JP Morgan Chase & Co.

Sr Lead Cybersecurity Architect

JP Morgan Chase & Co.$150K — $180K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in cybersecurity architecture with formal training or certification
  • Hands-on delivery of enterprise-level cybersecurity solutions including threat modeling
  • Experience with AI and machine learning in cybersecurity workflows
  • Proficiency in scripting and automation languages like Python and PowerShell
  • In-depth knowledge of endpoint security technologies
  • Experience in secure software development lifecycle and CI/CD integration
  • Strong ability to independently tackle complex design challenges

Responsibilities

  • Lead evaluations of cybersecurity principles and drive technology assessments
  • Define and maintain secure baseline configurations for product teams
  • Conduct proactive threat modeling and security assessments
  • Leverage AI/ML capabilities to enhance cybersecurity architecture processes
  • Provide expert guidance to technology teams and business partners
  • Recommend risk mitigations during elevated risk periods
  • Produce control artifacts that streamline compliance and audit processes

Benefits

  • Opportunities for ongoing training and professional development
  • Access to cutting-edge cybersecurity tools and technologies
  • Collaborative work environment emphasizing diversity and inclusion
  • Career advancement opportunities within a leading financial institution
  • Contribution to impactful cybersecurity solutions on a global scale
Full Job Description
JOB DESCRIPTION

As a Senior Lead Cybersecurity Architect at JPMorganChase within the Employee Compute Security Architecture (ECSA) team, you are an integral part of a team that enables endpoint security product teams to deliver secure-by-default, resilient services at speed. Drive significant business impact by embedding clear security standards, consumable security services, and expert guidance into the delivery lifecycle across the endpoint security estate. Apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains, from endpoint and identity to collaboration, virtualization, and cloud-delivered workplace services.

Our mission is to drive enterprise risk reduction and operational resilience by standardizing secure baseline configurations, integrating proactive threat modeling and consultative reviews, and producing control artifacts that simplify compliance and accelerate time to value.

Job responsibilities

  • Lead and own the evaluation of cybersecurity principles, processes, and controls across the endpoint security estate; drive technology assessments using established security standards and patterns, with the authority to influence peers and decision-makers to adopt leading-edge solutions.
  • Define, publish, and maintain secure-by-default baseline configurations and consumable security services that endpoint security product teams can adopt directly within their delivery lifecycle.
  • Conduct proactive threat modeling, security assessments, and technical risk assessments on design proposals from product and engineering teams, delivering consultative secure design reviews.
  • Leverage enterprise-authorized AI and machine learning capabilities to improve the efficiency, throughput, and quality of cybersecurity architecture work — including accelerating risk analysis and decisioning, automating threat modeling and secure design reviews, and generating control artifacts — while validating outputs and handling data according to sensitivity and security requirements.
  • Serve as a subject matter expert across ECSA and the broader cybersecurity organization, providing technical guidance and direction to technology teams, business partners, contractors, and vendors, and championing secure-by-design adoption at speed.
  • Work with stakeholders and senior business leaders to recommend risk mitigations and business modifications during periods of elevated risk, open vulnerability windows, or active risk acceptance decisions, and translate regulatory requirements into actionable technical controls.
  • Produce control artifacts and evidence that simplify compliance, streamline audits, and accelerate time to value for product teams.
  • Actively contribute to the engineering community as an advocate for firmwide frameworks, tools, and practices of the Software Development Life Cycle, integrating security into CI/CD pipelines and DevSecOps workflows.
  • Influence technology decisions by introducing improvements in implementation patterns and architectural design, and identify opportunities to eliminate or automate remediation of recurring issues.
  • Manage concurrent architecture engagements — balancing priorities, deadlines, and deliverables across multiple product teams — to ensure timely security design input and implementation support.
  • Add to team culture of diversity, equity, inclusion, and respect.
Required qualifications, capabilities, and skills
  • Formal training or certification on cybersecurity architecture and 5+ years applied experience
  • Hands-on practical experience delivering enterprise-level cybersecurity solutions and controls, including threat modeling, threat assessments, and secure design reviews.
  • Experience applying AI or machine learning tools to cybersecurity or technology workflows, with demonstrated ability to critically evaluate and validate AI-assisted outputs before adoption. Direct application within cybersecurity architecture workflows — such as AI-accelerated risk analysis, threat modeling, or control documentation — is strongly preferred and will characterize day-to-day work in this role.
  • Ability to assess and validate AI-assisted security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
  • Proficiency in scripting and automation languages (e.g., Python, PowerShell, or Bash), with solid knowledge of cybersecurity architecture, applications, and technical processes within one or more technical disciplines (e.g., public cloud, endpoint, identity, AI/ML, or mobile).
  • Experience securing endpoint or workplace-compute platforms (e.g., Windows/macOS, EDR, MDM, or virtualization); candidates are expected to bring demonstrated depth in at least one of these areas.
  • Experience in infrastructure or systems administration — such as enterprise systems engineering, OS deployment and hardening, or platform operations — and the secure software development lifecycle, including familiarity with automation, continuous delivery, and security integration into CI/CD pipelines.
  • Experience in security products, risk management, information security standards, security architecture principles, threat and vulnerability management, and incident response methodologies.
  • Working knowledge of enterprise networking concepts and network security controls — including network segmentation, firewall policy, secure access patterns, and DNS/proxy architecture — sufficient to assess and advise on network-layer design decisions within endpoint and workplace environments.
  • Understanding of enterprise Identity and Access Management concepts such as federated identity, SSO, OAuth/SAML, privileged access management, and RBAC.
  • Experience designing security controls aligned to a comprehensive control catalog (e.g., NIST 800-53), including control scoping, design, and the production of control artifacts and evidence that support compliance and audit readiness.
  • Ability to tackle design and functionality problems independently with little to no oversight.
  • Ability to evaluate current and emerging technologies to select or recommend the best solutions for the future-state architecture.
  • Excellent verbal and written communication skills, with the demonstrated ability to translate security concepts clearly for both technical and non-technical audiences — including executives, senior business leaders, and external partners.
Preferred qualifications, capabilities, and skills
  • Industry certifications such as CISSP, CCSP, SABSA, or equivalent cybersecurity architecture credentials.
  • Experience navigating cross-jurisdictional compliance complexity in a multi-national or global enterprise, including adapting security controls to meet region-specific regulatory requirements.
  • Familiarity with financial services compliance frameworks beyond NIST 800-53, such as SOC 2, PCI-DSS, NIST CSF 2.0, or the NIST AI Risk Management Framework.
  • Experience with zero-trust architecture principles and their practical application in hybrid or multi-cloud environments.
  • Experience with AI governance practices, MLSecOps, or enterprise AI security policy — such as model risk management, AI supply-chain security, or AI-specific control frameworks.
  • Experience securing AI/ML and agentic systems (e.g., threat modeling for prompt injection, data leakage, model extraction, and supply-chain exposure), and willingness to work on proofs of concept for new, innovative approaches.
  • Experience providing technical mentorship, conducting architectural guidance sessions, or leading communities of practice within a security or engineering organization.

