Security Engineer III
Join us to shape the future of cybersecurity in Public Cloud environments. You will have the opportunity to build impactful solutions that safeguard our cloud resources and drive automation. At JPMorgan Chase, we value your expertise and encourage you to grow your skills while collaborating with diverse teams. Your work will directly influence our approach to cloud security and resiliency. Experience a culture that supports innovation, learning, and meaningful relationships.
As a Cloud Security Software Engineer in the Cybersecurity & Technology Controls group at JPMorgan Chase, you will proactively and strategically partner with all lines of business and functions to enable them to design, adopt, and integrate appropriate controls. You will deliver processes and solutions efficiently and consistently, and drive automation of controls in Public Cloud Environments. You will help build solutions relating to Cloud Environment Governance and Protection, Auditing, Monitoring, Remediation, and Reporting. You will develop software solutions to ensure a secure Public Cloud environment and implement sufficient controls to safeguard and protect resources in Public Clouds.
Job Responsibilities:
- Engage and improve the whole lifecycle of services—from inception and design through deployment, operation, and refinement
- Develop, test, deploy, maintain, and enhance software/tooling solutions
- Manage individual project priorities, deadlines, and deliverables
- Perform design and code reviews
- Develop and build solutions relating to Cloud Environment Governance and Protection, Auditing, Monitoring, Remediation, and Reporting
- Design, develop, and improve services to scale as the firm's cloud usage grows
- Use enterprise-authorized AI capabilities within the work environment to accelerate security analysis and vulnerability assessment documentation, validating outputs and ensuring sensitive data is handled appropriately
Apply reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations
Required Qualifications, Capabilities, and Skills:
- BS degree in Computer Science or equivalent practical experience
- Proficiency and hands-on experience in AWS services, including Lambda, SQS, DynamoDB, EKS, etc
- Practical exposure with Infrastructure as Code (IaC) solutions such as Terraform and CloudFormation
- Experience in developing enterprise software and proficiency in multiple technologies, preferably Python
- CI/CD experience utilizing tools such as Github, Jenkins, etc
- Experience with development methodologies, e.g., Agile
- Work independently and collaborate within a team to develop meaningful relationships to achieve common goals
- Proficient verbal and written communication skills
- Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity
Ability to review and validate AI-assisted code/security recommendations before use, escalating when uncertain and following security and data handling requirements
Preferred Qualifications, Capabilities, and Skills:
- Savvy Cybersecurity knowledge in security postures risks management, e.g., vulnerability, misconfiguration, IaC, and threat detection
- Experience with Azure, GCP, or other Public Cloud environments is a plus
Cloud Certifications including AWS Developer Associate, AWS Solutions Architect Associate
Employer Description:
The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm's cybersecurity, access management, controls, and resiliency teams. The team under the group focuses on cybersecurity in Public Clouds.