DescriptionJoin a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers.
As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity Technology and Controls you will serve as the threat modeling subject matter expert and security architecture leader for database platforms. Youll work alongside architects focused on public cloud databases and controls optimization to ensure database solutions are secure by design. This is a senior technical leadership role requiring deep expertise in database internals threat modeling methodologies and security architecture patterns. Youll influence product teams drive controls development and serve as a key escalation point for complex database security challenges.
Job responsibilities
- Lead structured threat modeling for database platforms and data flows identifying attack surfaces misuse/abuse cases and risk scenarios
- Integrate threat modeling into the SDLC and design review processes for database products
- Conduct security architecture reviews for new database deployments migrations and major changes
- Develop and optimize database security controls aligned with risk reduction outcomes
- Evaluate and solution for emerging security requirements including MCP (Model Context Protocol) and post-quantum cryptography (PQC) for database encryption
- Establish maintain and govern database security standards and baselines using STIGs CIS Benchmarks and industry best practices.
- Serve as a subject matter expert and escalation point for IT Risk and Cyber domains related to database security
- Proactively monitor KRIs to identify quantify communicate and manage issues with recommended resolutions
- Collaborate on audit and regulatory engagements risk activities and project initiatives
Required qualifications capabilities and skills
- Formal training or certification on security concepts and 10 years of applied of experience in database technologies with 5 years focused on database security architecture
- Deep expertise in at least two database platforms: Oracle SQL Server PostgreSQL Cassandra or cloud-native databases
- Demonstrated threat modeling experience: STRIDE attack trees or equivalent methodologies applied to database and data flow scenarios
- Strong understanding of database security controls: encryption at rest/in transit access controls audit logging masking/tokenization network segmentation
- Experience with STIGs and CIS Benchmarks for database hardening; hands-on experience publishing and tracking standards
- Ability to translate threat modeling findings into actionable control requirements for engineering teams
- Experience in a regulated environment with a 3LoD (Line of Defense) model; financial services healthcare or similar
- Experience with NoSQL database security: Cassandra MongoDB DynamoDB security patterns
- Familiarity with cloud database security: AWS RDS/Aurora Azure SQL/Cosmos DB GCP Cloud SQL security configurations
- Knowledge of emerging cryptographic requirements including post-quantum cryptography (PQC) readiness for database encryption
- Experience with AI/ML data security: securing training data model outputs and vector databases
- Background in financial services consumer businesses (Mortgages Cards Digital) preferred
Preferred qualifications capabilities and skills
- Experience with NoSQL database security: Cassandra MongoDB DynamoDB security patterns
- Familiarity with cloud database security: AWS RDS/Aurora Azure SQL/Cosmos DB GCP Cloud SQL security configurations
- Knowledge of emerging cryptographic requirements including post-quantum cryptography (PQC) readiness for database encryption
- Experience with AI/ML data security: securing training data model outputs and vector databases
- Relevant certifications: CISSP CISSP-ISSAP database vendor certifications (Oracle OCP AWS Database Specialty etc.)
- Background in financial services consumer businesses (Mortgages Cards Digital) preferred
#CTC
Required Experience:
Senior IC
DescriptionJoin a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers.As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity Technology and Controls you wi...
DescriptionJoin a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers.
As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity Technology and Controls you will serve as the threat modeling subject matter expert and security architecture leader for database platforms. Youll work alongside architects focused on public cloud databases and controls optimization to ensure database solutions are secure by design. This is a senior technical leadership role requiring deep expertise in database internals threat modeling methodologies and security architecture patterns. Youll influence product teams drive controls development and serve as a key escalation point for complex database security challenges.
Job responsibilities
- Lead structured threat modeling for database platforms and data flows identifying attack surfaces misuse/abuse cases and risk scenarios
- Integrate threat modeling into the SDLC and design review processes for database products
- Conduct security architecture reviews for new database deployments migrations and major changes
- Develop and optimize database security controls aligned with risk reduction outcomes
- Evaluate and solution for emerging security requirements including MCP (Model Context Protocol) and post-quantum cryptography (PQC) for database encryption
- Establish maintain and govern database security standards and baselines using STIGs CIS Benchmarks and industry best practices.
- Serve as a subject matter expert and escalation point for IT Risk and Cyber domains related to database security
- Proactively monitor KRIs to identify quantify communicate and manage issues with recommended resolutions
- Collaborate on audit and regulatory engagements risk activities and project initiatives
Required qualifications capabilities and skills
- Formal training or certification on security concepts and 10 years of applied of experience in database technologies with 5 years focused on database security architecture
- Deep expertise in at least two database platforms: Oracle SQL Server PostgreSQL Cassandra or cloud-native databases
- Demonstrated threat modeling experience: STRIDE attack trees or equivalent methodologies applied to database and data flow scenarios
- Strong understanding of database security controls: encryption at rest/in transit access controls audit logging masking/tokenization network segmentation
- Experience with STIGs and CIS Benchmarks for database hardening; hands-on experience publishing and tracking standards
- Ability to translate threat modeling findings into actionable control requirements for engineering teams
- Experience in a regulated environment with a 3LoD (Line of Defense) model; financial services healthcare or similar
- Experience with NoSQL database security: Cassandra MongoDB DynamoDB security patterns
- Familiarity with cloud database security: AWS RDS/Aurora Azure SQL/Cosmos DB GCP Cloud SQL security configurations
- Knowledge of emerging cryptographic requirements including post-quantum cryptography (PQC) readiness for database encryption
- Experience with AI/ML data security: securing training data model outputs and vector databases
- Background in financial services consumer businesses (Mortgages Cards Digital) preferred
Preferred qualifications capabilities and skills
- Experience with NoSQL database security: Cassandra MongoDB DynamoDB security patterns
- Familiarity with cloud database security: AWS RDS/Aurora Azure SQL/Cosmos DB GCP Cloud SQL security configurations
- Knowledge of emerging cryptographic requirements including post-quantum cryptography (PQC) readiness for database encryption
- Experience with AI/ML data security: securing training data model outputs and vector databases
- Relevant certifications: CISSP CISSP-ISSAP database vendor certifications (Oracle OCP AWS Database Specialty etc.)
- Background in financial services consumer businesses (Mortgages Cards Digital) preferred
#CTC
Required Experience:
Senior IC
View more
View less