About The Position

Join a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers. As a Senior Lead Security Engineer at JPMorgan Chase within the Cybersecurity Technology and Controls, you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Drive significant business impact through your capabilities and contributions and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains.

Requirements

  • Formal training or certification on security concepts and 5+ years of applied experience in software engineering or software development, including experience building internal tools or workflow automation
  • Skilled in planning, designing, and implementing enterprise-level solutions
  • Experience building internal tools, workflow automation, or pipeline management systems
  • Expertise in IAM technologies: OAuth2.0, SAML, ABAC, RBAC, PBAC, OPA.
  • Advanced proficiency in Java, Python, or Node.js—production-quality code
  • Advanced understanding of agile methodologies, CI/CD, Application Resiliency, Security, Service Ownership
  • Extensive experience with threat modeling, discovery, vulnerability, and penetration testing
  • Deep understanding of Active Directory security: attack paths, Kerberos authentication, delegation, DACL/SACL permissions, Group Policy, and trust relationships

Nice To Haves

  • Experience with dashboard and reporting tools: Grafana, Splunk, Prometheus, custom dashboards.
  • Experience with hybrid identity environments: Azure AD/Entra ID Connect, AWS Cognito, OIDC Federation
  • Familiarity with regulated industry environments (financial services, healthcare, government)
  • Experience with BloodHound, SharpHound, or equivalent AD attack path analysis tools
  • Certifications: CISSP, AWS/Azure certifications

Responsibilities

  • Execute creative security solutions, design, development, and technical troubleshooting—think beyond routine or conventional approaches
  • Build work pipeline management tools for IAM and DB-PSL threat modeling teams
  • Design and implement workflow automation for security assessment processes
  • Develop secure, high-quality production code (Java, Python, Node.js) and review/debug code written by others
  • Build custom detections and attack path queries for enterprise AD environment
  • Collaborates with stakeholders and senior business leaders to recommend business modifications during periods of vulnerability
  • Be responsible for triaging based on risk assessments of various threats and managing resources to cover impact of disruptive events
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service