Senior
Take on a crucial role where you'll be a key part of a high-performing team delivering secure, scalable cloud network perimeter solutions. Make a real impact as you help shape the future of cloud egress security at one of the world's largest and most influential companies.
As a Lead Security Engineer at JPMorganChase within the Cloud Edge Proxy team, you will help design, secure, and operate a critical cloud network perimeter platform that governs outbound cloud traffic at enterprise scale. You will work across engineering and business teams to ensure cloud connectivity is secure, reliable, and compliant — while enabling application teams to onboard and operate confidently.
Job Responsibilities
Designs, develops, and maintains secure software solutions for cloud network perimeter infrastructure, writing high-quality production code and reviewing code written by others across the full development lifecycle
Uses enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately.
Builds and manages infrastructure-as-code (IaC) to automate the provisioning, configuration, and scaling of cloud networking and proxy infrastructure in a consistent, repeatable, and auditable manner
Manages and operates enterprise-scale proxy infrastructure, ensuring high availability, performance, and security of egress traffic controls across cloud environments
Develops and maintains automation tooling to streamline network configuration, proxy onboarding workflows, certificate management, and policy enforcement
Troubleshoots complex network and proxy connectivity issues across cloud environments, applying structured diagnostic approaches to identify root cause and drive resolution
Collaborates with application teams, platform engineers, and architects to design secure and scalable network connectivity patterns that meet both technical and business requirements
Minimizes security vulnerabilities by following industry insights and evolving best practices, continuously improving network perimeter controls and validating their effectiveness
Adds to team culture of diversity, opportunity, inclusion, and respect
Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.
Required Qualifications, Capabilities, and Skills
Formal training or certification in software engineering, security engineering, or network engineering concepts and 5+ years of applied experience in one or more of these disciplines
Strong Infrastructure-as-Code (IaC) experience using Terraform to provision and manage cloud networking and proxy infrastructure (e.g., reusable modules, remote state management, CI/CD integration, drift detection, and change controls)
Strong Python experience building automation for cloud infrastructure and networking workflows, including authoring AWS Lambda functions and using boto3 to automate AWS operations.
Hands-on AWS experience implementing and troubleshooting core services across networking, compute, security, and observability (e.g., AWS Lambda, EC2, VPC, Transit Gateway, PrivateLink/VPC endpoints, NLB, Route 53, CloudWatch, IAM)..
Knowledge of security best practices and relevant regulatory expectations, with experience evolving controls and implementing mechanisms to measure/validate control effectiveness over time
Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
Good communication skills, teamwork capabilities, and a self-learning attitude
Demonstrated experience using enterprise-authorized AI capabilities to accelerate security engineering workflows (e.g., threat modeling, vulnerability analysis synthesis, documentation), with strong validation habits and appropriate handling of sensitive data
Preferred Qualifications, Capabilities, and Skills
Experience with forward or reverse proxy technologies and architectures at enterprise scale (e.g., F5, Squid, Envoy, or equivalent)
Hands-on experience with TLS/SSL certificate management, PKI, mTLS, and truststore configuration in cloud-native environments
Strong understanding of proxy protocols (HTTP CONNECT, HTTPS, SOCKS5), DNS-based routing, and network egress control patterns
Experience effectively communicating with senior business leaders
AWS Certifications (e.g., Solutions Architect, Security Specialty, Advanced Networking Specialty)
Sign up to apply and find out right away if you're a fit.
Your agent will tell you — in seconds.
Sign up and I'll tell you right away how well JPMorgan Chase matches you — what you already have, and what's missing. Then I stay on it: I search for you and only write when I find something worth your time.