Lead Software Engineer - Proxy/SSE Network Security
JP Morgan Chase
In this Lead Software Engineer role, you will shape and deliver trusted security technology that protects the firm’s perimeter and cloud-adjacent environments. You will work within Corporate Sector - Enterprise Technology, partnering across cybersecurity, networking, and application teams to build scalable, secure solutions. You’ll tackle complex problems around Zero Trust, proxy and SSE patterns, and AI-assisted engineering practices to raise code quality and resilience. This is a high-impact role at scale, with a clear focus on risk reduction and operational stability.
Pay / Benefits- comprehensive health care coverage
- retirement savings plan
- tuition reimbursement
- mental health support
- wellness centers on-site
- disability and family-friendly accommodations
- Design and implement innovative network security software solutions and troubleshoot complex issues
- Develop secure, production-grade code and review peers' work
- Architect and deploy Zero Trust Network Access (ZTNA) patterns for user-to-app and user-to-internet access
- Build and operate Identity-Aware Proxy (IAP) and policy enforcement for web/app access
- Implement or integrate Secure Gateway / Secure Web Gateway capabilities (URL filtering, TLS inspection, malware protection, sandboxing, egress controls, DNS security)
- Leverage enterprise AI-assisted development tools to improve code quality, delivery speed, and testing
- Maintain strong understanding of network infrastructure, protocols, and vulnerability mitigation
- Own the US perimeter, proxy, and SSE/SASE engineering roadmap and execution with cross-team governance and stakeholder alignment
- Define standards, reference architectures, and reusable patterns for perimeter and egress controls, TLS, and policy integration
- Provide engineering leadership across edge environments (Cisco/Arista), interconnect ecosystems (Equinix Fabric), and cloud adjacencies (AWS Direct Connect, AWS PrivateLink)
- Establish governance to accelerate remediation with traceability and risk reduction metrics
- Drive operations excellence for perimeter, proxy, and SSE services with observability, incident management, and modernization outcomes
- 5+ years in network security / SASE/ SSE/ identity security / security engineering
- Strong understanding of Zero Trust principles, policy-based access, segmentation, and secure egress
- Hands-on experience with proxy/gateway architectures and secure internet access controls
- Deep knowledge of SAML, OIDC, OAuth 2.0 concepts, JWT (signing, verification, JWKs, rotation, scopes/claims, replay protection)
- Experience with approved AI-assisted development tools and ability to set team expectations for validating AI outputs for correctness, performance, and security
- Strong understanding of responsible AI use in engineering workflows and secure data handling
- Regional ownership experience in the US for infrastructure and/or security platforms
- Experience supervising engineers and delivering cross-team modernization programs
- Strong knowledge of perimeter security architecture, controls, and defense-in-depth design
- Experience designing/operating proxy and SSE capabilities at enterprise scale
- Experience aligning edge/perimeter connectivity with operational and control requirements
- Knowledge of interconnect and cloud adjacency models (Equinix Fabric, AWS Direct Connect/PrivateLink)
- leadership and people management
- cross-functional collaboration
- risk-based decision making
- ZTNA
- IAP
- Secure Web Gateway (SWG)
Reference: WJ-747_30163925