JPMorgan Chase & Co.

Lead Security Engineer - Threat modelling, Cloud Security

JPMorgan Chase & Co. · Bengaluru, Karnataka, India

Financial Services · 10,001+ employees

4 h ago Closes in 6d
Principal (10+ yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will facilitate security requirements for complex networks and drive the adoption of AI-assisted engineering practices to improve code quality and delivery speed. Additionally, you will triage threats based on risk assessments and collaborate with senior business leaders to address vulnerabilities.

What they look for

Cybersecurity Threat Modeling Cloud Security Software Development Life Cycle Risk Assessment AI-assisted Engineering Secure Coding Automation AWS Kubernetes Artificial Intelligence Machine Learning Security Engineering Technical Leadership Stakeholder Management

Requirements

Candidates must have over 10 years of hands-on cybersecurity experience and advanced knowledge in platform security and technical disciplines like AWS or Kubernetes. Strong expertise in threat modeling, risk articulation, and leading AI-assisted software development workflows is required.

Full description

Join a high-performing team where your expertise in cybersecurity will make a direct impact. Advance your career by solving complex challenges across multiple technology domains.

As a Lead Security Engineer at JPMorgan Chase within the Cloud Foundational Services team, you play a pivotal role in delivering secure software solutions that meet functional and user requirements while preventing misuse and malicious behavior. You drive business impact through your technical capabilities and problem-solving skills, addressing diverse cybersecurity challenges. You are part of an agile team that values innovation and collaboration, contributing to a culture focused on excellence and growth.

Job responsibilities

  • Facilitate security requirements clarification for multiple networks to enable multi-level security that satisfies organizational needs
  • Work with stakeholders and senior business leaders to recommend business modifications during periods of vulnerability
  • Triage based on risk assessments of various threats and manage resources to cover the impact of disruptive events
  • Drives team adoption of enterprise-authorized AI-assisted engineering practices within the work environment to improve code quality, delivery speed, and operational outcomes (e.g., AI-assisted code review/refactoring, test strategy acceleration, incident/root-cause analysis support), while establishing consistent validation standards (secure coding, peer review, automated testing) and promoting reuse of effective patterns across the team.
  • Applies knowledge of tools within the Software Development Life Cycle toolchain, including enterprise-authorized AI-assisted development and automation capabilities, to improve the value realized by automation.

Required qualifications, capabilities and skills

  • Formal training or certification on security engineering concepts and 5+ years applied experience
  • 10+ years cyber security hands-on experience
  • Skilled in planning, designing, and implementing enterprise-level security solutions
  • Advanced in one or more programming languages
  • Advanced knowledge of platform security enablement and technical processes with considerable in-depth knowledge in one or more technical disciplines (e.g., AWS, Kubernetes, artificial intelligence, machine learning, etc.)
  • Extensive experience with threat modeling and business risk articulation
  • Demonstrated experience leading effective use of approved AI-assisted software development tools (e.g., for coding, code review, test acceleration, troubleshooting) with the ability to set team expectations for validating AI outputs for correctness, performance, and security.
  • Strong understanding of responsible AI use in engineering workflows, including data sensitivity considerations, secure handling of inputs/outputs, and adherence to resiliency and security expectations; experience coaching engineers on safe, compliant adoption within delivery practices
  • Ability to tackle design and functionality problems independently with little to no oversight

Preferred qualifications, capabilities and skills

  • Experience effectively communicating with senior business leaders