LOG IN
SIGN UP
Canary Wharfian - Online Investment Banking & Finance Community.
Sign In
or continue with e-mail and password
Forgot password?
Don't have an account?
Create an account
or continue with e-mail and password
By signing up, you agree to our Terms & Conditions and Privacy Policy.

Lead Security Engineer - Cloud Proxy

ExperiencedNo visa sponsorship
J.P. Morgan logo

at J.P. Morgan

Bulge Bracket Investment Banks

Posted 5 days ago

No clicks

**Lead Security Engineer - Cloud Proxy (Plano, TX)** Lead high-impact security initiatives, designing and maintaining secure cloud network perimeter solutions at JPMorganChase. Drive security, reliability, and compliance for enterprise-scale outbound cloud traffic. Key responsibilities include: - Engineering secure software and infrastructure (IaC), with a focus on AWS services (e.g., ECS, Lambda, API Gateway, VPCs) - Leveraging AI capabilities for threat modeling and vulnerability analysis, validating outputs to ensure data sensitivity - Managing proxy infrastructure at scale, troubleshooting complex connectivity issues - Collaborating with cross-functional teams to design secure network connectivity patterns - Enhancing security protocols through industry insights and continual validation of controls Candidates must possess at least 5+ years of applied experience in software, security, or network engineering, alongside strong cloud network security automation skills and experience with AWS services.

Compensation
Not specified

Currency: Not specified

City
Plano
Country
United States

Full Job Description

Location: Plano, TX, United States

Take on a crucial role where you'll be a key part of a high-performing team delivering secure, scalable cloud network perimeter solutions. Make a real impact as you help shape the future of cloud egress security at one of the world's largest and most influential companies.

As a Lead Security Engineer at JPMorganChase within the Cloud Edge Proxy team, you will help design, secure, and operate a critical cloud network perimeter platform that governs outbound cloud traffic at enterprise scale. You will work across engineering and business teams to ensure cloud connectivity is secure, reliable, and compliant while enabling application teams to onboard and operate confidently.

 

Job Responsibilities

  • Designs, develops, and maintains secure software solutions for cloud network perimeter infrastructure, writing high-quality production code and reviewing code written by others across the full development lifecycle

     

  • Uses enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately.

  • Builds and manages infrastructure-as-code (IaC) to automate the provisioning, configuration, and scaling of cloud networking and proxy infrastructure in a consistent, repeatable, and auditable manner

  • Manages and operates enterprise-scale proxy infrastructure, ensuring high availability, performance, and security of egress traffic controls across cloud environments
  • Develops and maintains automation tooling to streamline network configuration, proxy onboarding workflows, certificate management, and policy enforcement
  • Troubleshoots complex network and proxy connectivity issues across cloud environments, applying structured diagnostic approaches to identify root cause and drive resolution
  • Collaborates with application teams, platform engineers, and architects to design secure and scalable network connectivity patterns that meet both technical and business requirements
  • Minimizes security vulnerabilities by following industry insights and evolving best practices, continuously improving network perimeter controls and validating their effectiveness
  • Adds to team culture of diversity, opportunity, inclusion, and respect
  • Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.

 

Required Qualifications, Capabilities, and Skills

  • Formal training or certification in software engineering, security engineering, or network engineering concepts and 5+ years of applied experience in one or more of these disciplines
  • Skilled in planning, designing, and implementing enterprise-level security and/or network solutions within cloud environments
  • Develops secure and high-quality production code and reviews and debugs code written by others, with a focus on cloud network security automation and infrastructure-as-code
  • Minimizes security vulnerabilities by following industry insights and governmental regulations to continuously evolve security protocols, including creating processes to determine the effectiveness of current controls
  • Works with stakeholders and business leaders to understand secure connectivity requirements and recommend appropriate architectural patterns and modifications during periods of vulnerability or change
  • Experience with AWS services including serverless solutions, ECS, EC2, Lambdas, API Gateway, and networking services such as VPCs, Transit Gateway, and PrivateLink
  • Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
  • Good communication skills, teamwork capabilities, and a self-learning attitude

     

  • Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.

 

Preferred Qualifications, Capabilities, and Skills

  • Experience with forward or reverse proxy technologies and architectures at enterprise scale (e.g., F5, Squid, Envoy, or equivalent)
  • Hands-on experience with TLS/SSL certificate management, PKI, mTLS, and truststore configuration in cloud-native environments
  • Strong understanding of proxy protocols (HTTP CONNECT, HTTPS, SOCKS5), DNS-based routing, and network egress control patterns
  • Experience effectively communicating with senior business leaders
  • AWS Certifications (e.g., Solutions Architect, Security Specialty, Advanced Networking Specialty) 
Deliver vital cloud egress security solutions across diverse technologies as a key member of an agile cloud edge proxy team.

