Security Engineer III

JPMorgan Chase & Co.
Plano, United States of America
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate

Job location

Plano, United States of America

Tech stack

Agile Methodologies
Apache HTTP Server
Tomcat
Server Applications
Computer Security
Continuous Integration
Monitoring of Systems
Web Servers
IBM HTTP Servers
IBM Websphere Application Server
IIS
Nginx
Security Information and Event Management
Software Engineering
Software Systems
Web Hosting Services
CIS Benchmarks
Vulnerability Analysis

Job description

Your seniority as a security engineer puts you in the ranks of the top talent in your field. Play a critical role at one of the world's most iconic financial institutions where security is vital. As a Security Engineer III at JPMorganChase within the Cybersecurity and Technology Controls Line of Business, you serve as a seasoned member of a team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Carry out critical technology solutions with tamper-proof, audit defensible methods across multiple technical areas within various business functions in support of the firm's business objectives Job responsibilities + Executes security solutions design, development, and technical troubleshooting with the ability to apply knowledge of existing security solutions to satisfy security requirements for internal clients (e.g., product, platform, application owners) + Applies specialized tools (e.g., vulnerability scanner) to analyze and correlate incident data to identify, interpret, and summarize the probability and impact of threats when determining specific vulnerabilities + Leads delivery of continuity-related awareness, training, educational activities, and exercises + Manages and maintains security configuration baselines for web hosting and application server infrastructure assets including Apache HTTP Server, Apache Tomcat, Microsoft IIS, IBM HTTP Server, WebSphere Application Server, Nginx, and related technologies + Coordinates with product engineering teams, application owners, and control domain stakeholders to define, implement, and monitor secure baseline configurations across multiple platforms. + Conducts annual baseline recertification activities, mapping security controls to industry standards (CIS Benchmarks, STIGs) and coordinating material changes across engineering, monitoring, and customer communication teams +

Requirements

Collaborates with configuration drift monitoring teams to develop, test, and maintain detection policies that ensure compliance with published security configuration standards + Provides technical guidance and remediation support to application teams for security configuration findings + Adds to team culture of diversity, opportunity, inclusion, and respect Required qualifications, capabilities, and skills + Formal training or certification on security engineering concepts and 3+ years applied experience + Experience developing security engineering solutions + Proficient in coding in one of more languages + Overall knowledge of the Software Development Life Cycle + Solid understanding of agile methodologies such as CI/CD, application resiliency, and security + Experience with security configuration management, baseline hardening, and compliance frameworks + Strong analytical and problem-solving skills with ability to interpret technical security requirements and translate them into actionable controls Preferred qualifications, capabilities, and skills + Experience with web server and application server technologies (Apache, Tomcat, IIS, WebSphere, Nginx) + Familiarity with configuration drift monitoring tools and SIEM platforms + Knowledge of industry security benchmarks and standards (CIS, DISA STIGs, NIST) + Experience working with cross-functional teams including product engineering, SREs, and control domain stakeholders + Understanding of cloud and container security configurations + Strong written and verbal communication skills for technical documentation and stakeholder engagement + Certifications such as OSCP or OSCE is a plus #CTC JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and

Benefits & conditions

today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management. We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process. We recognize that our people are our strength and the

About the company

diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation. JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans

Apply for this position