onsite
Lead Security Engineer - Python, Cloud - JPMorganChase
Security Engineer
Lead Security Engineer responsible for designing and delivering secure, audit‑defensible software solutions using Python and cloud platforms, while driving threat modeling, secure coding practices, and DevSecOps automation across enterprise applications.
About the role
Key Responsibilities
- Architect and implement secure, scalable software solutions on cloud platforms using Python, ensuring compliance with enterprise security standards.
- Lead threat modeling and security design reviews to identify and mitigate risks early in the development lifecycle.
- Develop and enforce secure coding guidelines, conduct code reviews, and integrate automated security testing into CI/CD pipelines.
- Collaborate with cross‑functional teams to create tamper‑proof, audit‑defensible mechanisms for data protection and access control.
- Mentor junior engineers and drive security best practices across the organization.
Requirements
- 5+ years of professional experience in application security and secure software development, primarily with Python.
- Strong expertise in cloud environments (e.g., AWS, Azure, GCP) and associated security services.
- Hands‑on experience with threat modeling, static/dynamic analysis tools, and DevSecOps pipelines.
- Proven ability to design and implement security controls that are auditable and tamper‑proof.
- Excellent communication skills and a collaborative mindset for working with diverse technical teams.