Senior Lead Architect: Identity and Security Architecture

JPMorgan Chase & Co.
Jersey City, NJ, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$171,000.0 - $260,000.0
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Software Applications Application Services User Authentication Authentication Protocols Microsoft Azure Biometrics Cyber Security Customer Data Management Multi-Factor Authentication Federated Identity Management
+15 more
Identity and Access Management Interoperability Mobile Application Software OAuth OpenID Open Web Application Security Openid Connect Security Assertion Markup Language (SAML) Software Engineering Web Applications Privacy Controls Google Cloud Software Security Customer Identity Access Management Microservices

Job description

Shape secure digital experiences and drive Customer Identity and Access Management strategy and customer security.

If you are excited about shaping the future of technology and driving significant business impact in financial services, we are looking for people just like you. Join our team and help us develop game-changing, high-quality solutions.

As a Senior Lead Architec t at JPMorganChase within the Community and Consumer Banking Technology team you are an integral part of a team that works to develop high-quality architecture solutions for various software applications and platform products. You drive significant business impact and help shape the target state architecture through your capabilities in multiple architecture domains.

In this role, you will lead the strategy, design, and enablement of customer-facing authentication and security solutions across web, mobile, APIs, and assisted channels. You will ensure secure, seamless, and scalable digital experiences by architecting and optimizing CIAM platforms, collaborating with cross-functional teams, and staying ahead of industry trends., * Architects and designs solutions in Cyber, Authentication, Security, Scams & Fraud capability domains.

  • Leads the technical strategy for CIAM platforms, aligning with business goals and regulatory requirements.
  • Designs, implements, and optimizes Customer Identity and Access Management (CIAM) solutions for secure digital experiences.
  • Develop and maintain technical roadmaps for CIAM platforms, focusing on scalability, resilience, and interoperability.
  • Integrate CIAM systems with web, mobile, and third-party applications, supporting SSO, MFA, social login, and federated identity.
  • Define and enforce security standards, privacy controls, and compliance requirements for customer data and access.
  • Collaborates with product, engineering, and security teams to translate business requirements into technical specifications.
  • Conduct threat modeling, risk assessments, and security reviews for CIAM systems.

Requirements

  • Formal training or certification on software engineering concepts, Information Security, or related field and 5+ years applied experience
  • Deep knowledge of CIAM platforms, protocols (OAuth 2.0, OpenID Connect, SAML), and authentication mechanisms (MFA, biometrics, social login)
  • Experience with cloud platforms (AWS, Azure, GCP) and microservices architectures
  • Strong understanding of privacy, security, and regulatory requirements for customer data
  • Hands-on experience with API security, consent management, and user experience optimization
  • Experience with open standards such as OAuth, OIDC, FIDO, multi-factor authentication, and TLS; securing hybrid native and web apps on mobile platforms
  • Familiarity with rooting or jail-breaking iOS and Android devices to discover mobile application vulnerabilities, * Excellent communication, collaboration, and problem-solving skills
  • Understanding of information security and risk management challenges, including mitigation and remediation
  • Strong knowledge of OWASP Top 10 security issues for web and mobile applications, and remediation patterns

Benefits & conditions

We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process., Jersey City,NJ $171,000.00 - $260,000.00 / year; New York,NY $171,000.00 - $260,000.00 / year

About the company

Chase is a leading financial services firm, helping nearly half of America’s households and small businesses achieve their financial goals through a broad range of financial products. Our mission is to create engaged, lifelong relationships and put our customers at the heart of everything we do. We also help small businesses, nonprofits and cities grow, delivering solutions to solve all their financial needs.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:41 min

Exploring possession and biometric authentication factors

Clemens Hübner Clemens Hübner · WWC 2023

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all