Lead Security Engineer - Cloud Proxy

Compensation

Not specified

City: Plano

Country: United States

J.P. Morgan logo
Bulge Bracket Investment Banks

5 days ago

No clicks

at J.P. Morgan

ExperiencedNo visa sponsorship

**Lead Security Engineer - Cloud Proxy (Plano, TX)** Lead high-impact security initiatives, designing and maintaining secure cloud network perimeter solutions at JPMorganChase. Drive security, reliability, and compliance for enterprise-scale outbound cloud traffic. Key responsibilities include: - Engineering secure software and infrastructure (IaC), with a focus on AWS services (e.g., ECS, Lambda, API Gateway, VPCs) - Leveraging AI capabilities for threat modeling and vulnerability analysis, validating outputs to ensure data sensitivity - Managing proxy infrastructure at scale, troubleshooting complex connectivity issues - Collaborating with cross-functional teams to design secure network connectivity patterns - Enhancing security protocols through industry insights and continual validation of controls Candidates must possess at least 5+ years of applied experience in software, security, or network engineering, alongside strong cloud network security automation skills and experience with AWS services.

Full Job Description

Location: Plano, TX, United States

Take on a crucial role where you'll be a key part of a high-performing team delivering secure, scalable cloud network perimeter solutions. Make a real impact as you help shape the future of cloud egress security at one of the world's largest and most influential companies.

As a Lead Security Engineer at JPMorganChase within the Cloud Edge Proxy team, you will help design, secure, and operate a critical cloud network perimeter platform that governs outbound cloud traffic at enterprise scale. You will work across engineering and business teams to ensure cloud connectivity is secure, reliable, and compliant while enabling application teams to onboard and operate confidently.

 

Job Responsibilities

  • Designs, develops, and maintains secure software solutions for cloud network perimeter infrastructure, writing high-quality production code and reviewing code written by others across the full development lifecycle

     

  • Uses enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately.

  • Builds and manages infrastructure-as-code (IaC) to automate the provisioning, configuration, and scaling of cloud networking and proxy infrastructure in a consistent, repeatable, and auditable manner

  • Manages and operates enterprise-scale proxy infrastructure, ensuring high availability, performance, and security of egress traffic controls across cloud environments
  • Develops and maintains automation tooling to streamline network configuration, proxy onboarding workflows, certificate management, and policy enforcement
  • Troubleshoots complex network and proxy connectivity issues across cloud environments, applying structured diagnostic approaches to identify root cause and drive resolution
  • Collaborates with application teams, platform engineers, and architects to design secure and scalable network connectivity patterns that meet both technical and business requirements
  • Minimizes security vulnerabilities by following industry insights and evolving best practices, continuously improving network perimeter controls and validating their effectiveness
  • Adds to team culture of diversity, opportunity, inclusion, and respect
  • Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.

 

Required Qualifications, Capabilities, and Skills

  • Formal training or certification in software engineering, security engineering, or network engineering concepts and 5+ years of applied experience in one or more of these disciplines
  • Skilled in planning, designing, and implementing enterprise-level security and/or network solutions within cloud environments
  • Develops secure and high-quality production code and reviews and debugs code written by others, with a focus on cloud network security automation and infrastructure-as-code
  • Minimizes security vulnerabilities by following industry insights and governmental regulations to continuously evolve security protocols, including creating processes to determine the effectiveness of current controls
  • Works with stakeholders and business leaders to understand secure connectivity requirements and recommend appropriate architectural patterns and modifications during periods of vulnerability or change
  • Experience with AWS services including serverless solutions, ECS, EC2, Lambdas, API Gateway, and networking services such as VPCs, Transit Gateway, and PrivateLink
  • Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
  • Good communication skills, teamwork capabilities, and a self-learning attitude

     

  • Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.

 

Preferred Qualifications, Capabilities, and Skills

  • Experience with forward or reverse proxy technologies and architectures at enterprise scale (e.g., F5, Squid, Envoy, or equivalent)
  • Hands-on experience with TLS/SSL certificate management, PKI, mTLS, and truststore configuration in cloud-native environments
  • Strong understanding of proxy protocols (HTTP CONNECT, HTTPS, SOCKS5), DNS-based routing, and network egress control patterns
  • Experience effectively communicating with senior business leaders
  • AWS Certifications (e.g., Solutions Architect, Security Specialty, Advanced Networking Specialty) 
Deliver vital cloud egress security solutions across diverse technologies as a key member of an agile cloud edge proxy team.