Principal Security Controls Architect

JPMorgan Chase & Co.Jersey City, NJ

About The Position

As a Principal Security Controls Architect at JPMorganChase within CTO Global Technology Asset Management, you will lead the modernization of how the firm designs, automates, and governs its technology controls. This role involves building security controls that scale, designing governance frameworks that are adopted, and translating complex risk into actionable engineering requirements. You will take ownership of building the control architecture and asset governance model for a global technology organization, reimagining the technology control ecosystem, architecting control design and automation pipelines, and establishing governance standards that satisfy both engineering teams and regulatory examiners. Your engineering decisions will have lasting, enterprise-wide impact, shaping how risk is understood and managed across the entire firm.

Requirements

  • 10 years in cybersecurity, security and technology controls, ITAM or related engineering and risk domains, including senior-level leadership and delivery ownership
  • Demonstrated experience architecting security and technology controls at scale
  • Strong experience with asset inventory, asset lifecycle management, and taxonomy and metadata modeling, including how taxonomy drives control applicability and coverage
  • Experience building automation-first solutions including CI/CD pipelines, infrastructure-as-code, and automated evidence collection and monitoring frameworks
  • Strong engineering depth and ability to partner with developers
  • Translate threat models and attack surface analysis into actionable control requirements and auditable governance standards, grounded in a strong working knowledge of current and evolving security control frameworks
  • Ability to present and influence executive audiences, articulate complex technical risk clearly, and drive decisions across stakeholders

Nice To Haves

  • Experience partnering with Risk, Compliance, and Audit to improve control design, evidence quality, and examination readiness while reducing operational burden
  • Experience with large-scale enablement across multiple lines of business and engineering organizations
  • Familiarity mapping controls and governance requirements to common frameworks such as NIST, ISO 27001, or CIS Controls, and translating framework requirements into engineering-executable standards
  • Experience with cybersecurity asset management platforms such as ServiceNow CMDB, Axonius, or equivalent, including designing data models, ownership workflows, and asset lifecycle governance processes
  • Demonstrated ability to define and track control health metrics, KPIs, and adoption indicators that communicate security posture and governance maturity to executive and risk audiences

Responsibilities

  • Define and drive the strategy and roadmap for technology control architecture across Global Technology Asset Management, aligning to regulatory expectations and firmwide security standards
  • Establish and enhance an enterprise-grade asset taxonomy including critical metadata, ownership, lifecycle state, and control applicability
  • Architect and design control patterns that are reusable and scalable reducing manual processes and improving auditability
  • Partner with platform and product teams to embed controls into the asset lifecycle
  • Define control coverage and control health metrics, dashboards, and operational mechanisms to measure effectiveness, exceptions, and remediation progress
  • Evaluate, select, and implement security/control process/tooling to improve asset transparency, control automation, and evidence quality
  • Continually assess new trends in technology and determine implications on the overall security control process
  • Drive security engineering thought leadership within the product line
  • Champion the firm's culture of diversity, opportunity, inclusion, and respect

Benefits

  • competitive total rewards package
  • base salary determined based on the role, experience, skill set and location
  • commission-based pay (for eligible roles)
  • discretionary incentive compensation (cash and/or forfeitable equity)
  • comprehensive health care coverage
  • on-site health and wellness centers
  • retirement savings plan
  • backup childcare
  • tuition reimbursement
  • mental health support
  • financial coaching

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Principal

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service