Sr. Lead Cybersecurity Architect - Product Security Lead

JPMorgan Chase & Co.

Jersey City (NJ)

On-site

USD 120,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

JPMorgan Chase & Co. in Jersey City, NJ is seeking an experienced Product Security Team Member to drive security initiatives across the product lifecycle.

You will collaborate with engineering and architecture to embed security controls and best practices. The role requires hands-on expertise in secure development, threat modeling, and vulnerability management, with the ability to translate technical risks into business impact for senior stakeholders.

Qualifications

  • 5+ years in a product security role with a proven track record.
  • Strong knowledge of secure software development and OWASP Top Ten.
  • Experience with threat modeling, risk assessment, and vulnerability management.
  • Proficiency in Java, Python, or C/C++.
  • Familiarity with NIST CSF and GDPR/HIPAA regulations.
  • Excellent leadership and communication skills.
  • Security certifications such as CISSP or CISM are a plus.
  • Cloud security certifications (AWS) are a plus.
  • Experience with DevSecOps and policy-as-code.

Responsibilities

  • Partner with Engineering and Architecture to integrate security controls into platforms (AWS, GCP and related public cloud platforms).
  • Develop and propagate security design patterns to support secure technology solutions.
  • Guide engineering teams in the secure development of infrastructure services and products.
  • Ensure security considerations align with firmwide technology controls across the Software Development Lifecycle.
  • Develop extensible security solutions aligned to product strategy in future developments.
  • Conduct security assessments, threat modeling, and vulnerability assessments of products and features.
  • Work with architects and developers to design and implement secure code practices, conduct code reviews, and embed security in design.
  • Stay informed about emerging threats, vulnerabilities, and trends relevant to our products.
  • Drive security education and awareness across the organization and translate technical issues into business impact.
  • Improve security policies, standards, and guidelines related to product security.
  • Stay current with the latest security technologies, trends, and best practices.

Skills

Secure SDLC
OWASP Top Ten
Threat modeling
Vulnerability management
Java
Python
C/C++
Cloud platforms (AWS, GCP)
NIST CSF
GDPR
HIPAA
CISSP
CISM
CCSP
AWS Security Specialty
DevSecOps
Cross-functional teamwork
Communication
Leadership

Job description

We are seeking an experienced Product Security Team Member to drive our product security initiatives. The ideal candidate is a hands‑on expert in product security with a strong technical background and a deep understanding of secure development practices. You will collaborate with cross‑functional teams to identify, assess, and mitigate security risks throughout the product lifecycle.

Job responsibilities
  • Partnering with the Engineering & Architecture teams to integrate security controls into platforms (e.g. AWS, GCP, etc. based public cloudplatforms) and frameworks
  • Creating and propagating (developing ) security design patterns to support building consistent and secure technology solutions
  • Assisting and guiding engineering teams in the secure development of infrastructure services and products
  • Ensure security considerations are delivered in compliance with firmwide technology controls from the start and throughout the Software Development Lifecycle.
  • Developing extensible security solutions aligned to the product strategy in future developments.
  • Conduct security assessments, threat modeling, and vulnerability assessments of products and features to identify and prioritize security risks.
  • Work with architects and developers to design and implement secure code practices, conduct code reviews, and ensure security is embedded in the design.
  • Knowledge of emerging security threats, vulnerabilities, and trends relevant to our products.
  • Drive security education and awareness across the organization, ensuring all employees understand their role in maintaining product security.
  • Provide regular security updates to senior management and stakeholders, translating technical security issues into business impact.
  • Improve security policies, standards, and guidelines related to product security.
  • Stay up-to-date with the latest security technologies, trends, and best practices.
Required qualifications, capabilities, and skills
  • Formal Training or certification with 5 + years of experience in a product security role with a track record of driving security initiatives.
  • Strong knowledge of secure software development practices and common vulnerabilities (e.g., OWASP Top Ten).
  • Experience with threat modeling, risk assessment, and vulnerability management.
  • Proficiency in programming languages (e.g., Java, Python, C/C++).
  • Familiarity with security frameworks (e.g., NIST Cybersecurity Framework) and industry regulations (e.g., GDPR, HIPAA).
  • Excellent leadership, communication, and interpersonal skills.
  • Security certifications such as CISSP, CISM, or relevant certifications are a plus.
  • Cloud Certifications such as AWS Solutions Architecture Associate/Professional, AWS Security Specialty
  • Experience with DevSecOps practices and tools is desirable.
  • Ability to lead and work effectively in a cross‑functional team environment.
  • Strong problem-solving skills and the ability to think critically
Preferred qualifications , capabilities and skills
  • Security certifications (e.g., CISSP, CISM, CCSP) and/or cloud certifications (e.g., AWS Security Specialty, Solutions Architect).
  • Experience with DevSecOpsand continuous compliance controls (policy-as-code, guardrails, automated evidence).

#CTC

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vice President, Product Security
Vice President, Product Security

Qualys • Virginia Beach (VA)

On-site
USD 180,000 - 280,000
Vice President, Product Security
Vice President, Product Security

Qualys • Raleigh (NC)

On-site
USD 260,000 - 360,000
Vice President, Product Security
Vice President, Product Security

Qualys • Philadelphia

On-site
USD 260,000 - 380,000
Vice President, Product Security
Vice President, Product Security

Socket.dev • Virginia (MN)

Hybrid
USD 210,000 - 320,000
Cyber Security Engineer
Cyber Security Engineer

StevenDouglas • West Palm Beach (FL)

On-site
USD 150,000 - 190,000
Product Security Manager
Product Security Manager

symplr • United States

On-site
USD 120,000 - 140,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Cybersecurity Architect
Cybersecurity Architect

Finezi Inc. • Rosemead (CA)

On-site
USD 130,000 - 160,000