LOG IN
SIGN UP
Canary Wharfian - Online Investment Banking & Finance Community.
Sign In
OR continue with e-mail and password
E-mail address
Password
Don't have an account?
Reset password
Join Canary Wharfian
OR continue with e-mail and password
E-mail address
Username
Password
Confirm Password
How did you hear about us?
By signing up, you agree to our Terms & Conditions and Privacy Policy.

Job Details

J.P. Morgan logo
Bulge Bracket Investment Banks

Technology Operational Risk Management Lead - Vice President

at J.P. Morgan

ExperiencedNo visa sponsorship

Posted 16 days ago

No clicks

As a Cybersecurity Operational Lead in the Compliance, Conduct, and Operational Risk (CCOR) team at JPMorgan Chase, you will assess and evaluate global cybersecurity risks across the firm’s technology estate and lead risk assessments, significant event reviews, and control monitoring. You will collaborate with 1st, 2nd, and 3rd Lines of Defense and partner with technology and cybersecurity teams to identify risk concentrations and recommend mitigating controls. The role requires strong technical knowledge of security controls and tools, excellent communication skills to present findings to senior leaders, and the ability to manage long-running projects independently.

Compensation
Not specified

Currency: Not specified

City
Plano
Country
United States

Full Job Description

Location: Plano, TX, United States

Bring your expertise to JPMorgan Chase. As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient. You help the firm grow its business in a responsible way by anticipating new and emerging risks and using your expert judgement to solve real-world challenges that impact our company, customers and communities. Our culture in Risk Management and Compliance is all about thinking outside the box, challenging the status quo and striving to be best-in-class. 

As a Cybersecurity Operational Lead within the Compliance, Conduct, and Operational Risk (CCOR) team, you will collaborate with the 1st, 2nd, and 3rd Lines of Defense (LOD) to assess and evaluate global cybersecurity risks to the JP Morgan Chase technology estate. You will utilize your hands-on experience in operating or implementing security controls and tools, along with your expertise in managing security risks at strategic, operational, and tactical levels. Your responsibilities include leading risk assessments, conducting significant event reviews, and monitoring controls across the Security Configuration and Security Operation domains. Success in this role requires a strong understanding of technical controls, excellent communication skills, and the ability to work effectively with senior leaders and stakeholders to assess large environments.

Job Responsibilities

  • Engage with technology and cybersecurity technologists to evaluate processes and risks
  • Assess risk impacts at the line of business and enterprise level
  • Work with technology areas to identify risk concentrations globally and understand how security controls mitigate them or identify residual risks
  • Write and present assessments highlighting control efforts or risks to Executive Directors, Managing Directors, and members of the Risk Operating Council
  • Exhibit strong organizational management skills necessary to collaborate with peers and deliver results 
  • Maintain a high level of professionalism and expertise to be recognized as an expert in an assigned security control domain
  • Keep abreast of current cyber trends, vulnerabilities and emerging technologies
  • Perform independent assessments of operational risks though operational risk monitoring programs (e.g., significant event reviews, deep dive reviews, risk metrics, operational risk appetite, independent risk management assessments)

Required qualifications, capabilities, and skills

  • 5+ years of experience as a technologist with experience in cybersecurity / technology development, engineering, or technical architecture within financial services organizations
  • Strong understanding of risk management at the enterprise level
  • Knowledge and experience in cybersecurity organization practices in some of the following: vulnerability management, penetration testing, incident response, endpoint protection, data loss prevention, email security, SIEM, DDoS, public cloud security configuration best practices, etc.
  • Ability to understand complex technical systems, the business processes they support, assess the inherent risks, and recommend mitigating security controls
  • Highly disciplined and able to work with limited supervision to execute long running projects with results
  • Exceptional verbal and written communication skills
  • Knowledge of common frameworks such as NIST CSF, FFIEC etc.

Preferred qualifications, capabilities, and skills

  • Proven experience translating on-premises security configurations and operational processes into multi cloud environments
  • Understanding of how cloud and on-premises security controls support federal and international regulatory compliance requirements
  • One or more information security or cloud certifications (e.g. CISSP, CISM, GIAC, CCNA Security, AWS Security Specialty, Azure Security Engineer)
Exciting opportunity for a skilled cybersecurity professional to join the global tech and cyber operational risk team.

