JPMorgan Chase
Posted 1d ago

Security Engineer III-Python, Bash, Vulnerability Assessments

JPMorgan Chase
Columbus, Ohio, United States
OnsiteFull Time
Responsibilities
  • operating scanners
  • developing automation
  • analyzing scan data
Requirements
  • Requires security engineering training or certification and 3+ years of experience
  • Vulnerability scanning expertise
  • Scripting in Python, Bash, or PowerShell
  • Infrastructure-as-code
  • Networking, CI/CD, and AI-assisted security workflow validation
Technical tools mentioned
PythonBashPowerShellQualysTenableAPILinuxWindowsinfrastructure-as-codeversion controlcontinuous integrationcontinuous deliveryMicrosoft Azure

Job description

The security of a global financial institution depends on the strength of the people and systems behind it. At JPMorganChase, we're looking for a skilled security engineer ready to operate and evolve the infrastructure that keeps our firm — and the millions of people who depend on us — protected. This is your opportunity to work at scale, drive meaningful impact, and grow your career within one of the most sophisticated cybersecurity programs in the world.

As a Security Engineer III at JPMorganChase within the Cybersecurity & Technology Controls, Runtime Vulnerability Assessment team, you serve as a seasoned member of a team responsible for operating and advancing the firm's global vulnerability scanning program. You will help ensure comprehensive, timely detection across every asset — from on-premises data centers to cloud environments — and contribute to the scanning backbone that supports enterprise-wide risk decisions. You will carry out critical technology solutions with rigorous, audit-ready methods across multiple technical areas in support of the firm's business objectives.

Job responsibilities

  • Operate and maintain the firm's global scanner fleet, including appliance deployment, health monitoring, scan profile tuning, and failure recovery across Asia-Pacific, Europe, Middle East & Africa, and North American data centers
  • Develop and maintain automation tooling for scanner lifecycle management, including provisioning frameworks, agent packaging for Linux and Windows platforms, and integration with internal deployment pipelines.
  • Uses enterprise-authorized AI capabilities within the work environment to accelerate security analysis and vulnerability assessment documentation, validating outputs and ensuring sensitive data is handled appropriately.
  • Apply vulnerability scanning platforms to assess detection coverage, correlate findings, and identify gaps across managed and unmanaged asset populations
  • Collaborate with infrastructure and cloud engineering teams to ensure scan reachability across segmented networks, cloud workloads, and hybrid environments
  • Contribute to the development and maintenance of operational runbooks, continuity documentation, and coverage exercises to sustain scanning through infrastructure changes and major platform events
  • Analyze scan data and detection trends to surface actionable insights that inform enterprise risk prioritization and remediation workflows
  • Partner with cross-functional teams to support compliance scanning requirements and ensure alignment with regulatory and audit standards.
  • Applies reuse-first, AI-assisted practices within SDLC/toolchain routines to strengthen security testing and control validation, ensuring traceability/auditability and alignment to resiliency and security expectations.
  • Champion engineering best practices, including infrastructure-as-code, version control, and change management, within the vulnerability management program

 

Required qualifications, capabilities, and skills

  • Formal training or certification on security engineering concepts and 3+ years applied experience
  • Experience designing and operating vulnerability scanning solutions at enterprise scale, including scanner infrastructure, agent management, and scan orchestration
  • Proficiency in scripting and automation using one or more languages such as Python, Bash, PowerShell, or configuration management frameworks.
  • Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support security engineering workflows with strong validation habits and awareness of data sensitivity.
  • Ability to review and validate AI-assisted code/security recommendations before use, escalating when uncertain and following security and data handling requirements.
  • Solid understanding of the software development lifecycle, including infrastructure-as-code practices and change management controls
  • Working knowledge of network fundamentals, including segmentation, firewall rules, and connectivity as they relate to scan reachability
  • Familiarity with agile methodologies and continuous integration and delivery practices within a security engineering context
  • Ability to communicate technical findings and operational risks clearly to both technical and non-technical stakeholders

 

Preferred qualifications, capabilities, and skills

  • Hands-on experience administering Qualys or Tenable platforms, including appliance deployment, option profile configuration, and API-driven automation
  • Familiarity with agent-based scanning, binary packaging pipelines, and manifest version control for endpoint security tooling
  • Experience supporting Payment Card Industry Data Security Standard compliance scanning or equivalent regulatory scanning requirements
  • Exposure to cloud-native security tooling and vulnerability management across major cloud providers

 

#CTC

About Company

Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.

Company


JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process. 

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.

JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans

About JPMorgan Chase

Global financial services firm providing banking and investment solutions.

