At a Glance
- Tasks: Lead web application security reviews and collaborate with development teams to enhance security.
- Company: Join Chase UK, a digital bank revolutionising mobile banking with a start-up mentality.
- Benefits: Enjoy a flat-structure organisation, flexible work options, and opportunities for professional growth.
- Why this job: Make a real impact in fintech while working with cutting-edge technologies and passionate teams.
- Qualifications: Proficient in web application programming languages and strong communication skills required.
- Other info: Opportunity to explore various problem spaces and engage directly with innovative projects.
The predicted salary is between 48000 - 84000 £ per year.
Job SummaryWe know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase UK, to revolutionise mobile banking with seamless journeys that our customers love. We\’re already trusted by millions in the US and we\’re quickly catching up in the UK – but how we do things here is a little different. We\’re building the bank of the future from scratch, channelling our start‐up mentality every step of the way – meaning you\’ll have the opportunity to make a real impact.
Role OverviewAs a Web Application Product Security Lead at JPMorgan Chase within the International Consumer Bank, you will be a part of a flat‐structure organisation. Your responsibilities are to deliver end‐to‐end cutting‐edge solutions in the form of cloud‐native microservices architecture applications leveraging the latest technologies and the best industry practices. You are expected to be involved in the design and architecture of the solutions while also focusing on the entire SDLC lifecycle stages.
Our Security Engineering team is at the heart of this venture, focused on getting smart ideas into the hands of our customers. We\’re looking for people who have a curious mindset, thrive in collaborative squads, and are passionate about new technology. By their nature, our people are also solution‐oriented, commercially savvy and have a head for fintech. We work in tribes and squads that focus on specific products and projects – and depending on your strengths and interests, you\’ll have the opportunity to move between them.
Product Security ResponsibilitiesIn International Consumer Banking, the role has the opportunity to explore a wide range of problem spaces, working primarily on web application security whilst getting exposure to our Android and iOS mobile apps. You will engage directly with development teams and the wider security team to collaborate and solve technical problems. You will analyse application code, detect complex vulnerabilities, and communicate directly with the development teams to educate and assist them in mitigating these risks. You will develop frameworks and tools to perform automated detection of vulnerabilities. You will define best practices across the business to help us engineer more secure products that allows us to build trust at scale.
Key Responsibilities
Perform web application security review across consumer banking products and provide thought leadership and guidance to peers and senior management.
Build automation (static and dynamic analysis) and frameworks with software engineers that can improve security, whilst also improving developer and customer experience.
Provide guidance and education to developers that help prevent the authoring of vulnerabilities.
Challenge and assess potential technology risks including information and cyber security control weaknesses. Provide technology risk subject matter expertise and communicate the risk environment to management and other key stakeholders.
Build solid professional relationships with matrixed teams to include technology, business, audit, and operational risk partners.
Required Qualifications & Capabilities
Formal training or certification on web application programming languages concepts and proficient advanced experience.
Familiarity with web application programming languages (backend and frontend), development practices, and common security patterns.
Being a proficient communicator that allows you to share your knowledge and collaborate with the development team.
Preferred Qualifications & Capabilities
Knowledge of penetration testing techniques.
Knowledge of tools used in the security industry (e.g. Burp, OWASP ZAP).
Python, Ruby, Go or a similar language that can help you aid in the implementation of automation tooling.
Familiarity with IT risk management operating models, three lines‐of‐defence frameworks, integrated risk management practices, and/or risk intelligence capabilities.
Experience operating within a regulated industry.
#ICBCareers #ICBEngineering
#J-18808-Ljbffr
Contact Detail:
Jpmorgan Chase & Co. Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Lead Security Engineer - Chase UK
✨Tip Number 1
Familiarise yourself with the latest trends in web application security. Stay updated on common vulnerabilities and how to mitigate them, as this knowledge will be crucial during interviews and discussions with the team.
✨Tip Number 2
Network with professionals in the fintech and security sectors. Attend relevant meetups or webinars to connect with people who work at Chase UK or similar companies, as personal referrals can significantly boost your chances.
✨Tip Number 3
Demonstrate your problem-solving skills by working on personal projects or contributing to open-source security tools. This hands-on experience will not only enhance your skills but also provide concrete examples to discuss during your interview.
✨Tip Number 4
Prepare to discuss your experience with automation in security processes. Be ready to share specific examples of how you've implemented tools or frameworks that improved security measures in previous roles.
We think you need these skills to ace Lead Security Engineer - Chase UK
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of the Lead Security Engineer position at Chase UK. Familiarise yourself with web application security concepts and the technologies mentioned in the job description.
Tailor Your CV: Customise your CV to highlight relevant experience in web application security, automation, and collaboration with development teams. Use specific examples that demonstrate your skills in these areas, particularly any experience with programming languages and security tools.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for fintech and your understanding of the role. Mention how your background aligns with the company's mission to revolutionise mobile banking and how you can contribute to building secure products.
Highlight Soft Skills: In your application, emphasise your communication skills and ability to work collaboratively within teams. Provide examples of how you've successfully educated peers or contributed to team projects, as these are key attributes for the role.
How to prepare for a job interview at Jpmorgan Chase & Co.
✨Showcase Your Technical Expertise
Make sure to highlight your knowledge of web application programming languages and security patterns during the interview. Be prepared to discuss specific projects where you've implemented security measures or automated tools, as this will demonstrate your hands-on experience.
✨Demonstrate Your Problem-Solving Skills
Since the role involves analysing application code and detecting vulnerabilities, be ready to share examples of how you've tackled complex security issues in the past. This could include discussing your approach to penetration testing or how you’ve collaborated with development teams to mitigate risks.
✨Communicate Effectively
As a Lead Security Engineer, you'll need to communicate technical concepts clearly to non-technical stakeholders. Practice explaining your ideas in simple terms and be prepared to discuss how you would educate developers on preventing vulnerabilities.
✨Emphasise Collaboration
Chase UK values teamwork, so be sure to express your enthusiasm for working in collaborative squads. Share experiences where you've successfully built relationships with cross-functional teams, as this will show that you can thrive in their flat-structure organisation.