As a Senior Lead Security Engineer at JPMorganChase within CTC, you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Drive significant business impact through your capabilities and contributions and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains.
Job Responsibilities
- Lead the strategy, architecture, engineering, and lifecycle management of enterprise email security platforms protecting critical business communications.
- Define and drive the roadmap for email security capabilities, including secure email gateways, phishing protection, threat detection and response, encryption, data loss prevention (DLP), and cloud-based security services.
- Serve as the technical authority for email security architecture, ensuring solutions align with cybersecurity, resiliency, regulatory, and multi-level security requirements.
- Partner with Cyber, Technology, Risk, Compliance, Audit, and business stakeholders to assess threats, prioritize investments, clarify security requirements, and manage security risk.
- Lead complex engineering and modernization initiatives from concept through deployment, including proof-of-value evaluations, migrations, technology upgrades, and platform transformations.
- Drive incident response, threat analysis, risk assessments, and remediation activities related to phishing, business email compromise (BEC), malicious campaigns, and emerging email-borne threats.
- Establish metrics, KPIs, and reporting that demonstrate platform effectiveness, threat reduction, operational performance, resiliency, and business value.
- Develop executive-level presentations, strategy papers, management updates, and governance communications for senior leadership, risk committees, and oversight forums.
- Manage vendor relationships and drive accountability for product roadmaps, operational performance, risk remediation, and contractual commitments.
- Mentor and lead engineering teams while fostering a culture of innovation, operational excellence, continuous improvement, and effective resource management during disruptive events.
- Leverage enterprise-authorized AI capabilities and reuse-first engineering practices to accelerate security analysis, testing, control validation, and documentation while ensuring data protection, auditability, and compliance.
Required Qualifications, Capabilities, and Skills
- 10+ years of cybersecurity experience, including significant experience leading enterprise email security programs and engineering teams.
- Deep expertise in email security technologies, including secure email gateways, phishing protection, threat detection, encryption, cloud email security platforms, and email authentication standards (SPF, DKIM, and DMARC).
- Proven experience designing, implementing, and operating enterprise-scale security architectures within highly regulated environments.
- Advanced knowledge of software engineering, application development, and technical disciplines such as cloud computing, artificial intelligence, machine learning, or related technologies.
- Strong experience with threat modeling, vulnerability assessments, penetration testing, risk analysis, and security control validation.
- Advanced proficiency in one or more programming or automation languages, with the ability to solve complex technical problems independently.
- Demonstrated experience leveraging enterprise-authorized AI capabilities in engineering workflows, including validating AI-assisted recommendations and maintaining awareness of data sensitivity, resiliency, and audit requirements.
- Strong understanding of cybersecurity frameworks, risk management practices, regulatory expectations, and audit requirements.
- Demonstrated ability to lead large cross-functional initiatives involving Cybersecurity, Infrastructure, Engineering, Risk, Compliance, Audit, Vendor Management, and business organizations.
- Strong executive communication skills, including experience presenting technical strategies, risks, business cases, roadmaps, metrics, investment recommendations, and program status to senior leadership.
- Exceptional leadership, influence, and problem-solving skills with the ability to build consensus, drive decisions, balance strategic priorities, and deliver measurable risk-reduction outcomes across diverse stakeholder groups.
Preferred Qualifications
- Experience securing Microsoft 365, Exchange Online, Local Exchange/Outlook and other similar enterprise email security platforms.
- Experience leading large-scale email security transformation or modernization initiatives.
- CISSP, CCSP, CISM, or equivalent industry certifications.
- Experience within financial services, banking, or another highly regulated industry.
- Experience supporting regulatory examinations, internal audits, and third-party risk assessments.
- Familiarity with AI-driven security operations, threat detection, and email risk analytics.
#CTC
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
Skills Required
- 10+ years of cybersecurity experience, including significant experience leading enterprise email security programs and engineering teams.
- Deep expertise in secure email gateways, phishing protection, threat detection, encryption, cloud email security platforms, and SPF, DKIM, and DMARC.
- Experience designing, implementing, and operating enterprise-scale security architectures in highly regulated environments.
- Advanced knowledge of software engineering, application development, cloud computing, artificial intelligence, machine learning, or related technologies.
- Experience with threat modeling, vulnerability assessments, penetration testing, risk analysis, and security control validation.
- Advanced proficiency in one or more programming or automation languages.
- Experience leveraging enterprise-authorized AI capabilities in engineering workflows while addressing data sensitivity, resiliency, and audit requirements.
- Understanding of cybersecurity frameworks, risk management practices, regulatory expectations, and audit requirements.
- Experience leading large cross-functional initiatives involving cybersecurity, infrastructure, engineering, risk, compliance, audit, vendor management, and business organizations.
- Strong executive communication skills, including presenting technical strategies, risks, business cases, roadmaps, metrics, investment recommendations, and program status.
- Exceptional leadership, influence, problem-solving, consensus-building, decision-making, and risk-reduction skills.
- Experience securing Microsoft 365, Exchange Online, local Exchange, Outlook, and similar enterprise email security platforms.
- Experience leading large-scale email security transformation or modernization initiatives.
- CISSP, CCSP, CISM, or equivalent industry certification.
- Experience in financial services, banking, or another highly regulated industry.
- Experience supporting regulatory examinations, internal audits, and third-party risk assessments.
- Familiarity with AI-driven security operations, threat detection, and email risk analytics.
JPMorganChase Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about JPMorganChase and has not been reviewed or approved by JPMorganChase.
-
Healthcare Strength — Health coverage is considered comprehensive, including medical, dental, and vision, alongside wellness and mental health resources. Some locations add onsite health centers and related wellbeing support.
-
Retirement Support — Retirement offerings include a 401(k)-type savings plan and related financial benefits, with options such as employee stock purchase participation. Financial planning resources are also highlighted to support long-term savings.
-
Parental & Family Support — Paid parental leave of 16 weeks for birth or adoption is available for all parents. Child care and back-up child care resources further reinforce family support.
JPMorganChase Insights
What We Do
JPMorgan Chase & Co. (NYSE: JPM) is a leading global financial services firm with assets of $3.7 trillion and operations worldwide. The firm is a leader in investment banking, financial services for consumers and small businesses, commercial banking, financial transaction processing, and asset management. A component of the Dow Jones Industrial Average, JPMorgan Chase & Co. serves millions of consumers in the United States and many of the world’s most prominent corporate, institutional and government clients under its J.P. Morgan and Chase brands. Technology fuels every aspect of our company and is at the heart of everything we do. With over 50,000 technologists globally and an annual tech spend of $12 billion, we are dedicated to improving the design, analytics, development, coding, testing and application programming that goes into creating high quality software and new products. Learn more about technology at our firm, explore resources from our Distinguished Engineers, AI & ML researchers, and other experts; access the latest episode of our TechTrends podcast, and more at www.jpmorgan.com/technology. Information about JPMorgan Chase & Co. is available at www.jpmorganchase.com. ©2023 JPMorgan Chase & Co. All rights reserved. JPMorgan Chase is an Equal Opportunity Employer, including Disability/Veterans.
Why Work With Us
Our technologists work on a diverse range of solutions that include strategic technology initiatives, big data, mobile, electronic payments, machine learning, cybersecurity, enterprise cloud development, and other state-of-the-art technologies.
Gallery









