Product Security Lead

2 weeks ago


United Kingdom JPMorgan Chase & Co. Full time

Product Security Lead 

This is an excellent opportunity to join a world class Cybersecurity organization. As a Product Security Lead (PSL) you  will work proactively with your technology and business colleagues to identify and quantify security issues within their business and empower them to take decisive risk decisions at speed and scale. You’re a security expert with a strong mix of technical and communication skills and are passionate about enabling safe and secure innovation. You will work with some of the best and brightest cybersecurity and technology engineers to solve complex problems which will both challenge you and help you develop your skills in one of the most innovative and respected companies in the world.  

Core Product Security Responsibilities: 

  • Cultivate security culture with your product technology and business colleagues. Products that have the right security culture will strive to prioritize sustainable controls and driving real risk reduction outcomes.  Embed threat modelling, solutions architecture, secure code review into product and application teams so they adopt our control products and create products that are secure from the start.  
  • Know your product  across its breadth and depth.  Be fluent in your product’s strategy and roadmap as well as its key investment programs. Identify unfamiliar technology components, capabilities, and business concepts and be self-motivated to learn all about them, applying critical thinking to identify hidden issues along the way.   
  • Be your product’s security thought leader .  Learn from your product and cybersecurity teams and share best practice in both directions.  Be recognized in your product as the clear point of escalation and subject matter expert for IT Risk and Cyber domains.  
  • Act with urgency managing emerging issues .  Proactively monitor Key Risk Indicators to ensure issues are identified, quantified, communicated, and managed in a timely manner, including recommendations for resolution and identifying the root cause/key themes.  
  • Partner and influence across your product’s supply chain .  Work collaboratively with product, technology, and business colleagues on an on-going basis for business-as-usual audit and regulatory engagements, risk activities and project initiatives. Work closely with Third Party Oversight teams to ensure effective technology risk management of vendors engaged by technology partners, with a focus on Cloud computing / emerging technologies.  

  Preferred Experience:

  • Experience in a successful security and risk organization with strong security and technical skills.
  • Experience of operating in a regulated organization with a 3LoD (Line of Defence) model.
  • Delivery excellence mixed with strategic vision 
  • Able to communicate effectively and authoritatively with technical and non-technical stakeholders 
  • Strong written and verbal communication skills. 
  • Ability to clearly explain complex technical concepts in simple terms.  
  • Demonstrated success in influencing peers inside and outside your department. 
  • Demonstrated experience / understanding with product technologies including but not limited to:
  • Understanding of Public Cloud computing, especially how controls are applied to secure data, ensure resiliency and availability. 
  • APIs 
  • micro-services 
  • Ability to collaborate on, and/or lead, ad hoc teams for control architecture and design
  • Willing to challenge the existing regime and process, in a respectful way.
  • Experience translating firmwide policy or regulatory requirements into control design and definition for Software Engineers and Solutions Architects 
  • Experience in financial services consumer businesses (i.e., Mortgages, Cards or Digital) preferred but not required 
  • Thinks in terms of risks and outcomes, and able to translate those into actions required to achieve business and technology goals 
  • Banking experience preferred but experience in industries with similar risk tolerance is acceptable  
  • Proven experience of upskilling and learning new technologies.

#ICBCareers

#J-18808-Ljbffr

  • United Kingdom Momentum Security Recruitment Full time

    Security Contract Manager Salary: £42,000 + car/car allowance Location: This is a field based role. As a guide, applicants should live close to the M25 SOUTH: for example Surrey, Sussex, Kent, Croydon etc. Tremendous opportunity to manage the delivery of security services to a portfolio of high-profile corporate sites. We are seeking a candidate that...


  • United Kingdom Security Buyer Full time

    Security Buyer Live is excited to announce that Keynetics will be sponsoring at our virtual event on 15-16 May 2024. Keynetics takes pride in providing partners, clients, and end-users with the most secure and reliable products, the patented SentriKey and SentriGuard systems, and the most personalised customer support at every stage of the process, from...


  • United Kingdom BAE Systems Full time

    Product Security Engineer We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role. As a Product Security Engineer you will be helping Future Combat Air System (FCAS) stakeholders to clearly understand their exposure to security threats / risks and put in place pragmatic and...


  • United Kingdom JPMorgan Chase & Co. Full time

    We know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase UK, to revolutionise mobile banking with seamless journeys that our customers love. We're already trusted by millions in the US and we're quickly catching up in the UK – but how we do things here is a little...


  • United Kingdom Aylesbury Full time

    Product Security Architect Product Security Architect – Remote UK - £90000 We are helping an innovative tech business scale their cloud software team. Due to continued growth and demand for their products theynow urgently need a Product Security Architect to join them ASAP. This role would suit a Product Security Architect who can define a strategy for...


  • United Kingdom Complete Security Recruitment Full time

    Fire & Security Role: Are you a Security Service Engineer working with security systems such as C-Cure? Tailored training plans for EVERY member of staff An opportunity has arisen to join a leading Security systems Company as a Service engineer covering Manchester and the surrounding areas. Previous experience of working with Security systems such...


  • United Kingdom Complete Security Recruitment Full time

    Fire & Security Role: Are you a Security Service Engineer working with security systems such as C-Cure? Tailored training plans for EVERY member of staff An opportunity has arisen to join a leading Security systems Company as a Service engineer covering Manchester and the surrounding areas. Previous experience of working with Security systems such...


  • United Kingdom InfoSec People Ltd Full time

    Title: Lead Product Security Engineer Location: Hybrid Remote (Central London Office); Sector: Finance/Retail, Apparel and Fashion Please note that to apply for this opportunity, you must be a British passport holder, and have resided in the UK permanently for 5 years continuously. Own and manage the Information Security relationship with an identified...


  • United Kingdom in Newbury Full time

    Home Lead Security Architect jobs in London 17 Lead security architect jobs in London Senior Lead Cyber Security Architect ermanen London 281971-Ipm Mission Control Ap_Sgp 26.04.2024 Senior Lead Cyber Security Architect ermanen London 281971-Ipm Mission Control Ap_Sgp 26.04.2024 Play a vital role in shaping the future of an iconic company and...


  • United Kingdom JPMorgan Chase & Co. Full time

    We’re creating products that solve real world problems and put customers at the center - all in an environment that nurtures skills and helps you realize your potential. As a Lead Software Engineer at JPMorgan Chase within the accelerator, you are the heart of this venture, focused on getting smart ideas into the hands of our customers. You thrive in...


  • United Kingdom JPMorgan Chase & Co. Full time

    Lead Software Engineer - Security Engineer Job Category Software Engineering Business Unit Corporate Sector Job Schedule Full time Job Shift Day We’re creating products that solve real world problems and put customers at the center - all in an environment that nurtures skills and helps you realize your potential. As a Lead Software Engineer at...


  • United Kingdom Telefónica Tech Full time

    Telefónica Tech (part of the Telefónica Group) is a leading NextGen Tech solutions provider with a highly diversified team of over 6,000 exceptionally skilled employees and +60 nationalities. We serve more than 5.5m customers everyday in over 175 countries, with a global ecosystem of market-leading partners. Global strategic hubs: Spain, Brazil, the UK,...


  • United Kingdom Telefónica Tech Full time

    Telefónica Tech (part of the Telefónica Group) is a leading NextGen Tech solutions provider with a highly diversified team of over 6,000 exceptionally skilled employees and +60 nationalities.We serve more than 5.5m customers everyday in over 175 countries, with a global ecosystem of market-leading partners. Global strategic hubs: Spain, Brazil, the UK,...


  • United Kingdom Telefónica Tech Full time

    Telefónica Tech (part of the Telefónica Group) is a leading NextGen Tech solutions provider with a highly diversified team of over 6,000 exceptionally skilled employees and +60 nationalities.We serve more than 5.5m customers everyday in over 175 countries, with a global ecosystem of market-leading partners. Global strategic hubs: Spain, Brazil, the UK,...


  • United Kingdom Telefónica Tech-PJP Full time

    Telefónica Tech (part of the Telefónica Group) is a leading NextGen Tech solutions provider with a highly diversified team of over 6,000 exceptionally skilled employees and +60 nationalities. We serve more than 5.5m customers everyday in over 175 countries, with a global ecosystem of market-leading partners. Global strategic hubs: Spain, Brazil, the UK,...


  • United Kingdom Iceberg Cyber Security Full time

    Can you develop a hands-on risk-based set of cybersecurity requirements for systems or subsystems? My client is a British Multinational defense organization, looking to bolster their Engineering Delivery Team with a candidate who will be proficient in running hands-on risk assessments in line with industry good practice (ISO 27001, NIST, JSP 440). You'll...


  • United Kingdom Iceberg Cyber Security Full time

    Can you develop a hands-on risk-based set of cybersecurity requirements for systems or subsystems? My client is a British Multinational defense organization, looking to bolster their Engineering Delivery Team with a candidate who will be proficient in running hands-on risk assessments in line with industry good practice (ISO 27001, NIST, JSP 440). You'll...


  • United Kingdom Atlas Recruitment Group Full time

    1 week ago Be among the first 25 applicants Save this job with your existing LinkedIn profile, or create a new one. Save this job with your existing LinkedIn profile, or create a new one. Your job seeking activity is only visible to you. Email Welcome back Sign in to save Product Security Consultant at Atlas Recruitment Group Ltd . Atlas...


  • United Kingdom Quorum Cyber Security Limited Full time

    what i do is: Lead and deliver data security and regulatory compliance focussed consultancy engagements. Partner with Quorum Cyber clients across a variety of industry verticals. Active listening and probing to learn understand business operations and challenges. Communicate with technical and business stakeholders to determine current-state and...


  • United Kingdom Mintel Full time

    Mintel’s Most Innovative Beauty, Personal Care and Household 2024 - Mintel’s Most Innovative Food and Drink 2024 - From our syndicated to custom solutions – we’ll tell you exactly what you need to know. Our industry solutions combine the latest market intelligence, industry insights and expert recommendations to help you anticipate what’s next....