lifecycle management, covering provisioning frameworks, Linux and Windows agent packaging, and integration with internal deployment pipelines.
- Utilize enterprise-authorized AI capabilities to accelerate security analysis and vulnerability documentation, validating outputs and ensuring proper handling of sensitive data.
- Apply vulnerability scanning platforms to measure detection coverage, correlate findings, and identify gaps across managed and unmanaged asset populations.
- Collaborate with infrastructure and cloud engineering teams to ensure scan reachability across segmented networks, cloud workloads, and hybrid environments.
- Contribute to operational runbooks, continuity documentation, and coverage exercises to sustain scanning through infrastructure changes and major platform events.
- Analyze scan data and detection trends to surface actionable insights that inform enterprise risk prioritization and remediation workflows.
- Partner with cross-functional teams to support compliance scanning requirements and ensure alignment with regulatory and audit standards.
- Apply reuse-first, AI-assisted practices within SDLC and toolchains to strengthen security testing and control validation, ensuring traceability and alignment to resiliency and security expectations.
- Champion engineering best practices, including infrastructure-as-code, version control, and change management within the vulnerability management program.
Requirements
- Formal training or certification in security engineering concepts plus a minimum of three years of practical experience.
- Experience designing and operating enterprise-scale vulnerability scanning solutions, including scanner infrastructure, agent management, and scan orchestration.
- Proficiency in scripting and automation with Python, Bash, PowerShell, or configuration management frameworks.
- Demonstrated experience using enterprise-authorized AI capabilities in security engineering workflows with strong validation habits and awareness of data sensitivity.
- Ability to review and validate AI-assisted code and security recommendations before use, escalating when uncertain and adhering to security and data handling requirements.
- Solid understanding of the software development lifecycle, including infrastructure-as-code practices and change management controls.
- Working knowledge of network fundamentals, including segmentation, firewall rules, and connectivity as they relate to scan reachability.
- Familiarity with agile methodologies and CI/CD practices within a security engineering context.
- Ability to communicate technical findings and operational risks clearly to both technical and non-technical stakeholders.
Technologies
- Python
- Bash
- PowerShell
- Qualys
- Tenable
Benefits
- Comprehensive health care coverage
- On-site health and wellness centers
- Retirement savings plan
- Backup childcare
- Tuition reimbursement
- Mental health support
- Financial coaching
- Commission-based pay and/or discretionary incentive compensation (cash and/or forfeitable equity)
Similar Jobs
J
J
J
J
J
J