About JP Morgan Chase & Co.

JP Morgan Chase & Co. stands at the forefront of the global financial services industry. They offer an expansive array of products and services to a diverse clientele, including individuals, corporations, governments, and institutions. Ever since the merger of J.P. Morgan & Co. and Chase Manhattan Corporation in 2000, this industry-leading entity has become renowned for its comprehensive portfolio encompassing consumer and community banking, corporate and investment banking, commercial banking, as well as asset and wealth management. Headquartered in the vibrant city of New York, JP Morgan Chase & Co. boasts a formidable presence across over 100 countries worldwide.

Unveiling Employment Opportunities at JP Morgan Chase & Co.

Vacancies and Hiring Initiatives

JP Morgan Chase & Co. is continuously on the lookout for talented individuals eager to contribute to its legacy of excellence. The company's recruitment efforts are geared towards identifying candidates with the right blend of skills and qualifications to drive forward its various business segments. Whether you are a seasoned professional or a recent graduate, JP Morgan Chase offers a plethora of job openings across multiple disciplines.

High-Demand Positions

Among the myriad of roles, certain positions stand out for their attractive compensation packages and career advancement prospects. Notably, high-paying jobs at JP Morgan Chase & Co. include Relationship Manager, Branch Manager, and Software Engineer. These roles are critical to the firm's operations and offer lucrative opportunities for those with the requisite expertise.

Navigating the Job Market at JP Morgan Chase & Co.

Leveraging Job Portals and Job Alerts

For job seekers aiming to tap into the opportunities at JP Morgan Chase, staying updated through job portals and subscribing to job alerts is crucial. These tools can provide timely information about job openings, job fairs, and recruitment events, enabling candidates to apply promptly and prepare adequately for interviews.

Preparing Your Job Application

Your job application, comprising your resume and cover letter, is your ticket to securing an interview at JP Morgan Chase. Highlight your qualifications, skills, and experiences that align with the job listing, ensuring you stand out in the competitive job market.

Acing the Interview

Preparation is key to succeeding in your interview with JP Morgan Chase. Familiarize yourself with the company's business segments, values, and recent achievements. Demonstrating how your background and aspirations match the company's goals can significantly increase your chances of employment. A World of Job Opportunites in the Financial Services Industry JP Morgan Chase & Co. offers a world of job opportunities for those seeking to make their mark in the financial services industry. With competitive salaries, comprehensive benefits, and endless possibilities for growth, positions at JP Morgan Chase are highly coveted. By staying informed through job sites, tailoring your applications, and preparing thoroughly for interviews, you can enhance your prospects of joining the esteemed ranks of JP Morgan Chase employees. Explore the job board, seize the job opportunities, and embark on a rewarding career journey with one of the world's leading financial institutions.
Learn more about JP Morgan Chase & Co.
Size
661 employees
Market Cap
$384.5 billion
Industry
Net Income
$29.1 billion
Founded
1823
5 Year Trend
+0.7%
Revenue
$261.5 million
NASDAQ

Similar Jobs

More Jobs at JP Morgan Chase & Co.

More Information Technology Jobs

Find similar Sr Lead Cybersecurity Architect jobs: