remote
Lead Security Engineer - Java/Python - JPMorgan Chase Bank, N.A.
Security Engineer
Lead security engineering efforts for high‑impact Java and Python applications, driving secure design, code reviews, and threat mitigation within an agile, cloud‑enabled environment.
About the role
Key Responsibilities
- Architect and implement security controls for Java and Python services across the product lifecycle.
- Conduct threat modeling, code reviews, and penetration testing to identify and remediate vulnerabilities.
- Collaborate with product owners, developers, and operations to embed security best practices into CI/CD pipelines.
- Mentor engineering teams on secure coding standards and provide guidance on security tooling.
- Stay current with emerging security threats and regulatory requirements, influencing roadmap decisions.
Requirements
- 5+ years of software development experience with Java and Python in a security‑focused role.
- Deep knowledge of application security frameworks, OWASP Top 10, and secure design patterns.
- Hands‑on experience with static and dynamic analysis tools, container security, and cloud platforms (AWS, Azure, or GCP).
- Proven ability to work in Agile teams, driving security initiatives from concept to production.
- Strong communication skills to translate complex security concepts to technical and non‑technical stakeholders.