JPMorganChase logo

Security Engineer III - Software Supply Chain

JPMorganChase
Full-time
On-site
Seattle, Washington, United States
$133,000 - $185,000 USD yearly
Vulnerability Management & Security Engineering
Description

 

Job Description

Your seniority as a security engineer puts you in the ranks of the top talent in your field. Play a critical role at one of the world's most iconic financial institutions where security is vital.

As a Security Engineer III at JPMorgan Chase within Cybersecurity and Technology Controls, you serve as a seasoned member of a team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Carry out critical technology solutions with tamper-proof, audit defensible methods across multiple technical areas within various business functions in support of the firm’s business objectives.

This role is within the Product Security team and is aligned to the JPMC Enterprise Toolchain, which secures software delivery to our customers and makes JPMC the most attractive destination for engineers. You will play an important role in identifying and managing risk related issues and actions with respective technology. You will have an eye for detail and an ability to see the big picture across security issues.

Job Responsibilities

  • Executes security solutions design, development, and technical troubleshooting with the ability to apply knowledge of existing security solutions to satisfy security requirements for internal clients (e.g., product, platform, application owners)
  • Creates secure and high-quality production code and maintains algorithms that run synchronously with appropriate systems
  • Applies specialized tools (e.g., vulnerability scanner) to analyze and correlate incident data to identify, interpret, and summarize the probability and impact of threats when determining specific vulnerabilities
  • Leads delivery of continuity-related awareness, training, educational activities, and exercises
  • Leads initiatives to improve the reliability and stability of your team’s applications and platforms using data-driven analytics to improve service levels
  • Develop, test, and maintain high-quality software applications using Go
  • Ability to zoom out and understand how software fits into the business of the firm
  • Own the delivery of software features from inception to deployment, ensuring rigorous testing and bug-free releases
  • Navigate and manage ambiguity in project requirements and deliverables
  • Continuously learn and adapt to new technologies and methodologies
  • Collaborate with cross-functional teams to define, design, and ship new features
  • Troubleshoot, debug, and upgrade existing software
  • Adds to team culture of diversity, equity, inclusion, and respect

 

Required qualifications, capabilities, and skills

  • Experience developing security engineering solutions
  • Proficient in coding in one or more modern languages
  • Overall knowledge of the Software Development Life Cycle
  • Solid understanding of agile methodologies such as CI/CD, application resiliency, and security
  • Strong understanding of SOLID principles and software design patterns
  • Experience developing and deploying enterprise software in at least one public cloud
  • Self-starter with the ability to work independently and with minimal supervision
  • Curiosity and willingness to learn new technologies and methodologies.
  • Excellent communication and teamwork skills

     

Preferred qualifications, capabilities, and skills

  • Comfortable working in stacks with multiple languages and frameworks simultaneously
  • Expertise in Software Bills of Material (SBOM) and/or Software Supply Chain Security
  • Enterprise experience in DevSecOps, SRE and/or Platform Engineering
  • Enterprise experience in Python, Go and/or HCL