Lead Infrastructure Engineer - Proxy/SSE Network Security

Sorry, this job was removed at 02:36 p.m. (UTC) on Friday, Sep 04, 2026
Be an Early Applicant
London, Greater London, England, GBR
Hybrid
Senior level
Financial Services
We’re one of the world’s biggest technology-driven companies
The Role
Leads engineering strategy, architecture, delivery, governance, and operations for US perimeter, proxy, SSE, and SASE services. Designs Zero Trust, identity-aware access, secure gateway, egress, segmentation, and cloud connectivity patterns. Oversees Cisco and Arista edge environments, Equinix Fabric, AWS connectivity, remediation, modernization, resilience, observability, and lifecycle management. Supervises engineers, coordinates cross-functional stakeholders, establishes standards and controls, and promotes secure, responsible AI-assisted engineering practices.
Summary Generated by Built In
Assume a vital position as a key member of a high-performing team that delivers infrastructure and performance excellence. Your role will be instrumental in shaping the future at one of the world's largest and most influential companies. 
As a Lead Infrastructure Engineer at JPMorganChase within the Corporate Sector - Enterprise Technology, you apply deep knowledge of software, applications, and technical processes within the infrastructure engineering discipline. Continue to evolve your technical and cross-functional knowledge outside of your aligned domain of expertise. 
Job responsibilities
  • Executes creative Network security software solutions, design, development, and technical troubleshooting with ability to think beyond routine or conventional approaches to build solutions or break down technical problems. Develops secure high-quality production code, and reviews and debugs code written by others
  • Architect and implement Zero Trust Network Access (ZTNA) patterns for user-to-app and user-to-internet access, minimizing implicit trust and reducing lateral movement. Build and operate an Identity-Aware Proxy (IAP) / policy enforcement point for web and application access, enforcing identity, device, and context-based policy decisions. Implement or integrate Secure Gateway / Secure Web Gateway (SWG) capabilities (URL filtering, TLS inspection where approved, malware protection, sandboxing, egress controls, DNS security).
  • Experience with other SaaS based Secure Gateway vendor e.g.  Zscaler, Netskope, paloalto, Broadcom ProxySG etc
  • Drives team adoption of enterprise-authorized AI-assisted engineering practices within the work environment to improve code quality, delivery speed, and operational outcomes (e.g., AI-assisted code review/refactoring, test strategy acceleration, incident/root-cause analysis support), while establishing consistent validation standards (secure coding, peer review, automated testing) and promoting reuse of effective patterns across the team.
  • Applies knowledge of tools within the Software Development Life Cycle toolchain, including enterprise-authorized AI-assisted development and automation capabilities, to improve the value realized by automation.
  • Good understanding of network infrastructure, network security concepts and application layer protocols (http/https) and vulnerability mitigation
  • Identifies opportunities to eliminate or automate remediation of recurring issues to improve overall operational stability of software applications and systems
  • Own the US perimeter, proxy, and SSE/SASE engineering roadmap and execution, including intake, prioritization, dependency management, delivery governance, and stakeholder alignment across cybersecurity, network services, operations, and application and platform teams.
  • Define and operationalize standards, reference architectures, and reusable engineering patterns for perimeter and egress controls, including forward proxy and secure web gateway patterns, access brokering and identity-aware access concepts where applicable, enterprise egress enforcement, segmentation and policy patterns, and design considerations such as TLS inspection and traffic steering, expressed at a pattern and control-integration level.
  • Provide engineering leadership across edge and connectivity adjacencies that materially impact perimeter posture and service delivery, including Cisco and Arista edge environments, colocation and interconnect ecosystems (including Equinix Fabric), and cloud adjacency patterns including AWS Direct Connect and AWS PrivateLink, with awareness of multi-cloud interconnect considerations.
  • Establish and run governance mechanisms that accelerate remediation while preserving strong controls, including backlog governance, exception handling, risk acceptance and closure workflows, traceability and auditability requirements, and reporting that ties delivery milestones to risk reduction and resilience outcomes.
  • Drive operational excellence at scale for perimeter, proxy, and SSE services in the US, including incident, change, and problem management rigor, observability and resiliency validation practices, automation to improve repeatability and evidence quality, reduction of client and partner impact, and execution of Technology Lifecycle Management (TLM) and modernization outcomes tied to stability and risk reduction.

