IT & Software

Lead Software Engineer - Proxy/SSE Network Security

JP Morgan Chase

London · Greater London · United Kingdom

Overview

In this Lead Software Engineer role, you will shape and deliver trusted security technology that protects the firm’s perimeter and cloud-adjacent environments. You will work within Corporate Sector - Enterprise Technology, partnering across cybersecurity, networking, and application teams to build scalable, secure solutions. You’ll tackle complex problems around Zero Trust, proxy and SSE patterns, and AI-assisted engineering practices to raise code quality and resilience. This is a high-impact role at scale, with a clear focus on risk reduction and operational stability.

Pay / Benefits
  • comprehensive health care coverage
  • retirement savings plan
  • tuition reimbursement
  • mental health support
  • wellness centers on-site
  • disability and family-friendly accommodations
Responsibilities
  • Design and implement innovative network security software solutions and troubleshoot complex issues
  • Develop secure, production-grade code and review peers' work
  • Architect and deploy Zero Trust Network Access (ZTNA) patterns for user-to-app and user-to-internet access
  • Build and operate Identity-Aware Proxy (IAP) and policy enforcement for web/app access
  • Implement or integrate Secure Gateway / Secure Web Gateway capabilities (URL filtering, TLS inspection, malware protection, sandboxing, egress controls, DNS security)
  • Leverage enterprise AI-assisted development tools to improve code quality, delivery speed, and testing
  • Maintain strong understanding of network infrastructure, protocols, and vulnerability mitigation
  • Own the US perimeter, proxy, and SSE/SASE engineering roadmap and execution with cross-team governance and stakeholder alignment
  • Define standards, reference architectures, and reusable patterns for perimeter and egress controls, TLS, and policy integration
  • Provide engineering leadership across edge environments (Cisco/Arista), interconnect ecosystems (Equinix Fabric), and cloud adjacencies (AWS Direct Connect, AWS PrivateLink)
  • Establish governance to accelerate remediation with traceability and risk reduction metrics
  • Drive operations excellence for perimeter, proxy, and SSE services with observability, incident management, and modernization outcomes
Key requirements
  • 5+ years in network security / SASE/ SSE/ identity security / security engineering
  • Strong understanding of Zero Trust principles, policy-based access, segmentation, and secure egress
  • Hands-on experience with proxy/gateway architectures and secure internet access controls
  • Deep knowledge of SAML, OIDC, OAuth 2.0 concepts, JWT (signing, verification, JWKs, rotation, scopes/claims, replay protection)
  • Experience with approved AI-assisted development tools and ability to set team expectations for validating AI outputs for correctness, performance, and security
  • Strong understanding of responsible AI use in engineering workflows and secure data handling
  • Regional ownership experience in the US for infrastructure and/or security platforms
  • Experience supervising engineers and delivering cross-team modernization programs
  • Strong knowledge of perimeter security architecture, controls, and defense-in-depth design
  • Experience designing/operating proxy and SSE capabilities at enterprise scale
  • Experience aligning edge/perimeter connectivity with operational and control requirements
  • Knowledge of interconnect and cloud adjacency models (Equinix Fabric, AWS Direct Connect/PrivateLink)
  • leadership and people management
  • cross-functional collaboration
  • risk-based decision making
  • ZTNA
  • IAP
  • Secure Web Gateway (SWG)

Reference: WJ-747_30163925

Apply now

Continue on the employer's official application - the same link they use for every candidate.

More jobs

Find more on GigBlows

This role is listed on GigBlows for discovery and search. Hiring decisions and applications are handled by the employer or their chosen application system.