JPMorganChase Logo

JPMorganChase

Tech Risk & Controls Lead

Posted 8 Hours Ago
Be an Early Applicant
Hybrid
London, Greater London, England
Mid level
Hybrid
London, Greater London, England
Mid level
As a Tech Risk & Controls Lead, you will assess and manage technology risks within a governance framework, implement and evaluate controls, analyze complex risks, and develop strategies to enhance the firm's risk posture while ensuring compliance with regulations and industry standards.
The summary above was generated by AI

Job Description
Join our dynamic team to navigate complex risk landscapes and fortify technology governance, making a pivotal impact in our firm's robust risk strategy.
As a Technical Tech Risk & Controls Senior Associate in the Cyber Security Tech Controls (CTC) team, aligned with the Corporate Investment Banking division, you will be an integral part of a cyber risk management function. The team primarily focuses on a cross-asset platform that delivers innovative and efficient applications to various business units within the firm, including sales, trading, operations, risk and research.
You will contribute to the successful identification and management of technology-aligned aspects of Governance, Risk, and Compliance (GRC) in line with the firm's standards. Leveraging your broad knowledge in risk management principles and technical experience, you will identify assess and monitor risks and implement effective controls. Your role in risk identification, control evaluation, and security governance is crucial in advising on complex situations and enhancing the firm's risk posture. Through a deep technical aptitude, collaboration and analytical skills, you will contribute to the overall success of the Technology Risk & Services team and ensure compliance with regulatory obligations and industry standards.
Job responsibilities

  • Risk Assessment, Monitoring & Reporting: Assess, monitor & report technology risks, ensuring compliance with firm standards, regulatory requirements, and industry best practices.
  • Control Implementation: Support the implementation of effective controls in collaboration with cross-functional teams and stakeholders.
  • Control Evaluation: Evaluate the effectiveness of existing controls, identify gaps, and recommend improvements to mitigate risks and enhance the firm's risk posture.
  • Risk Analysis and Mitigation: Analyze complex situations, provide advice on risk management strategies, and support the implementation of risk mitigation measures.
  • Documentation and Communication: Document and articulate risks appropriately; raise issues and action plans in CORE as appropriate in partnership with application partners.
  • Technical Assessments / Threat Identification: Working closely with application partners identify attack and threat vectors through threat modelling, discovery, vulnerability, and penetration testing.


Required qualifications, capabilities, and skills

  • Between 4-5 years of experience or equivalent expertise in technology risk management, information security, or a related field, with a focus on risk identification, assessments, controls testing, and mitigation.
  • Experience in risk identification, assessment, and control evaluation, with a strong understanding of industry standards.
  • Demonstrated ability to analyze complex issues, develop and implement risk mitigation strategies, and communicate effectively with senior stakeholders.
  • Proficient knowledge of risk management frameworks, regulations, and industry best practices.
  • Good understanding of Software Development Life Cycle (SDLC) pipelines, CI/CD, application resiliency, and security, IAM, Data Protection and vulnerability management.
  • Software / Security engineering background in any modern programming languages and Cloud experience (ideally Amazon Web Services) due the systems and community we are actively working within.
  • Technical ability to gather and combine data from disparate sources to build a cohesive view on risk.
  • Ability to develop and maintain robust relationships becoming a trusted partner with LOB technologists to progress toward shared goals
  • Awareness of key risks in the financial services sector, particularly pertaining to on-prem and/or public cloud hosted infrastructure & applications.
  • Enthusiasm for enabling the business to create new governance and controls.


Preferred qualifications, capabilities, and skills

  • CISM, CRISC, CISSP, or other industry-recognized risk certifications.
  • Ability to think outside the box and proven experience in eliminating toil and crafting efficient processes.
  • Good understanding of coding in Python (or other modern languages) and/or proficiently to navigate/follow code.


Join our team and contribute to maintaining a robust and secure technology environment, supporting our diverse business operations.
About Us
J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world's most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
About the Team
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.

Top Skills

Python

Similar Jobs at JPMorganChase

Be an Early Applicant
2 Days Ago
London, Greater London, England, GBR
Hybrid
289,097 Employees
Senior level
289,097 Employees
Senior level
Financial Services
The Tech Risk and Controls Lead will manage the technology Governance, Risk & Compliance discipline, overseeing the Information Risk Management program and ensuring technology risks are identified, assessed, and monitored. This role collaborates with various stakeholders to maintain risk reference data and optimize taxonomies, driving initiatives to enhance the firm's risk management capabilities.
Be an Early Applicant
8 Days Ago
London, Greater London, England, GBR
Hybrid
289,097 Employees
Expert/Leader
289,097 Employees
Expert/Leader
Financial Services
The Tech Risk & Controls Director will lead GRC initiatives, enhance technology risk and control frameworks, and drive complex programs while engaging with senior stakeholders. The role involves managing risks, ensuring alignment with business objectives, and promoting a culture of operational excellence and innovation within the GRC team.
Be an Early Applicant
2 Days Ago
London, Greater London, England, GBR
Hybrid
289,097 Employees
Mid level
289,097 Employees
Mid level
Financial Services
The Technology Risk & Controls Manager at JPMorgan Chase will define and maintain the technology risk and control environment, assess technical control effectiveness, coordinate responses to audits and regulatory requests, analyze compliance with standards, and maintain stakeholder relationships. A strong understanding of risk management practices and technical requirements in financial services is essential.

What you need to know about the Manchester Tech Scene

Home to a £5 billion digital ecosystem, including MediaCity, which consists of major players like the BBC, ITV and Ericsson, Manchester is one of the U.K.'s top digital tech hubs, at the forefront of advancements in film, television and emerging sectors like as e-sports, while also fostering a community of professionals dedicated to pushing creative and technological boundaries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account