Jobs

Associate, Supplier Cybersecurity Controls Assessor
Bengaluru, Karnataka, India, IN
·
On-site
·
Full-time
·
4w ago
The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC’s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC’s supply chain. SAS is part of Global Supplier Services (GSS), reporting directly to JPMC’s Global Head of Corporate Third Party Oversight.
Job Summary
As a Supplier Assurance Services (SAS) Supplier Control Assessor, within this role, you will be responsible for performing virtual technical risk and control assessments of medium and low risk supplier environments, including infrastructure, application stacks and other technologies to ensure compliance with JPMC Corporate Policies & Standards and to validate that technical risks are managed and security controls are implemented. The Supplier Control Assessment (SCA) team will partner with CTC and Lines of Business (LOBs) to focus on performing assessment of supplier’s control environments. The Team is also responsible for assessing action plans and risk acceptances across business lines where technology standards’ compliance cannot be achieved. This includes:
- Identifying opportunities to improve third party risk posture, developing creative solutions for mitigating risks.
- Liaising with JPMC and supplier’s senior managers to communicate and influence best risk practices.
- Driving compliance to adhere to best risk management practices throughout the organizations.
Job responsibilities
- Engage with multiple LOB Delivery Managers for firm-wide suppliers to ensure compliance with required assessments per the JPMC policy and procedures.
- Drive all aspects of the control assessment of suppliers.
- Assess completed questionnaire and supporting field work materials to ensure they are complete and meet JPMC expectations.
- Lead medium and low risk supplier virtual assessment, providing the overall IT and cybersecurity risk and controls expertise.
- Identify control breaks and vulnerabilities within supplier’s IT environment.
- Document findings and work with the LOB Delivery Manager, Information Security Manager to resolve those findings through action plans (APs) or seek risk acceptance (RA) approvals.
- Validate evidence from supplier, before action plans are closed.
- Escalate issues associated with suppliers as needed.
- Identify opportunities for process improvements to deliver increasing operational efficiency in the processes.
- Identify opportunities for improving supplier posture as well as JPMC's supplier management processes, including expanded monitoring, KRI tracking, etc.
- Assist with various SAS program initiatives working closely with the SAS Leads.
Required qualifications, capabilities, and skills
-
8+ years of experience in Technology, Technology Risk & Controls, Technology Audit, Cybersecurity, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network, Security, Cyber Resiliency and Third Party Outsourcing Risk Management within a large enterprise level environment.
-
Good understanding of relevant aspects of the Third-Party Oversight and Supplier Assurance Programs, lifecycle, execution best practices and supplier risk awareness.
-
Experience working in Supplier Management, Risk and Controls Management, Technology Audit, or Information Security team(s).
-
Strong written and verbal presentation skills at the senior management level
Preferred qualifications, capabilities, and skills
- CISSP, CISA, CISM, CCSP or CRISC certification is a plus
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs

Cybersecurity Incident Response Coordinator
EY ·

Advisor – Penetration Testing
Dell · Mexico City, Mexico

IT Security Attendant
General Motors · Milford, Michigan, United States of America

Associate Specialist, Cybersecurity Engineering Product Security
Merck · IND - Telangana - Hyderabad (HITEC City)

Enterprise Cybersecurity Cyber Threat Intelligence Intern
Booz Allen Hamilton · McLean, VA
About JPMorgan Chase

JPMorgan Chase
PublicJPMorgan Chase is a multinational investment bank and financial services company that provides banking, investment, and asset management services globally. It is one of the largest banks in the United States by assets and market capitalization.
300,000+
Employees
New York City
Headquarters
Reviews
4.2
10 reviews
Work Life Balance
4.2
Compensation
4.3
Culture
4.5
Career
4.4
Management
4.1
75%
Recommend to a Friend
Pros
Good pay and benefits
Work-life balance
Career advancement opportunities
Cons
Heavy workload at times
Career advancement takes time
Pay could be better in some roles
Salary Ranges
47 data points
Junior/L3
Mid/L4
Senior/L5
Junior/L3 · Analyst
21 reports
$126,500
total / year
Base
$110,000
Stock
-
Bonus
-
$95,450
$155,250
Interview Experience
4 interviews
Difficulty
2.8
/ 5
Duration
14-28 weeks
Interview Process
1
Application Review
2
HireVue Video Interview
3
Technical/Behavioral Assessment
4
Final Interview Round
5
Offer Decision
Common Questions
Behavioral/STAR
Technical Knowledge
Past Experience
Culture Fit
Case Study
News & Buzz
JPMorgan Chase to offer $1K match for Trump Accounts belonging employees’ kids - Fox Business
Source: Fox Business
News
·
5w ago
Focus: Trump's JPMorgan lawsuit underscores his growing clash with Wall Street - Reuters
Source: Reuters
News
·
5w ago
JPMorgan Chase and Bank of America Match Employees’s $1,000 ‘Trump Accounts’ - People.com
Source: People.com
News
·
5w ago
Bank of America, JPMorgan Chase to contribute $1,000 to Trump Accounts for their employees - CBS News
Source: CBS News
News
·
5w ago