Senior Lead Security Engineer
Listed on 2026-09-20
-
IT/Tech
Cybersecurity
Join one of the world’s most influential companies and leverage your cybersecurity expertise to make a direct and meaningful impact across the financial industry.
As a Senior Lead Security Engineer at JPMorgan
Chase within Cybersecurity and Technology Controls, you will partner with product, technology, and business stakeholders to evaluate the security of new features, platforms, applications, and third‑party solutions. You will apply secure design principles, threat modeling, and risk‑based decision‑making to reduce misuse, circumvention, and malicious behaviour across modern technology environments. You will serve as a senior technical advisor, translating complex findings into clear mitigation options, architecture recommendations, and risk narratives for senior stakeholders.
responsibilities
- Provide technical guidance and direction to product, engineering, business, contractor, and vendor teams to support secure design and delivery of new capabilities
- Conduct and maintain threat models, threat assessments, and secure design reviews for enterprise applications, cloud platforms, application programming interfaces, integrations, and third‑party vendor solutions
- Identify, document, and communicate cybersecurity risks, mitigation options, compensating controls, and recommended solutions across multiple technical areas and business functions
- Partner with stakeholders and senior business leaders to recommend design, implementation, or operational changes during periods of vulnerability, incident response, remediation, or emerging risk
- Evaluate current and emerging technologies, including external vendor offerings and internal platforms, through outcomes‑oriented review of security designs, technical capabilities, and fit within existing systems and cybersecurity architecture
- Identify opportunities to eliminate, reduce, or automate recurring security issues and improve the overall security posture of applications, systems, and technology processes
- Leverage enterprise‑authorized artificial intelligence capabilities to accelerate security architecture and engineering workflows (for example, risk identification, threat assessment synthesis, documentation, and decision support), while validating outputs and handling data according to sensitivity and security requirements
- Drive reuse‑first adoption of artificial intelligence–assisted security validation within the software development life cycle and delivery toolchain to improve control testing, remediation quality, traceability, auditability, and resiliency
- Lead or contribute to communities of practice that promote awareness, consistency, and adoption of cybersecurity technologies, secure design patterns, and risk management practices
- Formal training or certification in cybersecurity, security architecture, security engineering, or a related technical discipline, with 5+ years of applied experience
- Hands‑on experience delivering, advising on, or implementing enterprise cybersecurity solutions, security controls, secure design patterns, or risk mitigation strategies
- Expertise in threat modeling, threat assessments, secure design reviews, vulnerability analysis, risk evaluation, and security requirements definition
- Proficiency in modern technology environments across one or more disciplines such as public cloud, application programming interfaces, identity and access management, artificial intelligence and machine learning, mobile, infrastructure, or application security
- Ability to evaluate current and emerging technologies and recommend practical security solutions aligned to target architecture, business priorities, resiliency expectations, and risk appetite
- Deep expertise in one or more programming…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).