At a Glance
- Tasks: Design and implement security solutions to enable fast, secure software delivery.
- Company: Join JPMorgan Chase, a leader in innovative security engineering.
- Benefits: Competitive salary, diverse culture, and opportunities for professional growth.
- Other info: Dynamic environment that values diversity and fosters innovation.
- Why this job: Make a real impact on secure software delivery while advancing your career.
- Qualifications: Experience in software or cloud engineering with strong security skills.
The predicted salary is between 80000 - 100000 £ per year.
Join us and shape the future of secure software delivery. As a Lead Security Engineer, you will work at the intersection of security and platform engineering, designing impactful solutions that enable teams to move fast while managing risk. You will collaborate with talented squads, contribute to a culture that values unique perspectives, and foster growth, impact, and innovation. This is your opportunity to make a difference and advance your career in a dynamic, engineering‑led environment. We’re committed to helping you thrive and grow.
As a Lead Security Engineer at JPMorgan Chase in the Platform team, you will embed security into engineering workflows and deliver scalable engineering solutions. You will actively design, build, and implement security capabilities. Your role is hands‑on, collaborating with squads to reduce platform risk and enable secure software delivery. You will help shape a modern, engineering‑led approach to security, empowering teams to move fast while managing risk.
Our culture values unique perspectives and fosters growth, impact, and innovation.
Job Responsibilities- Design, build, and operate scalable security capabilities integrated into engineering workflows
- Embed security into the software development lifecycle by implementing automated controls
- Improve software supply chain security through SBOM generation and dependency visibility
- Analyze and enrich vulnerability data with contextual information for effective remediation
- Provide actionable insights and guidance to engineering teams to address security issues
- Collaborate with platform and product engineering teams to drive secure development practices
- Identify and assess security risks in runtime and cloud environments, supporting remediation
- Support the development and operation of runtime security tooling for production risk visibility
- Contribute to security incident response activities, including triage and investigation
- Develop and maintain incident response processes, runbooks, and detection capabilities
- Work with risk, governance, and control teams to support reporting and compliance
- Hands‑on experience in software, platform, or cloud engineering roles deploying systems in public cloud environments
- Strong ability to design and implement security controls within engineering workflows, especially CI/CD pipelines
- Proficiency in at least one programming or scripting language for automation and integration
- Solid understanding of the Software Development Life Cycle and integrating security practices
- Experience applying security testing and controls within CI/CD pipelines
- Familiarity with cloud‑native technologies, including containerization and orchestration platforms
- Strong analytical and problem‑solving skills to deliver practical security solutions
- Good understanding of modern engineering practices, including CI/CD, system resilience, and secure software delivery
- Experience in platform security, DevSecOps, or engineering‑led security teams
- Familiarity with security tools such as Snyk and Wiz
- Knowledge of software supply chain security concepts, including SBOM, SLSA, and dependency management
- Cloud certifications, preferably GCP (e.g., Professional Cloud Architect, Professional DevOps Engineer)
- Experience operating in large‑scale enterprise environments within regulated industries
- Ability to communicate technical risks clearly to engineering teams and senior stakeholders
We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants and employees’ religious practices and beliefs, as well as mental health or physical disability needs.
Lead Security Engineer employer: hackajob
At JPMorgan Chase, we pride ourselves on being an exceptional employer, particularly for our Lead Security Engineers. Our dynamic, engineering-led environment fosters innovation and collaboration, allowing you to make a meaningful impact while advancing your career. With a strong commitment to diversity and inclusion, we provide ample opportunities for professional growth and development, ensuring that every team member can thrive in their role.
StudySmarter Expert Advice🤫
We think this is how you could land Lead Security Engineer
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with potential colleagues on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to security and platform engineering. This gives you a chance to demonstrate your hands-on experience and problem-solving abilities.
✨Tip Number 3
Prepare for interviews by brushing up on common security scenarios and technical questions. Practice explaining your thought process clearly, as communication is key when discussing risks and solutions with engineering teams.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team and contributing to secure software delivery.
We think you need these skills to ace Lead Security Engineer
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience in security and platform engineering. We want to see how your skills align with the role of Lead Security Engineer, so don’t hold back on showcasing your relevant projects!
Showcase Your Technical Skills:Don’t forget to mention your hands-on experience with CI/CD pipelines and any programming languages you’re proficient in. We love seeing candidates who can demonstrate their technical prowess, especially in cloud environments!
Highlight Collaboration Experience:Since this role involves working closely with various teams, share examples of how you've collaborated in the past. We value unique perspectives and teamwork, so let us know how you’ve contributed to a culture of growth and innovation.
Apply Through Our Website:We encourage you to apply directly through our website for the best chance of getting noticed. It’s the easiest way for us to keep track of your application and ensure it reaches the right people!
How to prepare for a job interview at hackajob
✨Know Your Security Fundamentals
Make sure you brush up on your security principles, especially those related to CI/CD pipelines and cloud environments. Be ready to discuss how you've implemented security controls in past projects, as this will show your hands-on experience and understanding of the role.
✨Showcase Your Collaboration Skills
Since the role involves working closely with engineering teams, prepare examples of how you've successfully collaborated in the past. Highlight any experiences where you’ve embedded security into workflows or contributed to a culture of secure development.
✨Be Ready for Technical Questions
Expect technical questions that assess your problem-solving skills and knowledge of security tools like Snyk and Wiz. Brush up on your programming or scripting skills, as you may be asked to demonstrate your ability to automate security processes.
✨Communicate Clearly About Risks
Practice explaining complex security concepts in simple terms. You’ll need to convey technical risks to both engineering teams and senior stakeholders, so being able to articulate these clearly will set you apart from other candidates.