JPMorganChase
Lead Security Engineer - Endpoint Detection and Response Engineering
Be an Early Applicant
As a Lead Security Engineer, you'll conduct vulnerability assessments, support threat mitigation, integrate security solutions, and provide advanced support for endpoint security initiatives.
Job Description
Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies.
As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity and Technology Controls organization, you are an integral part of team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. As a core technical contributor, you are responsible for carrying out critical technology solutions with tamper-proof, audit defensible methods across multiple technical areas within various business functions.
Job responsibilities
Required qualifications, capabilities, and skills
Preferred qualifications, capabilities, and skills
About Us
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies.
As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity and Technology Controls organization, you are an integral part of team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. As a core technical contributor, you are responsible for carrying out critical technology solutions with tamper-proof, audit defensible methods across multiple technical areas within various business functions.
Job responsibilities
- Conducts discovery, vulnerability, penetration testing, and threat scenarios on multiple organizational assets to identify and assess if vulnerabilities are present, and executes threat modeling for multiple applications including external applications interacting with the internal JPMorgan Chase network
- Collaborates with multiple teams to understand platform requirements and streamline engineering and deployment processes
- Supports Cyber Security Operations Center (SOC) and Attack Analysis teams in identifying and mitigating threats to digital assets
- Assists Vulnerability Management teams in evaluating the impact of vulnerabilities on organizational assets
- Partners with RED and PenTest teams to assess and enhance the security posture of the firm by enabling them to leverage features of Endpoint Detection and Response (EDR) platforms
- Partners with Threat Intelligence teams to enable them to correlate threat data with endpoint security controls, facilitating prioritized remediation efforts
- Integrates EDR solutions with several allied systems including SIEM platforms in the firm to ensure ingestion of detections, logs, telemetry
- Partners with platform Engineering teams to Integrate EDR products in various disparate build pipelines in the firm across various operating systems and cloud platforms
- Collaborates with product owners and stakeholders to gather requirements, design solutions, and implement software through CI/CD pipelines
- Provides Level 3 Support for thorough investigations and issue resolution on target endpoints
- Engages in Proof of Concepts (PoCs) to evaluate new features and capabilities for expanding the Endpoint Visibility Program
Required qualifications, capabilities, and skills
- Formal training or certification on Security Engineering concepts and 5+ years applied experience
- Skilled in planning, designing, and implementing enterprise level security solutions
- Advanced in one or more programming language(s) such as Python, Shell, PowerShell, Ansible, React
- Proficient in all aspects of the Software Development Life Cycle and advanced understanding of agile methodologies such as CI/CD, application resiliency, and security
- Experience with threat modeling, discovery, vulnerability, and penetration testing
- Expertise in orchestration and automation platforms such as SCCM, Puppet or similar
- Expertise in cyber security endpoint security and vulnerability management domains
- In-depth understanding of and experience in public cloud technology such as AWS, Azure, GCP and in Virtualization, APIs
- In-depth expertise in AWS development and Infrastructure track and tech stack such as networking, EC2, Lambdas, server-less solutions, VPC, routes53, auto scaling, Transit Gateway, API Gateway, Step Functions, secrets manager and storage services
- In-depth knowledge of the financial services industry and their IT systems
- Ability to collaborate with different roles and personas to achieve common goals
Preferred qualifications, capabilities, and skills
- Experience effectively communicating with senior business leaders
- Experience in products such as CrowdStrike Falcon XDR and Palo Alto Cortex XDR is a big plus
About Us
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.
Top Skills
Ansible
AWS
Azure
GCP
Powershell
Puppet
Python
React
Sccm
Shell
Similar Jobs at JPMorganChase
Financial Services
The Lead Cybersecurity Architect leads security evaluations and develops cybersecurity solutions, manages security risks, and provides guidance across technology domains.
Top Skills:
Ai/Ml/LlmsAt Least One Programming LanguageCehCismCisspDevsecopsIsoMicroservice ArchitectureMitreNistOwaspPublic CloudSaaS
Financial Services
As a Security Engineer/Architect, you'll design, implement, and manage security solutions while developing secure code and collaborating with stakeholders to address security needs and vulnerabilities.
Top Skills:
AWSAzureC/C++GCPJavaPythonTerraform
Financial Services
Lead cybersecurity architecture initiatives, manage teams, and set strategic goals while guiding complex technology projects and governance.
Top Skills:
C/C++CloudJavamacOSPythonSecurityWindows
What you need to know about the Montreal Tech Scene
With roots dating back to 1642, Montreal is often recognized for its French-inspired architecture and cobblestone streets lined with traditional shops and cafés. But what truly sets the city apart is how it blends its rich tradition with a modern edge, reflected in its evolving skyline and fast-growing tech industry. According to economic promotion agency Montréal International, the city ranks among the top in North America to invest in artificial intelligence, making it le spot idéal for job seekers who want the best of both worlds.
Key Facts About Montreal Tech
- Number of Tech Workers: 255,000+ (2024, Tourisme Montréal)
- Major Tech Employers: SAP, Google, Microsoft, Cisco
- Key Industries: Artificial intelligence, machine learning, cybersecurity, cloud computing, web development
- Funding Landscape: $1.47 billion in venture capital funding in 2024 (BetaKit)
- Notable Investors: CIBC Innovation Banking, BDC Capital, Investissement Québec, Fonds de solidarité FTQ
- Research Centers and Universities: McGill University, Université de Montréal, Concordia University, Mila Quebec, ÉTS Montréal