Job Description
Join JPMorganChase's Cybersecurity Technology & Controls team and bring your security engineering expertise to an organization where your work directly protects one of the world's most complex and innovative financial institutions. As a Lead Security Engineer, you will work at the intersection of security, modern software development, and artificial intelligence — building solutions that matter at a global scale. Here, your contributions will shape the security posture of the firm while advancing your career alongside some of the most talented engineers in the industry.
As a Lead Security Engineer at JPMorganChase within Cybersecurity Technology & Controls, you will serve as a seasoned contributor on a team dedicated to delivering secure, high-quality software solutions that prevent misuse, circumvention, and malicious behavior across the firm. You will apply your deep technical expertise to design and build tamper-proof, audit-defensible security solutions across multiple technology domains in support of the firm's business objectives. This is an opportunity to make a meaningful impact by combining strong engineering fundamentals with cutting-edge AI-assisted development practices in a collaborative, inclusive environment that values growth, innovation, and accountability.
Job responsibilities
- Design and deliver enterprise-scale security engineering solutions, applying deep knowledge of existing security patterns to satisfy requirements for internal product, platform, and application owners
- Develop secure, high-quality production code and maintain algorithms that operate synchronously with appropriate systems, ensuring reliability and integrity at scale.
- Uses enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately.
- Apply specialized vulnerability scanning and analysis tools to correlate incident data, identify threats, and summarize the probability and impact of security risks and proactively identify hidden problems and patterns within systems and use those insights to drive measurable improvements to coding hygiene and system architecture
- Produce architecture and design artifacts for complex applications, ensuring design constraints are met throughout the engineering lifecycle
- Leverage AI-assisted development tools such as GitHub Copilot to accelerate secure software delivery, including code refactoring, test generation, and code review support, while maintaining secure coding standards and developer accountability
- Support the delivery of agentic AI solutions, including threat modeling of agent behaviors, defining guardrails, and implementing approval and audit logging controls where appropriate
- Lead continuity-related awareness, training, educational activities, and exercises to strengthen the team's security readiness
- Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.
Required qualifications, capabilities, and skills
- Formal training or certification on security engineering concepts and 5+ years applied experience
- Proficiency in C# on .NET 6 or later and SQL Server/T-SQL for enterprise application development
- Solid understanding of the Software Development Life Cycle and hands-on experience with version control and pipeline tools such as Git, Bitbucket, GitHub, or Jenkins
- Strong working knowledge of information and network security, IT risk management, and architectural concepts and patterns
- Demonstrated understanding of agile methodologies, continuous integration and delivery practices, and application resiliency principles
- Experience applying specialized development and security tools such as Visual Studio and code quality analysis platforms.
- Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.
- Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
- Proficiency using AI-assisted development tools, including GitHub Copilot, for code generation, refactoring, test creation, and code review assistance within secure usage practices
- Strong analytical and problem-solving skills with the ability to identify, interpret, and communicate complex security risks clearly
Preferred qualifications, capabilities, and skills
- Experience designing and delivering agentic AI solutions, including multi-step workflows, tool and function calling, and human-in-the-loop approval patterns
- Familiarity with GenAI solution patterns such as retrieval-augmented generation, embeddings and vector search, and document ingestion pipelines within the .NET ecosystem
- Experience with modern front-end technologies including Blazor, Razor, or MVC frameworks and Entity Framework or Entity Framework Core
- Familiarity with containerization and orchestration technologies such as Docker and Kubernetes
- Experience with multi-threading techniques and asynchronous programming patterns in .NET applications
- Exposure to cloud technologies with a certification in one or more major cloud providers
#CTC
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans