Sr Lead Security Engineer
Job Description
Benefits
- Comprehensive health care coverage
- On-site health and wellness centers
- Retirement savings plan
- Backup childcare
- Tuition reimbursement
- Mental health support
- Financial coaching
Responsibilities
- Provide ongoing technical guidance to support the business and its technical teams, contractors, and vendors
- Develop secure, high-quality production code and review or debug code written by others
- Clarify security requirements across multiple networks to enable multi-level security aligned with organizational needs
- Collaborate with stakeholders and senior leaders to propose business modifications during periods of vulnerability
- Serve as a function-wide subject matter expert in one or more focus areas; influence peers and project decision-makers to adopt leading-edge technologies
- Apply reuse-first and AI-assisted practices within SDLC and toolchains to strengthen security testing, traceability, and alignment with resiliency and security expectations
- Leverage enterprise-authorized AI capabilities to accelerate security risk analysis and documentation, synthesizing threat assessments with proper validation and data handling
Requirements
- Formal training or certification with 5+ years of experience in cloud service development and integration; proficient in OAuth, SAML, API security, and identity federation; experience building high-performance API-first services and integrating tooling
- Ability to plan, design, and implement enterprise security solutions with hands-on experience delivering system design, application development, testing, and operational stability
- Advanced proficiency in one or more programming languages: C#, C++, Go, Python, Java
- Extensive knowledge of software development processes with deep expertise in cloud, artificial intelligence, machine learning, or mobile domains; solid experience with threat modeling, vulnerability discovery, and penetration testing
- Capability to tackle design and functionality problems independently with minimal oversight; strong knowledge of HTTP/HTTPS, SSL/TLS inspection, traffic interception, and API gateway patterns
- Experience using enterprise-authorized AI capabilities to support security engineering workflows with rigorous validation and awareness of data sensitivity
- Ability to review and validate AI-assisted security recommendations before adoption, ensuring alignment with security, resiliency, and auditability expectations
Technologies
- OAuth
- SAML
- API security
- Identity federation
- C#, C++, Go, Python, Java
- HTTP/HTTPS, SSL/TLS
- API gateway patterns
- API Gateway Development, Custom proxy
- VPM development, SSE, CASB, SIEM
- Cloud, Artificial intelligence, Machine learning, Mobile
- Enterprise-authorized AI capabilities, AI-assisted security workflows
About JPMorganChase
JPMorgan Chase & Co is a long established financial institution delivering innovative solutions to millions of consumers, small businesses, and a wide range of corporate, institutional, and government clients under the J.P. Morgan and Chase brands. With a history spanning more than 200 years, the firm leads in investment banking, consumer and business banking, commercial banking, financial transaction processing, and asset management. The company offers a competitive total rewards package, including base salary determined by role, experience, and location, with eligibility for incentive compensation. A focus on diversity and inclusion informs all operations, and JPMorgan Chase is an Equal Opportunity Employer, including Disability/Veterans.
About the team
Our Corporate Functions span finance and risk, human resources, and marketing, forming an essential backbone that helps ensure the success of our businesses, clients, customers, and employees.