Full Job Description
This role requires a wide variety of strengths and capabilities, including:
Bachelor’s degree or equivalent experience
Ability to collaborate with high-performing teams and individuals throughout the firm to accomplish common goals
Proficiency in information security domains, including policies and standards, risk and control assessments, access controls, regulatory compliance, technology resiliency, risk and control governance and metrics, incident management, secure systems development lifecycle, vulnerability management, and data protection
Basic Excel knowledge – Pivot tables, vlookups, etc., ability to extract data to dissect areas of heighted risk concern through data
The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm’s cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group’s number one priority is to enable the business by keeping the firm safe, stable and resilient.
Outstanding communication, facilitation, escalation skills
Responsive, energetic, analytical
Ability to collaborate on ad hoc teams for risk evidencing and analysis
Audit engagement experience preferred
Preferable experience of Secure Software Development Life Cycle (SSDLC) (e.g. code review, risk assessments, threat modeling, static code analysis, and dynamic application scanning)
Experience in enterprise Identify and Access Management solutions, (e.g. Federated Identity, Privileged Access management, Active Directory, Role Based Access Control)
In the role, you will lead security controls-focused interlock discussions across technology departments (e.g. development teams, CBT, and other Risk groups) in support of security and controls, audit evidencing and uplift and remediation. You will partner with subject matter experts across multiple technology domains, helping them define and communicate their control frameworks, and helping with the identification and closure of architectural governance and software development lifecycle control gaps. And you will partner with technology staff to create action plans, mitigate risks, and resolve control issues.
JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.