> Markdown version of [/jobs/ext/3376725-lead-security-engineer-threat-modeling](https://www.wearedevelopers.com/jobs/ext/3376725-lead-security-engineer-threat-modeling). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Security Engineer - Threat Modeling - **Company:** JPMorgan Chase & Co. - **Location:** Plano, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Testing (Software), Artificial Intelligence, Amazon Web Services, Software Applications, Microsoft Azure, Cloud Computing, Cyber Security, Data Files, Data Security, Design of User Interfaces, Human-Computer Interaction, Internet Security, Information Systems Security Architecture Professional, Network Security, Machine Learning, Network Architecture, Software Architecture, Systems Development Life Cycle, Security Software, Software Engineering, Systems Architecture, Transaction Processing (Computing), Google Cloud, Production Code, Front End Software Development, Cisco, Vulnerability Analysis - **Published:** September 6, 2026 - **Apply:** https://www.careerbuilder.com/job-details/lead-security-engineer-threat-modeling-plano-tx--be522d68-edcb-40a0-b56e-7810d4c68dfb ## About the Role * Formal training or certification on security engineering concepts and 5+ years applied experience * Experience creating cybersecurity solutions based on existing security parameters * Ability to evaluate current cybersecurity technologies to recommend ways to optimize architecture * Hands-on practical experience in system design, application development, testing, and operational stability * Proficient in coding in one or more languages * Strong working knowledge of information and network security, IT risk management, and architectural concepts and patterns * Hands-on practical experience performing threat modeling for software applications and systems * Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity. * Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations. * Demonstrated knowledge of software applications and technical processes within a technical discipline (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.) Preferred qualifications, capabilities, and skills * Familiarity with modern front-end technologies * Exposure to cloud technologies * AWS/Azure/GCP Security Certificate * CISSP or CCSP certification, Algorithms, Amazon Web Services (AWS), Analysis Skills, Architectural Services, Artificial Intelligence (AI), Asset Management, Best Practices, Business Banking, CCSP - Cisco Certified Security Professional, CISSP - Certified Information Systems Security Professional, Cloud Computing, Commercial Banking, Compensation and Benefits, Computer Security, Continuous Improvement, Cross-Functional, Data Sets, Digital Certificates, Diversity, Documentation, Emerging Technology, Financial Transactions, GCP (Good Clinical Practices), Government, Identify Issues, Information/Data Security (InfoSec), Internet Security, Investment Services, Machine Learning, Microsoft Windows Azure, Network Architecture/Engineering, Network Security, Process Improvement, Public Cloud, Risk Management, Security Analysis, Security Attacks, Security Software, Small Business, Software Architecture, Software Design, Software Development, Software Development Lifecycle (SDLC), Software Engineering, Software Testing, System Architecture, Threat Modeling, Traceability, Transaction Processing/Management, User Interface/Experience (UI/UX), Validation Testing ## Description As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity and Technology Controls team, you design and deliver trusted cybersecurity architecture solutions for software applications and platforms. You collaborate with cross-functional teams to implement technology solutions and communicate risk and mitigation options using best practices in support of the firm's business objectives. You play a key role in protecting the firm's data and infrastructure, * Perform analysis and reporting against security risks to protect data, applications, and infrastructure using modern tools * Conduct reviews on existing security controls with minimal oversight * Identify gaps in network architecture and create documentation of threats and mitigations for small software applications * Create secure and high-quality production code and maintain algorithms that run synchronously with appropriate systems * Produce architecture and design artifacts for complex applications, ensuring design constraints are met by software code development * Gather, analyze, synthesize, and develop visualizations and reporting from large, diverse data sets in service of continuous improvement of software applications and systems * Proactively identify hidden problems and patterns in data and use these insights to drive improvements to coding hygiene and system architecture * Contribute to software engineering communities of practice and events that explore new and emerging technologies * Uses enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately. * Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Introduction to TXT](https://www.wearedevelopers.com/videos/30-introduction-to-txt) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Real-world Threat Modeling](https://www.wearedevelopers.com/videos/936-real-world-threat-modeling) - [Cloud Run- the rise of serverless and containerization](https://www.wearedevelopers.com/videos/106-cloud-run-the-rise-of-serverless-and-containerization) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud)