Lead Software Engineer – Proxy/SSE Network Security

Company: JP Morgan Chase
Apply for the Lead Software Engineer – Proxy/SSE Network Security
Location: London
Job Description:

Overview

In this Lead Software Engineer role, you will shape and deliver trusted security technology that protects the firm’s perimeter and cloud-adjacent environments. You will work within Corporate Sector – Enterprise Technology, partnering across cybersecurity, networking, and application teams to build scalable, secure solutions. You’ll tackle complex problems around Zero Trust, proxy and SSE patterns, and AI-assisted engineering practices to raise code quality and resilience. This is a high-impact role at scale, with a clear focus on risk reduction and operational stability.

Pay / Benefits

  • comprehensive health care coverage
  • retirement savings plan
  • tuition reimbursement
  • mental health support
  • wellness centers on-site
  • disability and family-friendly accommodations

Responsibilities

  • Design and implement innovative network security software solutions and troubleshoot complex issues
  • Develop secure, production-grade code and review peers’ work
  • Architect and deploy Zero Trust Network Access (ZTNA) patterns for user-to-app and user-to-internet access
  • Build and operate Identity-Aware Proxy (IAP) and policy enforcement for web/app access
  • Implement or integrate Secure Gateway / Secure Web Gateway capabilities (URL filtering, TLS inspection, malware protection, sandboxing, egress controls, DNS security)
  • Leverage enterprise AI-assisted development tools to improve code quality, delivery speed, and testing
  • Maintain strong understanding of network infrastructure, protocols, and vulnerability mitigation
  • Own the US perimeter, proxy, and SSE/SASE engineering roadmap and execution with cross-team governance and stakeholder alignment
  • Define standards, reference architectures, and reusable patterns for perimeter and egress controls, TLS, and policy integration
  • Provide engineering leadership across edge environments (Cisco/Arista), interconnect ecosystems (Equinix Fabric), and cloud adjacencies (AWS Direct Connect, AWS PrivateLink)
  • Establish governance to accelerate remediation with traceability and risk reduction metrics
  • Drive operations excellence for perimeter, proxy, and SSE services with observability, incident management, and modernization outcomes

Key requirements

  • 5+ years in network security / SASE/ SSE/ identity security / security engineering
  • Strong understanding of Zero Trust principles, policy-based access, segmentation, and secure egress
  • Hands-on experience with proxy/gateway architectures and secure internet access controls
  • Deep knowledge of SAML, OIDC, OAuth 2.0 concepts, JWT (signing, verification, JWKs, rotation, scopes/claims, replay protection)
  • Experience with approved AI-assisted development tools and ability to set team expectations for validating AI outputs for correctness, performance, and security
  • Strong understanding of responsible AI use in engineering workflows and secure data handling
  • Regional ownership experience in the US for infrastructure and/or security platforms
  • Experience supervising engineers and delivering cross-team modernization programs
  • Strong knowledge of perimeter security architecture, controls, and defense-in-depth design
  • Experience designing/operating proxy and SSE capabilities at enterprise scale
  • Experience aligning edge/perimeter connectivity with operational and control requirements
  • Knowledge of interconnect and cloud adjacency models (Equinix Fabric, AWS Direct Connect/PrivateLink)
  • leadership and people management
  • cross-functional collaboration
  • risk-based decision making
  • ZTNA
  • IAP
  • Secure Web Gateway (SWG)

…

Posted: September 14th, 2026