Security Engineer III-Python, Bash, Vulnerability Assessments

JPMorganChase

Columbus (OH)

On-site

USD 120,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

JPMorgan Chase & Co. is seeking a Security Engineer III to operate and evolve its global vulnerability scanning program across on-prem and cloud environments.

You will join the Cybersecurity & Technology Controls, Runtime Vulnerability Assessment team to ensure timely detection and risk-informed decisions. You will develop automation, manage scanner infrastructure, leverage AI capabilities with strict validation, and collaborate with infrastructure and cloud teams to maintain coverage, safety,

Qualifications

  • 3+ years of applied security engineering experience.
  • Experience designing and operating vulnerability scanning solutions at enterprise scale.
  • Scripting and automation in Python, Bash, PowerShell.
  • Experience using AI capabilities with validation and data handling.
  • Ability to review AI-assisted code/security recommendations.
  • Understand SDLC, IaC, and change controls.
  • Knowledge of network fundamentals and segmentation.

Responsibilities

  • Operate and maintain the firm’s global scanner fleet across data centers.
  • Develop automation tooling for scanner lifecycle management.
  • Use AI capabilities to accelerate security analysis and documentation.
  • Assess detection coverage, correlate findings, and identify gaps.
  • Collaborate with infra and cloud engineers for scan reachability.
  • Maintain runbooks and continuity documentation.
  • Analyze scan data to surface actionable risk insights.
  • Support compliance scanning per regulatory standards.
  • Apply AI-assisted practices in SDLC/toolchain for traceability.
  • Champion infrastructure-as-code, version control, and change management.

Skills

Python
Bash
PowerShell
Automation
AI-assisted workflows
Infrastructure as Code
CI/CD
Security communications

Education

Security certification

Tools

Qualys
Tenable

Job description

Job Description

The security of a global financial institution depends on the strength of the people and systems behind it. At JPMorgan Chase, we’re looking for a skilled security engineer ready to operate and evolve the infrastructure that keeps our firm—and the millions of people who depend on us—protected. This is your opportunity to work at scale, drive meaningful impact, and grow your career within one of the most sophisticated cybersecurity programs in the world.

As a Security Engineer III within the Cybersecurity & Technology Controls, Runtime Vulnerability Assessment team, you serve as a seasoned member of a team responsible for operating and advancing the firm’s global vulnerability scanning program. You will help ensure comprehensive, timely detection across every asset—from on‑premises data centers to cloud environments—and contribute to the scanning backbone that supports enterprise‑wide risk decisions. You will carry out critical technology solutions with rigorous, audit‑ready methods across multiple technical areas in support of the firm’s business objectives.