Required qualifications, capabilities, and skills

  • 5+ years in network security / SASE/ SSE/ identity security / security engineering (or equivalent depth).
  • Strong understanding of Zero Trust principles, policy-based access, segmentation, and secure egress.
  • Hands-on experience with proxy/gateway architectures (forward proxy, reverse proxy, IAP patterns) and secure internet access controls.
  • Deep knowledge of SAML, OIDC, OAuth 2.0 concepts, JWT (signing, verification, JWKs, rotation, scopes/claims, replay protection).
  • Demonstrated experience leading effective use of approved AI-assisted software development tools (e.g., for coding, code review, test acceleration, troubleshooting) with the ability to set team expectations for validating AI outputs for correctness, performance, and security.
  • Strong understanding of responsible AI use in engineering workflows, including data sensitivity considerations, secure handling of inputs/outputs, and adherence to resiliency and security expectations; experience coaching engineers on safe, compliant adoption within delivery practices
  • Demonstrated experience delivering regional execution ownership in the US (or North America) for infrastructure and/or security platforms, including prioritization, cross-team coordination, and sustained accountability for operational and delivery outcomes.
  • Experience supervising engineers and delivering cross-team remediation, modernization, and platform programs with clear scope, dependency management, delivery milestones, and measurable outcomes.
  • Strong knowledge of network and perimeter security architecture and controls, including segmentation, routing and policy considerations, encryption and access control patterns, and defense-in-depth design principles.
  • Experience designing, delivering, or operating proxy and/or SSE capabilities at enterprise scale, including the ability to translate security requirements into deployable patterns and operational guardrails.
  • Strong experience translating security requirements into deployable edge and perimeter-adjacent connectivity patterns, including Cisco and Arista environments, and the ability to align engineering decisions to operational and control requirements.
  • Working knowledge of interconnect and colocation connectivity models (including Equinix Fabric) and cloud adjacency patterns including AWS Direct Connect and AWS PrivateLink, with the ability to incorporate these into perimeter and egress designs without compromising stability or controls.

Preferred qualifications, capabilities, and skills

  • Experience integrating US delivery requirements and stakeholder needs into global standards, reference architectures, and governance models while maintaining a consistent global risk posture.
  • Experience leading AI-threat-informed remediation programs, including adapting standards and engineering patterns to account for high-velocity reconnaissance, rapid technique iteration, and automation-driven exploitation attempts, without sacrificing control integrity or operational stability.
  • Experience building enterprise-scale governance programs for security engineering, including controls-by-design, exception frameworks, audit-ready traceability, and measurable risk reduction reporting.
  • Experience with large-scale operations for externally facing or security enforcement services, including observability strategy, resilience testing, incident response alignment, and reduction of repeat incidents and client-impacting events.
  • Experience designing and operating hybrid edge architectures and cloud interconnect patterns across multiple cloud providers.
  • Security certifications such as CISSP, CCSP, or comparable credentials.


About UsJ.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
  
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
About the TeamOur professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.