Similar jobs

Security Engineer roles near Columbus, Ohio
22h
Save
Mark Applied
Hide
Sr. Security Engineer - Cloud Threat Detection
Charlotte or Columbus or Hartford or Chicago
$128k-$193k/yr HybridFull Time
The Hartford
The HartfordNYSE: HIG: Provides property and casualty insurance and financial products.
5+ YOERequires 5+ years of cybersecurity experience, hands-on AWS and GCP security operations, enterprise SIEM detection engineering, cloud telemetry analysis, documentation, and SOC analyst mentoring.
AWS, Google Cloud Platform (GCP), AWS GuardDuty, AWS CloudTrail, AWS VPC Flow Logs, AWS Config, Google Security Command Center (SCC), Google Cloud Audit Logs, Google Cloud Logging, Identity and Access Management (IAM), Orca, CrowdStrike, Wiz, Splunk, Splunk Enterprise Security, Microsoft Sentinel, QRadar, Cortex XSIAM, MITRE ATT&CK, Python, PowerShell, Bash, SentinelOne, Microsoft Defender XDR for Endpoint, SPL, SOAR
1d
Save
Mark Applied
Hide
Sr. Security Engineer - Cloud Threat Detection
Hartford or Charlotte or Columbus or Chicago
$128k-$193k/yr HybridFull Time
The Hartford
The HartfordNYSE: HIG: Provides business and personal insurance, group benefits, and investments.
5+ YOERequires 5+ years of cybersecurity experience, hands-on AWS and GCP security, enterprise SIEM detection development, cloud telemetry investigation, documentation, analyst mentoring, and US work authorization without sponsorship.
AWS, Google Cloud Platform (GCP), AWS GuardDuty, AWS CloudTrail, AWS VPC Flow Logs, AWS Config, Google Security Command Center (SCC), Google Cloud Audit Logs, Google Cloud Logging, Identity and Access Management (IAM), Orca, CrowdStrike, Wiz, Splunk, Splunk Enterprise Security, Microsoft Sentinel, QRadar, Cortex XSIAM, MITRE ATT&CK, SPL, Python, PowerShell, Bash, SOAR, SentinelOne, Microsoft Defender XDR for Endpoint
1mo
Save
Mark Applied
Hide
Senior Security Engineer
Dublin or Brooklyn
HybridFull Time
Medical Mutual
Medical Mutual: Provide health, dental, and vision insurance and Medicare plans.
7+ YOEHands-on experience securing infrastructure, identity, network, and endpoints; strong systems and network background; scripting/automation skills; experience troubleshooting complex security issues; bachelor’s or equivalent and multi-year IT security experience.
Active Directory, VPN, WAF, web proxy, DLP
1mo
Save
Mark Applied
Hide
Senior Security Engineer
Dublin or Brooklyn
HybridFull Time
Medical Mutual
Medical Mutual: Provides health, life, and disability insurance plans to members.
7+ YOE7+ years IT security experience, bachelor’s or equivalent, CRISC/CISSP preferred, strong systems/network background (Active Directory, servers, networking), scripting/automation, identity and endpoint security expertise.
Active Directory, VPN, WAF, web proxy, DLP, application firewall
3mo
Save
Mark Applied
Hide
Virtru Security Engineer
Fort Meade or Columbus or Ford Island or Hill AFB or Mechanicsburg or Pensacola or San Antonio or Scott AFB or Tinker AFB
$99k-$225k/yr HybridAll Commitments Available
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
3+ YOE3+ years in designing, deploying, and configuring data security solutions; experience with data security tools (e.g., Virtru); data-centric security models; IT security infrastructure; Kubernetes and Docker; data tagging/classification; Zero Trust knowledge; ability to travel up to 20%; Secret clearance; HS diploma or GED.
Terraform, Ansible, Kubernetes, Docker, Go, Python, Node.js, CNAP, SIEM, CSPM, CWPP
3mo
Save
Mark Applied
Hide
Virtru Security Engineer
Fort Meade or Pensacola or Mechanicsburg or Columbus or San Antonio or Ford Island or Scott AFB or Tinker AFB or Hill AFB
$99k-$225k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
3+ YOE3+ years designing and deploying data security solutions; experience with data security tools (e.g., Virtru); security architecture and cloud knowledge; Kubernetes and Docker; data tagging/classification; Zero Trust concepts; ability to travel up to 20%; Secret clearance; HS diploma or GED.
Terraform, Ansible, Kubernetes, Docker, CI/CD, Vulnerability Scanning, CNAP, SIEM, CSPM, CWPP, Go, Python, Node.js
3mo
Save
Mark Applied
Hide
Security Engineer 2 - Cyber Security
Uniontown or Ann Arbor or Cincinnati or Columbus or Defiance or Fairmont or Findlay or Fort Wayne or Frankfort or Huntington or Indianapolis or Ironton or New Albany or Parkersburg or Pittsburgh or Toledo or Wheeling or Youngstown or Chattanooga or Franklin or Knoxville
RemoteFull Time
WesBanco
WesBancoNasdaq: WSBC: Regional bank providing personal, business, and investment services.
4+ YOEBachelor's in Information Security or related (or equivalent) plus 4 years' related experience; professional knowledge of network protocols and at least three tech areas (networking, Windows, security products, virtualization, cloud); change management experience.
Citrix, VMware, Nutanix, Azure, AWS, TCP/IP, SIEM, NIST, CIS, Microsoft, IPS, IDS, firewalls
4mo
Save
Mark Applied
Hide
Senior Security Engineer
San Mateo or Columbus or Austin or Remote
$165k-$228k/yr RemoteFull Time
Upstart
UpstartNasdaq: UPST: AI-powered lending marketplace for consumer and automotive loans.
Proven ownership of security initiatives end-to-end, design reviews, threat modeling, and AI-assisted tooling applications.