Job Details

J.P. Morgan logo
Bulge Bracket Investment Banks

16 days ago

clicks

Technology Operational Risk Management Lead - Vice President

at J.P. Morgan

ExperiencedNo visa sponsorship

Not specified

Currency not set

City: Plano

Country: United States

As a Cybersecurity Operational Lead in the Compliance, Conduct, and Operational Risk (CCOR) team at JPMorgan Chase, you will assess and evaluate global cybersecurity risks across the firm’s technology estate and lead risk assessments, significant event reviews, and control monitoring. You will collaborate with 1st, 2nd, and 3rd Lines of Defense and partner with technology and cybersecurity teams to identify risk concentrations and recommend mitigating controls. The role requires strong technical knowledge of security controls and tools, excellent communication skills to present findings to senior leaders, and the ability to manage long-running projects independently.

Full Job Description

Location: Plano, TX, United States

Bring your expertise to JPMorgan Chase. As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient. You help the firm grow its business in a responsible way by anticipating new and emerging risks and using your expert judgement to solve real-world challenges that impact our company, customers and communities. Our culture in Risk Management and Compliance is all about thinking outside the box, challenging the status quo and striving to be best-in-class. 

As a Cybersecurity Operational Lead within the Compliance, Conduct, and Operational Risk (CCOR) team, you will collaborate with the 1st, 2nd, and 3rd Lines of Defense (LOD) to assess and evaluate global cybersecurity risks to the JP Morgan Chase technology estate. You will utilize your hands-on experience in operating or implementing security controls and tools, along with your expertise in managing security risks at strategic, operational, and tactical levels. Your responsibilities include leading risk assessments, conducting significant event reviews, and monitoring controls across the Security Configuration and Security Operation domains. Success in this role requires a strong understanding of technical controls, excellent communication skills, and the ability to work effectively with senior leaders and stakeholders to assess large environments.

Job Responsibilities

  • Engage with technology and cybersecurity technologists to evaluate processes and risks
  • Assess risk impacts at the line of business and enterprise level
  • Work with technology areas to identify risk concentrations globally and understand how security controls mitigate them or identify residual risks
  • Write and present assessments highlighting control efforts or risks to Executive Directors, Managing Directors, and members of the Risk Operating Council
  • Exhibit strong organizational management skills necessary to collaborate with peers and deliver results 
  • Maintain a high level of professionalism and expertise to be recognized as an expert in an assigned security control domain
  • Keep abreast of current cyber trends, vulnerabilities and emerging technologies
  • Perform independent assessments of operational risks though operational risk monitoring programs (e.g., significant event reviews, deep dive reviews, risk metrics, operational risk appetite, independent risk management assessments)

Required qualifications, capabilities, and skills

  • 5+ years of experience as a technologist with experience in cybersecurity / technology development, engineering, or technical architecture within financial services organizations
  • Strong understanding of risk management at the enterprise level
  • Knowledge and experience in cybersecurity organization practices in some of the following: vulnerability management, penetration testing, incident response, endpoint protection, data loss prevention, email security, SIEM, DDoS, public cloud security configuration best practices, etc.
  • Ability to understand complex technical systems, the business processes they support, assess the inherent risks, and recommend mitigating security controls
  • Highly disciplined and able to work with limited supervision to execute long running projects with results
  • Exceptional verbal and written communication skills
  • Knowledge of common frameworks such as NIST CSF, FFIEC etc.

Preferred qualifications, capabilities, and skills

  • Proven experience translating on-premises security configurations and operational processes into multi cloud environments
  • Understanding of how cloud and on-premises security controls support federal and international regulatory compliance requirements
  • One or more information security or cloud certifications (e.g. CISSP, CISM, GIAC, CCNA Security, AWS Security Specialty, Azure Security Engineer)
Exciting opportunity for a skilled cybersecurity professional to join the global tech and cyber operational risk team.