Job Responsibilities
  • Operate and maintain the firm’s global scanner fleet, including appliance deployment, health monitoring, scan profile tuning, and failure recovery across Asia‑Pacific, Europe, Middle East & Africa, and North American data centers.
  • Develop and maintain automation tooling for scanner lifecycle management, including provisioning frameworks, agent packaging for Linux and Windows platforms, and integration with internal deployment pipelines.
  • Use enterprise‑authorized AI capabilities within the work environment to accelerate security analysis and vulnerability assessment documentation, validating outputs and ensuring sensitive data is handled appropriately.
  • Apply vulnerability scanning platforms to assess detection coverage, correlate findings, and identify gaps across managed and unmanaged asset populations.
  • Collaborate with infrastructure and cloud engineering teams to ensure scan reachability across segmented networks, cloud workloads, and hybrid environments.
  • Contribute to the development and maintenance of operational runbooks, continuity documentation, and coverage exercises to sustain scanning through infrastructure changes and major platform events.
  • Analyze scan data and detection trends to surface actionable insights that inform enterprise risk prioritization and remediation workflows.
  • Partner with cross‑functional teams to support compliance scanning requirements and ensure alignment with regulatory and audit standards.
  • Apply reuse‑first, AI‑assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.
  • Champion engineering best practices, including infrastructure‑as‑code, version control, and change management, within the vulnerability management program.
Required Qualifications, Capabilities, And Skills
  • Formal training or certification on security engineering concepts and 3+ years applied experience.
  • Experience designing and operating vulnerability scanning solutions at enterprise scale, including scanner infrastructure, agent management, and scan orchestration.
  • Proficiency in scripting and automation using one or more languages such as Python, Bash, PowerShell, or configuration management frameworks.
  • Demonstrated experience using enterprise‑authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.
  • Ability to review and validate AI‑assisted code/security recommendations before use, escalating when uncertain and following security and data handling requirements.
  • Solid understanding of the software development lifecycle, including infrastructure‑as‑code practices and change management controls.
  • Working knowledge of network fundamentals, including segmentation, firewall rules, and connectivity as they relate to scan reachability.
  • Familiarity with agile methodologies and continuous integration and delivery practices within a security engineering context.
  • Ability to communicate technical findings and operational risks clearly to both technical and non‑technical stakeholders.
Preferred Qualifications, Capabilities, And Skills
  • Hands‑on experience administering Qualys or Tenable platforms, including appliance deployment, option profile configuration, and API‑driven automation.
  • Familiarity with agent‑based scanning, binary packaging pipelines, and manifest version control for endpoint security tooling.
  • Experience supporting Payment Card Industry Data Security Standard compliance scanning or equivalent regulatory scanning requirements.
  • Exposure to cloud‑native security tooling and vulnerability management across major cloud providers.
Benefits

We offer a competitive total rewards package including base salary determined by role, experience, skill set, and location. Eligible employees may receive commission‑based pay and/or discretionary incentive compensation, paid in cash or equity, and may also receive benefits such as comprehensive health care coverage, on‑site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching, and more.

Equal Opportunity Employer Statement

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees' religious practices and beliefs, as well as mental health or physical disability needs. JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer III-Python, Bash, Vulnerability Assessments
Security Engineer III-Python, Bash, Vulnerability Assessments

JPMorgan Chase & Co. • Columbus (OH)

On-site
USD 110,000 - 150,000
Sr Manager of Security Engineering- Backend
Sr Manager of Security Engineering- Backend

JPMorgan Chase • Columbus (OH)

On-site
USD 180,000 - 240,000
Sr Manager of Security Engineering- Backend Java
Sr Manager of Security Engineering- Backend Java

Aumni • Columbus (OH)

On-site
USD 120,000 - 150,000
Comprehensive health care coverage
Tuition reimbursement
Mental health support
+1
Cyber Intelligence Senior Associate
Cyber Intelligence Senior Associate

JPMorganChase • Plano (TX)

On-site
USD 90,000 - 120,000
Comprehensive health-care coverage
Support for mental health
Tuition reimbursement
Lead Security Engineer- Java, Python
Lead Security Engineer- Java, Python

JPMorganChase • Columbus (OH)

On-site
USD 125,000 - 150,000
Principal Security Engineer
Principal Security Engineer

JPMorganChase • Seattle (WA)

On-site
USD 180,000 - 240,000
Health coverage
On-site health centers
Retirement plan
+4
Lead Security Engineer
Lead Security Engineer

慨正橡扯 • Tampa (FL)

On-site
USD 140,000 - 210,000
Security Engineer III - Python & Cloud at JPMorgan Chase Bank, N.A. Plano, TX
Security Engineer III - Python & Cloud at JPMorgan Chase Bank, N.A. Plano, TX

JPMorgan Chase Bank, N.A. • Plano (TX)

Hybrid
USD 100,000 - 130,000
Health care coverage
Retirement savings plan
Tuition reimbursement
+1
Security Engineer III: Vulnerability Scanning & Automation
Security Engineer III: Vulnerability Scanning & Automation

JPMorganChase • Columbus (OH)

On-site
USD 120,000 - 150,000
Senior Penetration Tester at JPMorgan Chase & Co. Washington DC
Senior Penetration Tester at JPMorgan Chase & Co. Washington DC

JPMorgan Chase & Co. • Washington

On-site
USD 180,000 - 240,000