Cloud Security Software Engineer
JPMorgan Chase & Co.(NYSE: JPM ) is a leading Functional financial services firm with assets of > $2 trillion and operations in more than 60 countries. The firm is a leader in investment banking, financial services for consumers, small business and commercial banking, financial transaction processing, asset management, and private equity.
The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm’s cybersecurity, access management, controls, and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group’s number one priority is to enable the business by keeping the firm safe, stable, and resilient. Specifically, we're the team who helps secure data management in the Public Cloud. We are experts in data protection and governance, passionate in our desire to maintain a high security bar, and focused on how to build secure and resilient data management systems in the cloud.
As a Cloud Security Software Engineer, you will help build solutions relating to Identity and Access Management (entitlements), Data Governance, Data Protection, Encryption , Auditing and Access patterns. You will help build secure and resilient data management systems and processes in Public Cloud and will play an important role in performing security reviews of data management solutions and services, implementing sufficient controls in order to safeguard and protect data in Public Cloud.
Role and Responsibilities:
- Engage and improve the whole lifecycle of services – from inception and design, through deployment, operation and refinement
- Scale through automation and evolve systems by pushing change that improves reliability and velocity
- Design, develop, test, deploy, maintain and enhance software/tooling solutions
- Design and implement automated deployment strategies that scale with the business
- Research, design and apply advanced security techniques
- Manage individual project priorities, deadlines and deliverables
- Develop and build solutions relating to Identity and Access Management (entitlements), Data Governance, Data Protection, Encryption, Auditing and Access patterns in the Public Cloud
- Perform design and code reviews of cloud data management solutions in order to identify security and best practice issues and gaps
- Ensure data management systems are designed and built with highest levels of security for data protection and governance in the cloud
Required Skills:
- BS degree in Computer Science or equivalent practical experience
- 5+ years hands on development experience within a Public Cloud environment
- Experience in developing enterprise software and proficiency in multiple technologies preferably Python
- CI/CD experience utilizing tools such as Github, Terraform, Jenkins, etc.
- Practical exposure with cloud provisioning tools like Terraform and CloudFormation
- A strong interest and passion for Security. Experience in application security, cryptography, network security or system security
- Experience with development methodologies e.g. Agile
- Proficient verbal and written communication skills, including the ability to effectively lead technical discussions and meetings with partner teams, product owners and customers
- Work independently, collaborate within a team to develop meaningful relationships to achieve common goals
- Ability to prioritize and work under stringent timelines
Desired Skills:
- Hands on experience of data management technologies in Public Cloud such as Redshift, EMR, Lake Formation, Data Pipeline, MSK etc. is a plus but not a pre-requisite
- Knowledge of Cybersecurity organization practices, operations, risk management processes, principles, architectural requirements, engineering and threats and vulnerabilities
- Cloud certifications including AWS Developer, AWS Data Analytics Specialty, AWS Solutions Architect
- Security certifications including AWS Security Specialty, OSCP, SANS/GIAC
- Knowledge of Big Data and Machine Learning concepts and technologies