
In partnership with internal and external stakeholders, review supplier security stacks and conduct field work to ensure they are complete and meet JPMC expectations.
Provide cybersecurity risk and controls expertise during the onsite / virtual assessment of the supplier controls environment.
Identify cybersecurity risks and weaknesses within suppliers’ IT and hosted cloud environments and document remediation plans.
Remain informed of the latest cyber risks in the industry and current adversarial tactics, techniques and procedures in order to maximize assessment effectiveness.
Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc
Required qualifications, capabilities, and skills
8-10 years of experience in Technology, Technology Risk & Controls, Cyber Operations, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network Security, or Cyber Resiliency within a large enterprise-level environment.
Advanced knowledge of cybersecurity operations including defensive architectures and processes to combat adversarial activities
Experience with techniques for incident management, incident handling, incident investigations, root cause analysis, and related processes
Written and verbal presentation skills at the senior management level including ability to describe cyber risks in terms relatable to business stakeholders
Preferred qualifications, capabilities, and skills
CISSP, CCSP or similar certifications are a plus
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.