onsite
Security Engineer II - Java, AWS, AI/ML Security - JPMorganChase
Security Engineer
Security Engineer II focused on protecting AI/ML workloads on AWS, designing secure Java services, automating vulnerability detection, and implementing cloud‑native security controls.
About the role
Key Responsibilities
- Design, develop, and maintain security controls for AI/ML pipelines and Java‑based services deployed on AWS.
- Conduct threat modeling, vulnerability assessments, and penetration testing of machine‑learning models and supporting infrastructure.
- Build and integrate security automation tools (e.g., CI/CD scanners, runtime protection) to improve detection and response times.
- Collaborate with data scientists, developers, and cloud architects to embed security best practices throughout the development lifecycle.
- Monitor emerging AI/ML threats and recommend mitigations, ensuring compliance with industry standards and internal policies.
Requirements
- 3+ years of experience in application security, preferably with Java and AWS environments.
- Strong understanding of AI/ML model security, data privacy, and associated attack vectors.
- Hands‑on experience with security automation, scripting (Python, Bash) and CI/CD integration.
- Knowledge of cloud security frameworks (e.g., AWS Well‑Architected, IAM, KMS) and vulnerability management tools.
- Excellent problem‑solving skills and ability to work cross‑functionally in fast‑paced, collaborative teams.