368,910open jobs
9,449companies
47,822added this week
Browse all
Location
In office
Seniority
Staff
Overview
Company
Impact
Profile match
JPMorgan Chase & Co. is a leading global financial services firm and the largest banking institution in the United States by assets. Headquartered in New York City, the company offers a comprehensive range of financial solutions, including investment banking, asset management, treasury services, and commercial banking. Through its widely recognized consumer division, Chase, it delivers retail banking, credit card, and mortgage services to tens of millions of households across the globe.

Join one of the world’s most influential companies and leverage your cybersecurity expertise to make a direct and meaningful impact across the financial industry.

As a Senior Lead Security Engineer at JPMorganChase within Cybersecurity and Technology Controls, you will partner with product, technology, and business stakeholders to evaluate the security of new features, platforms, applications, and third-party solutions. You will apply secure design principles, threat modeling, and risk-based decision-making to reduce misuse, circumvention, and malicious behavior across modern technology environments. You will serve as a senior technical advisor, translating complex findings into clear mitigation options, architecture recommendations, and risk narratives for senior stakeholders.

Job responsibilities

  • Provide technical guidance and direction to product, engineering, business, contractor, and vendor teams to support secure design and delivery of new capabilities
  • Conduct and maintain threat models, threat assessments, and secure design reviews for enterprise applications, cloud platforms, application programming interfaces, integrations, and third-party vendor solutions
  • Identify, document, and communicate cybersecurity risks, mitigation options, compensating controls, and recommended solutions across multiple technical areas and business functions
  • Partner with stakeholders and senior business leaders to recommend design, implementation, or operational changes during periods of vulnerability, incident response, remediation, or emerging risk
  • Evaluate current and emerging technologies, including external vendor offerings and internal platforms, through outcomes-oriented review of security designs, technical capabilities, and fit within existing systems and cybersecurity architecture
  • Identify opportunities to eliminate, reduce, or automate recurring security issues and improve the overall security posture of applications, systems, and technology processes
  • Leverage enterprise-authorized artificial intelligence capabilities to accelerate security architecture and engineering workflows (for example, risk identification, threat assessment synthesis, documentation, and decision support), while validating outputs and handling data according to sensitivity and security requirements
  • Drive reuse-first adoption of artificial intelligence-assisted security validation within the software development life cycle and delivery toolchain to improve control testing, remediation quality, traceability, auditability, and resiliency
  • Lead or contribute to communities of practice that promote awareness, consistency, and adoption of cybersecurity technologies, secure design patterns, and risk management practices

Required qualifications, capabilities and skills

  • Formal training or certification in cybersecurity, security architecture, security engineering, or a related technical discipline, with 5+ years of applied experience
  • Hands-on experience delivering, advising on, or implementing enterprise cybersecurity solutions, security controls, secure design patterns, or risk mitigation strategies
  • Expertise in threat modeling, threat assessments, secure design reviews, vulnerability analysis, risk evaluation, and security requirements definition
  • Proficiency in modern technology environments across one or more disciplines such as public cloud, application programming interfaces, identity and access management, artificial intelligence and machine learning, mobile, infrastructure, or application security
  • Ability to evaluate current and emerging technologies and recommend practical security solutions aligned to target architecture, business priorities, resiliency expectations, and risk appetite
  • Deep expertise in one or more programming languages, platforms, cloud services, security tools, or application technologies, with the ability to review technical designs and engage credibly with engineering teams
  • Experience partnering with product and technology teams to remediate vulnerabilities, incidents, control gaps, recurring issues, or design weaknesses
  • Experience using enterprise-authorized artificial intelligence capabilities to support cybersecurity workflows, with strong validation practices and awareness of data sensitivity
  • Strong written and verbal communication skills, including the ability to explain complex technical risks, trade-offs, and recommendations to senior business leaders and technical stakeholders

Preferred qualifications, capabilities and skills

  • Experience with cloud-native security architecture, application programming interface security, identity federation, OAuth, SAML, secrets management, service-to-service authentication, or Zero Trust patterns
  • Familiarity with vulnerability management, penetration testing outputs, security testing methodologies, incident remediation, or secure-by-design practices
  • Experience evaluating third-party vendor solutions, software as a service platforms, integrations, or emerging technologies from a cybersecurity architecture and risk perspective
  • Knowledge of security capabilities such as Security Service Edge, Cloud Access Security Broker, Security Information and Event Management, application programming interface gateways, proxy technologies, traffic inspection, or security monitoring platforms
  • Experience leading cross-functional security reviews, design forums, architecture governance discussions, or communities of practice
  • Ability to balance technical depth with pragmatic, risk-based decision-making in complex enterprise environments
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,910 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
DevOps Engineer 2 1 day ago
$18k – $52k per year (Estimated) • In office • 3+ years exp • Bengaluru
Java
Python
Databases
Amazon Redshift
Apache Kafka
ElasticSearch
Redis
DevOps
Amazon EC2
Amazon EKS
ArgoCD
AWS
CI/CD
Docker
GCP
Grafana
Jenkins
Kubernetes
New Relic
Opsgenie
Prometheus
Terraform
Ubuntu
Amazon S3
IAM
Cybersecurity
Threat Modeling
Apply
$42k – $49k per year (net) • In office • Full-Time • Bachelor's Degree • Moscow
Go
Python
Rust
TypeScript
DevOps
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
CVE
ISO 27001
PCI DSS
SOC 2
Threat Modeling
Web3
Smart Contracts
Apply
$220k – $325k per year • Remote/Hybrid • Full-Time • 15+ years exp • New York
DevOps
AWS
Azure
CI/CD
GCP
Kubernetes
Platform Engineering
Cybersecurity
Threat Modeling
Apply
$14k – $36k per year (Estimated) • Remote/Hybrid • Full-Time • 2+ years exp • Yekaterinburg
C#
Go
Python
Rust
Databases
Milvus
pgvector
Qdrant
PostgreSQL
AI/ML
Dify
LLM
RAG
Function Calling
Model Context Protocol
DevOps
Kubernetes
Cybersecurity
Threat Modeling
Chips/EDA
PoC Library
Management
n8n
Apply
$230k – $290k per year • Equity • Remote • Cofounder • 5+ years exp
AI/ML
Claude
Claude Code
Gemini
AI Agents
OpenAI
OpenAI Codex
DevOps
Cloudflare
Docker
Cybersecurity
Semgrep
Snyk
Threat Modeling
Wiz
Design
Figma
Marketing
Salesforce
Apply
$102k – $271k per year (Estimated) • In office • Bachelor's Degree • Singapore
Java
PowerShell
Python
C#
Java
Spring Boot
C#
.NET
Databases
Databricks
DevOps
CI/CD
Grafana
Splunk
IAM
Apply
$17k – $37k per year (Estimated) • In office • Bachelor's Degree • Mumbai
Python
SQL
AI/ML
Streamlit
Analytics
Tableau
Apply
$67k – $171k per year (Estimated) • In office • Bachelor's Degree • Singapore
JavaScript
Python
SQL
YARA
DevOps
AWS
AWS Lambda
Azure
VMWare
Cybersecurity
Ghidra
IDA Pro
Wireshark
YARA
Apply
$85k – $202k per year (Estimated) • In office • Full-Time • Tempe
Apply
$84k – $200k per year (Estimated) • In office • Full-Time • Columbus
Apply
See all jobs
This is one of many
368,910 more open roles from verified company boards, updated every day.