> Markdown version of [/jobs/ext/1786113-lead-cybersecurity-architect](https://www.wearedevelopers.com/jobs/ext/1786113-lead-cybersecurity-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Cybersecurity Architect - **Company:** JPMorgan Chase & Co. - **Location:** Chicago, IL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Training Data, Application Programming Interfaces (APIs), Artificial Intelligence, Software Applications, Cyber Security, Continuous Integration, Information Leak Prevention, Identity and Access Management, Key Management, Machine Learning, Network Segmentation, Role-Based Access Control, Azure Machine Learning, Software Engineering, Data Logging, Data Processing, Data Classification, Large Language Models, Multi-Agent Systems, Software Security, Information Technology, Machine Learning Operations, Programming Languages - **Published:** July 3, 2026 - **Apply:** https://jpmc.fa.oraclecloud.com/hcmUI/CandidateExperience/en/sites/CX_1001/requisitions/preview/210757494 ## About the Role * Obtain 5+ years of cybersecurity architectural knowledge with hands-on practical experience delivering enterprise-level solutions and controls * Advanced in one or more programming languages * Hands on experience in coding and use AI / ML, agents to improve security assessments. Willing to work on POC on new innovative ideas * Demonstrate ownership of Security Design Reviews (SDRs), security requirements, and architecture governance for large-scale platforms. * Proven expertise in threat modeling and mitigating AI/ML risks such as prompt injection, data poisoning, model extraction/inversion, training data leakage, and third-party/supply-chain exposure. * Strong hands-on technical depth across cloud and application security: IAM/least privilege, encryption & key management, secrets, network segmentation, secure APIs, logging/monitoring, and secure SDLC/CI/CD. * Experience securing agentic AI systems and tool integrations (including MCP-based tool/data connectivity or similar protocols), with the ability to set guardrails for tool access, data handling, and runtime controls. * Proficiency in all aspects of the Software Development Life Cycle * Demonstrated proficiency in software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.) * In-depth knowledge of the financial services industry along with their IT systems and experience communicating with senior leaders * Ability to evaluate current and emerging technologies to recommend the best solutions for the future state architecture ## Description As a Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity Technology & Controls, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various software applications on modern cloud-based technologies. As a core technical contributor, you are responsible for carrying out critical cybersecurity architecture solutions by identifying, creating, and communicating risk, mitigation options, and solutions across multiple technical areas within various business functions in support of project goals., * Engages technical teams and business stakeholders to discuss and propose technical approaches to meet current and future cybersecurity needs * Defines the technical target state of their cybersecurity product and drives achievement of the strategy * Develop software, use firmwide AI/ML tools to enhance, automate, improve secure design and threat assessment processes. * Own and drive SDRs for AI/ML platforms, agentic systems, and MCP integrations; document decisions, required controls, and risk acceptances * Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support cybersecurity architecture workflows with strong validation habits and awareness of data sensitivity. * Ability to assess and validate AI-assisted security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations. * Define and govern secure reference architectures for agentic systems and MCP-enabled workflows, including isolation, segmentation, encryption, and identity management * Define security requirements for authentication, authorization, data classification, and encrypted communications for MCP servers and agentic workflows * Conduct and maintain threat models for agentic systems, MCP servers, and LLM Suite integrations, identifying and mitigating risks such as prompt injection, data leakage, and supply chain threats ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fireside Chat: Deep Learning, Deep Impact: Harnessing AI for Language Innovation](https://www.wearedevelopers.com/videos/612-fireside-chat-deep-learning-deep-impact-harnessing-ai-for-language-innovation) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Exploring 5 Key Applications of AI Abundance with Blockchain Assurance](https://www.wearedevelopers.com/videos/971-exploring-5-key-applications-of-ai-abundance-with-blockchain-assurance) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production)