Lead Cloud Security Engineer

JPMorganChase

Dublin

On-site

EUR 150,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

J.P. Morgan is seeking a Lead Cloud Security Engineer to shape the security strategy for its global cloud infrastructure.

You will lead, mentor, and influence cloud security programs across AWS, Azure, and GCP, driving security by design and governance across product, engineering, and risk functions. You will define guardrails for infrastructure as code, oversee security reviews of Terraform pipelines, and partner with senior leaders to ensure audit readiness and resilient security controls at

Qualifications

  • Formal training or certification on security engineering concepts.
  • Experience designing and implementing enterprise-level security solutions.
  • Experience using enterprise‑authorized AI capabilities in security workflows.
  • Ability to review AI‑assisted code/security recommendations before adoption.
  • Advanced in one or more programming languages.
  • Proven proficiency with SDLC, CI/CD, resiliency, and security.
  • Experience with threat modeling, discovery, vulnerability testing.

Responsibilities

  • Contribute to multi-year information risk and control strategy for public cloud.
  • Lead risk-based design and assessment of security controls across cloud services.
  • Chair governance forums and drive remediation and benefits realization.
  • Embed security by design with engineering, product and risk teams.
  • Define guardrails, policy as code, and automated security reviews.
  • Build and mentor a matrixed team of security engineers and risk analysts.
  • Report control effectiveness and residual risk to executives and regulators.

Skills

Cloud security
Threat modeling
CI/CD
Terraform
Leadership
Executive communication
AI-assisted security

Education

Security engineering certification

Tools

Terraform
CI/CD tooling

Job description

Job Description

Join us to make a meaningful impact on the security of our global cloud infrastructure. As a Lead Cloud Security Engineer, you will help shape the future of cybersecurity and technology controls at JPMorgan Chase & Co. You'll collaborate with talented professionals, drive innovation, and advance your career in a dynamic environment. We value your expertise and commitment to continuous improvement. Experience the opportunity to lead, mentor, and influence the direction of cloud security.

Job Responsibilities
  • Contribute to the evolution of a multi-year information risk and control strategy for public cloud, setting vision, OKRs, and KRIs that align with enterprise risk appetite, policies, and regulatory expectations.
  • Use enterprise-authorized AI capabilities within the work environment to accelerate threat modeling, vulnerability analysis synthesis, and security documentation, validating outputs and ensuring sensitive data is handled appropriately.
  • Lead risk-based design and assessment of security controls across cloud services, platforms, and reference architectures; establish standardized control baselines and reusable patterns for AWS, Azure, and GCP.
  • Chair or co-chair governance forums, make informed risk acceptance decisions, and drive timely remediation, deviation tracking, and benefits realization.
  • Partner with senior leaders across engineering, product, and risk to embed “security by design,” ensuring deep integration with security operations, threat intelligence, IAM, network security, and data protection.
  • Set the operating model for infrastructure as code security: define guardrails, policy as code, and automated pre-commit/pre-deploy controls; oversee security reviews for Terraform and platform engineering pipelines.
  • Establish and maintain authoritative documentation, standards, and playbooks; implement agile delivery mechanisms for security programs at scale.
  • Build, mentor, and lead a high-performing matrixed team of security engineers and risk analysts; develop talent, clarify accountabilities, and cultivate a culture of ownership and continuous improvement.
  • Define and report control effectiveness and residual risk through executive-ready dashboards; brief senior stakeholders, audit, and regulators; ensure audit readiness and sustainable evidence practices.
  • Drive the tooling and automation strategy for cloud security, including build vs buy evaluations, vendor management, and integration with existing telemetry and SOAR platforms.
  • Strengthen cloud incident preparedness and response by leading threat modeling, tabletop exercises, and post-incident reviews that translate lessons learned into control enhancements.
  • Apply reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.
Required Qualifications, Capabilities, And Skills
  • Formal training or certification on security engineering concepts and advanced applied experience.
  • Skilled in planning, designing, and implementing enterprise-level security solutions.
  • Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.
  • Ability to review and validate AI-assisted code/security recommendations before adoption, escalating uncertainty and ensuring outcomes align to security, resiliency, and auditability expectations.
  • Advanced in one or more programming languages.
  • Proficient across SDLC execution, including agile methodologies such as CI/CD, application resiliency, and security.
  • Experience with threat modeling, discovery, vulnerability, and penetration testing.
Preferred Qualifications, Capabilities, And Skills
  • Deep expertise securing public cloud at scale, spanning identity and access management, network segmentation, data protection, logging/monitoring, and native cloud services across AWS, Azure, and/or GCP.
  • Proven leadership of cross-functional security programs with measurable outcomes; adept at influencing VP+ stakeholders and navigating complex prioritization across multiple platforms and business lines.
  • Exceptional executive communication and stakeholder management skills, including experience engaging internal audit and external regulators with clear narratives, metrics, and remediation roadmaps.
  • Demonstrated ability to translate policy and risk requirements into practical designs and policy as code guardrails that balance delivery velocity with control effectiveness.
  • Hands-on familiarity with Terraform and infrastructure as code security, DevSecOps and CI/CD concepts, and enforcement frameworks within modern development workflows.
  • Strong program execution under tight timelines; highly self-directed with a bias for action, ownership, and outcome orientation.
  • Advanced cloud and security certifications are a plus; experience deploying and operating CSPM/CIEM/CWPP solutions is advantageous.
About Us

J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world's most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We stride to build trusted, long-term partnerships to help our clients achieve their business objectives.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.

About The Team

Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Cloud Security Engineer
Lead Cloud Security Engineer

JPMorgan Chase & Co. • Dublin

On-site
EUR 140,000 - 190,000
Lead Security Engineer
Lead Security Engineer

JPMorgan Chase & Co. • Ireland

On-site
EUR 120,000 - 160,000
Lead Security Engineer
Lead Security Engineer

Next Frontier Capital • Dublin

On-site
EUR 90,000 - 140,000
Security Engineer III
Security Engineer III

Fairygodboss • Dublin

On-site
EUR 110,000 - 150,000
Security Engineer III
Security Engineer III

JPMorganChase • Dublin

On-site
EUR 110,000 - 140,000
Senior Lead Security Engineer - Google Cloud.
Senior Lead Security Engineer - Google Cloud.

JPMorganChase • Dublin

On-site
EUR 120,000 - 180,000
Security Engineer III
Security Engineer III

Next Frontier Capital • Dublin

On-site
EUR 90,000 - 150,000
Sr. Lead Security Engineer - Google Cloud Platform
Sr. Lead Security Engineer - Google Cloud Platform

Next Frontier Capital • Dublin

On-site
EUR 120,000 - 180,000
Lead Security Engineer - Application Security
Lead Security Engineer - Application Security

JPMorganChase • Dublin

On-site
EUR 90,000 - 130,000
Senior Lead Security Engineer - Google Cloud. at JPMorganChase
Senior Lead Security Engineer - Google Cloud. at JPMorganChase

JPMorganChase • Dublin

On-site
EUR 120,000 - 180,000