As a Lead Security Engineer at JPMorganChase within the Cybersecurity and Technology Controls you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Drive significant business impact through your capabilities and contributions and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains.
Job responsibilities
- Facilitates security requirements clarification for multiple networks to enable networks with multi-level security to satisfy organizational needs
- Uses enterprise-authorized AI capabilities within the work environment to accelerate security risk analysis and documentation (e.g., synthesizing threat assessments), validating outputs and ensuring sensitive data is handled appropriately.
- Works with stakeholders and senior business leaders to recommend business modifications during periods of vulnerability
- Responsible for triaging based on risk assessments of various threats and managing resources to cover impact of disruptive events
- Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.
- Establish secure-by-design engineering practices (threat modeling, secure coding standards, dependency hygiene, security testing) integrated into the SDLC/CI/CD.
- Works effectively with Product, Data, Security, and Risk/Compliance to shape requirements, define controls, and drive approvals without stalling delivery.
- Coaches engineers on agent patterns, secure coding, and testing; raises the bar through pairing, design reviews, and documentation that scales.
- Sets a coherent architecture, makes trade-offs explicit (quality vs. latency vs. cost vs. risk), and aligns stakeholders on a roadmap that reduces rework.
- Formal training or certification on software engineering concepts and advanced applied experience
- Skilled in planning, designing, and implementing enterprise-level security solutions
- Proven experience designing and delivering production-grade AI agent platforms or services — including orchestration, tool routing, memory and state management, and failure handling — or equivalent distributed systems
- Advanced proficiency in one or more programming languages with the ability to tackle design and functionality problems independently with little to no oversight
- Advanced knowledge of software application development and technical processes with considerable depth in one or more disciplines such as cloud, artificial intelligence, machine learning, or mobile
- Extensive experience with threat modeling, discovery, vulnerability assessment, and penetration testing
- Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows, with strong validation habits and awareness of data sensitivity
- Ability to review and validate AI-assisted security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations
- Ability to design multi-step agent workflows — including planning, execution, reflection, memory, tool routing, and guardrails — with state management and recovery from partial failures
- Advanced Cloud, AI and Cybersecurity certifications such as AWS Certified Generative AI Developer, AWS DevOps, OCP, CCSP
- Demonstrated experience with multiple programming languages: Java, Python
- Demonstrated experience of designing, developing and running large scale systems on AWS and Infrastructure as Code (Terraform)
Skills Required
- Formal training or certification in security engineering concepts
- 5+ years of applied security engineering experience for NAMR/APAC India, LATAM, and Hong Kong roles, or advanced applied experience for EMEA/LATAM-Brazil roles; Singapore follows local guidance
- Experience planning, designing, and implementing enterprise-level security solutions
- Demonstrated experience using enterprise-authorized AI capabilities in security engineering workflows
- Ability to validate AI-assisted code and security recommendations, escalate uncertainty, and protect sensitive data
- Advanced proficiency in at least one programming language
- Proficiency across SDLC execution, including agile methodologies, CI/CD, application resiliency, and security
- Experience with threat modeling, discovery, vulnerability assessment, and penetration testing
JPMorganChase Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about JPMorganChase and has not been reviewed or approved by JPMorganChase.
-
Healthcare Strength — Medical, dental, vision, and mental-health coverage are broad, with wellness incentives, on-site or virtual care, and an EAP offering coaching and counseling. Plan materials emphasize accessible options, including multiple medical choices and tools to manage costs.
-
Parental & Family Support — Paid parental leave extends up to 16 weeks for all parents, supplemented by paid Critical Caregiver Leave. Family resources include backup childcare via Bright Horizons, lactation support and milk-shipping, family-building assistance, and even a free five-month SNOO rental for newborns.
-
Retirement Support — Retirement programs include a 401(k) with an annual company match and automatic pay credits for most employees, with a legacy pension available to earlier hires. An Employee Stock Purchase Plan at a 5% discount further supports long-term savings.
JPMorganChase Insights
What We Do
JPMorgan Chase & Co. (NYSE: JPM) is a leading global financial services firm with assets of $3.7 trillion and operations worldwide. The firm is a leader in investment banking, financial services for consumers and small businesses, commercial banking, financial transaction processing, and asset management. A component of the Dow Jones Industrial Average, JPMorgan Chase & Co. serves millions of consumers in the United States and many of the world’s most prominent corporate, institutional and government clients under its J.P. Morgan and Chase brands. Technology fuels every aspect of our company and is at the heart of everything we do. With over 50,000 technologists globally and an annual tech spend of $12 billion, we are dedicated to improving the design, analytics, development, coding, testing and application programming that goes into creating high quality software and new products. Learn more about technology at our firm, explore resources from our Distinguished Engineers, AI & ML researchers, and other experts; access the latest episode of our TechTrends podcast, and more at www.jpmorgan.com/technology. Information about JPMorgan Chase & Co. is available at www.jpmorganchase.com. ©2023 JPMorgan Chase & Co. All rights reserved. JPMorgan Chase is an Equal Opportunity Employer, including Disability/Veterans.
Why Work With Us
Our technologists work on a diverse range of solutions that include strategic technology initiatives, big data, mobile, electronic payments, machine learning, cybersecurity, enterprise cloud development, and other state-of-the-art technologies.
Gallery