Skills Required

  • 5+ years of experience in network security, SASE, SSE, identity security, or security engineering, or equivalent depth.
  • Strong understanding of Zero Trust principles, policy-based access, segmentation, and secure egress.
  • Hands-on experience with forward proxy, reverse proxy, IAP, gateway architectures, and secure internet access controls.
  • Deep knowledge of SAML, OIDC, OAuth 2.0, JWT signing and verification, JWK rotation, scopes, claims, and replay protection.
  • Experience leading approved AI-assisted software development tools and validating AI outputs for correctness, performance, and security.
  • Understanding of responsible AI use, data sensitivity, secure input and output handling, resiliency, and security expectations; ability to coach engineers on compliant adoption.
  • Experience owning regional US or North American execution for infrastructure or security platforms, including prioritization, coordination, and operational accountability.
  • Experience supervising engineers and delivering cross-team remediation, modernization, and platform programs.
  • Strong knowledge of network and perimeter security architecture, segmentation, routing, encryption, access control, and defense-in-depth principles.
  • Experience designing, delivering, or operating enterprise-scale proxy or SSE capabilities and translating security requirements into deployable patterns and guardrails.
  • Experience translating security requirements into edge and perimeter connectivity patterns involving Cisco and Arista environments.
  • Working knowledge of Equinix Fabric, AWS Direct Connect, AWS PrivateLink, interconnect, colocation, and cloud adjacency models.
  • Experience integrating US delivery requirements into global standards, reference architectures, and governance models.
  • Experience leading AI-threat-informed remediation programs.
  • Experience building enterprise-scale security engineering governance programs with controls-by-design, exception frameworks, audit traceability, and risk reporting.
  • Experience operating externally facing or security enforcement services at scale, including observability, resilience testing, incident response alignment, and repeat-incident reduction.
  • Experience designing and operating hybrid edge architectures and multi-cloud interconnect patterns.
  • Security certifications such as CISSP or CCSP.

JPMorganChase Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about JPMorganChase and has not been reviewed or approved by JPMorganChase.

  • Healthcare Strength Medical, dental, vision, and mental-health coverage are broad, with wellness incentives, on-site or virtual care, and an EAP offering coaching and counseling. Plan materials emphasize accessible options, including multiple medical choices and tools to manage costs.
  • Parental & Family Support Paid parental leave extends up to 16 weeks for all parents, supplemented by paid Critical Caregiver Leave. Family resources include backup childcare via Bright Horizons, lactation support and milk-shipping, family-building assistance, and even a free five-month SNOO rental for newborns.
  • Retirement Support Retirement programs include a 401(k) with an annual company match and automatic pay credits for most employees, with a legacy pension available to earlier hires. An Employee Stock Purchase Plan at a 5% discount further supports long-term savings.

JPMorganChase Insights

Similar Jobs

bet365 Logo bet365

Software Tester, Martech

Digital Media • Gaming • Software • Esports • Automation
Hybrid
Stoke-on-Trent, Staffordshire, England, GBR
10000 Employees

bet365 Logo bet365

Software Tester, Martech

Digital Media • Gaming • Software • Esports • Automation
Hybrid
Manchester, Greater Manchester, England, GBR
10000 Employees

Wise Logo Wise

Business Operations Senior Manager

Fintech • Mobile • Payments • Software • Financial Services
Hybrid
London, Greater London, England, GBR
9000 Employees

Wise Logo Wise

Bank Payment Partnerships Manager - Europe

Fintech • Mobile • Payments • Software • Financial Services
Hybrid
London, Greater London, England, GBR
9000 Employees
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
289,097 Employees
Year Founded: 1799

What We Do

JPMorgan Chase & Co. (NYSE: JPM) is a leading global financial services firm with assets of $3.7 trillion and operations worldwide. The firm is a leader in investment banking, financial services for consumers and small businesses, commercial banking, financial transaction processing, and asset management. A component of the Dow Jones Industrial Average, JPMorgan Chase & Co. serves millions of consumers in the United States and many of the world’s most prominent corporate, institutional and government clients under its J.P. Morgan and Chase brands. Technology fuels every aspect of our company and is at the heart of everything we do. With over 50,000 technologists globally and an annual tech spend of $12 billion, we are dedicated to improving the design, analytics, development, coding, testing and application programming that goes into creating high quality software and new products. Learn more about technology at our firm, explore resources from our Distinguished Engineers, AI & ML researchers, and other experts; access the latest episode of our TechTrends podcast, and more at www.jpmorgan.com/technology. Information about JPMorgan Chase & Co. is available at www.jpmorganchase.com. ©2023 JPMorgan Chase & Co. All rights reserved. JPMorgan Chase is an Equal Opportunity Employer, including Disability/Veterans.

Why Work With Us

Our technologists work on a diverse range of solutions that include strategic technology initiatives, big data, mobile, electronic payments, machine learning, cybersecurity, enterprise cloud development, and other state-of-the-art technologies.

Gallery

Gallery

Similar Companies Hiring

Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account