Cloud Security Architect at JPMorgan Chase (Dallas, TX)
Sorry, this job was removed at 11:23 a.m. (CST) on Thursday, December 8, 2022
By clicking Apply Now you agree to share your profile information with the hiring company.
Job Description As an experienced professional in our cybersecurity organization, you won't just watch over our data - you will find innovative new ways to protect it today and into the future. To do that, you'll focus on analyzing, designing, developing and delivering solutions built to stop adversaries and strengthen our security postures. You'll use your skills to secure complex environments, guide others, advise on best practices and support our business and technology groups on a global basis. You'll help secure the firm through secure design principals, harden reference architectures, best practices, new policies and emerging trends to strengthen our strategic roadmap. You will interface with staff at all levels of the organization and the ability to remain technical while managing business expectations is highly important. By presenting your findings to senior leaders, you'll sharpen your communication and presentation skills. As part of our global team of technologists and innovators, your work will have a critical impact on our company, as well as our clients and our business partners around the world.
Role and Responsibilities:
Required Skills
Desired Skills
About Us JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as any mental health or physical disability needs.
The health and safety of our colleagues, candidates, clients and communities has been a top priority in light of the COVID-19 pandemic. JPMorgan Chase was awarded the "WELL Health-Safety Rating" for all of our 6,200 locations globally based on our operational policies, maintenance protocols, stakeholder engagement and emergency plans to address a post-COVID-19 environment.
As a part of our commitment to health and safety, we have implemented various COVID-related health and safety requirements for our workforce. Employees are expected to follow the Firm's current COVID-19 or other infectious disease health and safety requirements, including local requirements. Requirements include sharing information including your vaccine card in the firm's vaccine record tool, and may include mask wearing. Requirements may change in the future with the evolving public health landscape. JPMorgan Chase will consider accommodation requests as required by applicable law.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set, and location. For those in eligible roles, discretionary incentive compensation which may be awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
Equal Opportunity Employer/Disability/Veterans
About the Team The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm's cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group's number one priority is to enable the business by keeping the firm safe, stable and resilient.
High Risk Roles (HRR) are sensitive roles within the technology organization that require high assurance of the integrity of staff by virtue of 1) sensitive cybersecurity and technology functions they perform within systems or 2) information they receive regarding sensitive cybersecurity or technology matters. Users in these roles are subject to enhanced pre-hire screening which includes both criminal and credit background checks (as allowed by law). The enhanced screening will need to be successfully completed prior to commencing employment or assignment.
Role and Responsibilities:
- This is an architect & trusted advisor role.
- Define, Deliver and maintain secure architecture throughout the existing and future environments, consisting of complex, global architectures.
- Secure modern technologies such as cloud, Kubernetes, containers, & serverless platforms to support the business, while remaining secure and mitigating risk.
- Provide Subject Matter Expertise for Cyber Defense teams and multiple lines of business, forums, panels, internal and external auditors, business partners, and senior management.
- Introduce improvements in implementation patterns and architectural design concepts.
- Be a strong technologist and a natural collaborator across the firm.
- Research, design and apply advanced security techniques.
- Manage individual project priorities, deadlines and deliverables.
- Perform detailed gap analysis for impacting Regulatory events
- Partnering with our Commercial and Investment Bank and other technical teams to ensure area owners are advise and oversee security design and implementation, applied in a timely manner.
- Providing input to strategic discussions to stakeholders inside the group and across the firm associated with improvement opportunities.
- Providing regular management reporting to senior management and relevant stakeholders in business units.
Required Skills
- Demonstrable experience in Information security in an operations, engineering, or architect role.
- Professional experience with modern technologies such as public and private cloud (AWS, GCP, Azure, etc.), containerization and orchestration (Kubernetes), & microservice architectures.
- Successful candidate is likely to have held roles such as Security Architect, IT Risk Manager, DevOps/DevSecOps Engineer, Cloud Security Engineer, ideally within a regulated financial services environment.
- Well versed in application and secure software design principles, common attack patterns, OWASP top 10 risks/vulnerabilities/solutions and frameworks, etc.
- Understanding of Identity and Access Management in an enterprise and hybrid environments, not limited to SSO, Oauth, SAML, AD & ADFS, Privileged Access Management, RBAC, etc.
- Experience in risk-based authentication and step up protective measures.
- Understanding of information security and risk management challenges, issues mitigations and remediation in a multi-national enterprise environment.
- Knowledge in Agile and can work with at least one of the common frameworks
- Breadth of experience across domains (e.g., enterprise security architecture, compute services, storage, networking, virtualization, data center, integration architecture (API), orchestration technologies (Openstack/Cisco), application development lifecycle management (DevOps, CI/CD), and service delivery).
Desired Skills
- Hands on experience of data analytics products in Public Cloud such as Redshift, Snowflake, EMR, Lake Formation, Data Pipeline etc.
- Demonstrable scripting/programming experience in one or more of the modern languages: Python/Ruby/Javascript/NodeJS/Perl/Bash/Java/C#/C++
- Cloud data analytics/architect/security certifications including AWS Data Analytics Specialty, AWS Solutions Architect Professional, AWS Security Specialty or GCP/Azure equivalents
- Knowledge of Threat Intel, APT groups, malware analysis, MITRE ATT&CK framework
- Conduct manual, language agnostic code review to identify security related vulnerabilities
About Us JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as any mental health or physical disability needs.
The health and safety of our colleagues, candidates, clients and communities has been a top priority in light of the COVID-19 pandemic. JPMorgan Chase was awarded the "WELL Health-Safety Rating" for all of our 6,200 locations globally based on our operational policies, maintenance protocols, stakeholder engagement and emergency plans to address a post-COVID-19 environment.
As a part of our commitment to health and safety, we have implemented various COVID-related health and safety requirements for our workforce. Employees are expected to follow the Firm's current COVID-19 or other infectious disease health and safety requirements, including local requirements. Requirements include sharing information including your vaccine card in the firm's vaccine record tool, and may include mask wearing. Requirements may change in the future with the evolving public health landscape. JPMorgan Chase will consider accommodation requests as required by applicable law.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set, and location. For those in eligible roles, discretionary incentive compensation which may be awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
Equal Opportunity Employer/Disability/Veterans
About the Team The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm's cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group's number one priority is to enable the business by keeping the firm safe, stable and resilient.
High Risk Roles (HRR) are sensitive roles within the technology organization that require high assurance of the integrity of staff by virtue of 1) sensitive cybersecurity and technology functions they perform within systems or 2) information they receive regarding sensitive cybersecurity or technology matters. Users in these roles are subject to enhanced pre-hire screening which includes both criminal and credit background checks (as allowed by law). The enhanced screening will need to be successfully completed prior to commencing employment or assignment.
See More