Lead Cybersecurity Engineer
JPMorgan Chase & Co.
1 month ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Tech stack
Java
Agile Methodologies
Software System Penetration Testing
Build Automation
Computer Security
Continuous Delivery
Continuous Integration
Dynamic Program Analysis
Mobile Application Software
Web Application Security
Software Engineering
Web Applications
Swift
Kotlin
React Native
Job description
- Formal training or certification on cybersecurity architecture concepts and proficient advanced experience
- Contribute to the maturity of mobile and web application security reviews activities across consumer banking products and provide thought leadership and guidance to peers and senior management.
- Build automation (static and dynamic analysis) and frameworks with software engineers that are able to improve security, whilst also improving developer and customer experience.
- Provide guidance and education to developers that help prevent the authoring of vulnerabilities.
- Provide challenge and assessment of potential technology risks including information and cyber security control weaknesses by performing threat modelling exercises. Provide technology risk subject matter expertise and communicate the risk environment to management and other key stakeholders.
- Build solid professional relationships with matrixed teams to include technology, business, audit, and operational risk partners.
Requirements
- Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls
- Bachelor's degree or the equivalent combination of education and relevant experience
- 8+ years of total relevant work experience
- Familiarity with mobile and web application programming languages, development practices, and common bug patterns (React Native, Java, Kotlin, Swift)
- Proficiency in automation and continuous delivery methods
- Proficiency in all aspects of the Software Development Life Cycle
- Advanced understanding of agile methodologies such as continuous integration and delivery, application resiliency, and security
- Practical cloud native experience
- Deep knowledge of one or more software and applications
- Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
- Experience effectively communicating with senior business leaders
Preferred qualifications, capabilities, and skills
- Knowledge of penetration testing techniques with the mobile application and web contexts
- Experience with IT risk management operating models, three lines-of-defense frameworks, integrated risk management practices, and/or risk intelligence capabilities
- Experience operating within a regulated industry
#ICB #ICBengineering #ICBrecruitment #ICBhiring
About the company
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world's most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives., Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.