Supplier Cybersecurity Controls Assessor
Are you interested in joining an industry-leading Third Party Risk Management team? We are hiring cybersecurity risk professionals.
As a Supplier Cybersecurity Controls Assessor within our Supplier Assurance Services (SAS) team, you will perform comprehensive risk assessments of suppliers within JPMC's Corporate Third Party Oversight (CTPO) program.
The SAS team supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to enhance the security posture of JPMC's supply chain.
As part of Global Supplier Services (GSS) and reporting directly to JPMC's Global Head of Corporate Third Party Oversight, you will conduct technology and cybersecurity control assessments of supplier environments, including services hosted in public cloud providers.
You will evaluate the effectiveness of controls in supplier infrastructure, application stacks, cloud hosts, and other technologies, ensuring the confidentiality and integrity of JPMC's data stored in supplier environments and the availability of JPMC's services provided by suppliers.
To effectively assess suppliers, you will stay informed of the latest cyber risks in the industry and current adversarial tactics, techniques, and procedures.
Your leadership skills and proven ability to function with minimal day-to-day oversight will help you navigate complex stakeholder organizations and sensitive JPMC supplier relationships, making your work in SAS a critical component of JPMC's overall defensive risk posture.
Job responsibilities
* Partner with the primary SAS Assessor to dive further into supplier security stacks and assist with field work materials to ensure they are complete and meet JPMC expectations.
* Provide cybersecurity risk and controls expertise during the onsite / virtual assessment alongside the primary SAS Assessor.
* Identify cybersecurity risks and weaknesses within suppliers' IT and hosted cloud environments and document remediation plans.
* Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc.
Required qualifications, capabilities, and skills
* 7-10 years of experience in Technology, Technology Risk & Controls, Cyber Operations, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network Security, or Cyber Resiliency within a large enterprise-level environment.
* Subject Matter Expertise of cybersecurity operations including defensive architectures and processes to combat adversarial activities
* Proficient in techniques for incident management, incident handling, incident investigations, root cause analysis, and related processes
* Strong written and verbal presentation skills at the senior management level including ability to describe cyber risks in terms relatable to business stakeholders
* Experience debating issues with senior decision...
- Rate: Not Specified
- Location: Columbus, US-OH
- Type: Permanent
- Industry: Finance
- Recruiter: JPMorgan Chase Bank, N.A.
- Contact: Not Specified
- Email: to view click here
- Reference: 210569295
- Posted: 2025-03-25 07:24:20 -
- View all Jobs from JPMorgan Chase Bank, N.A.
More Jobs from JPMorgan Chase Bank, N.A.
- Medical Assistant- Delray, FL
- Software Engineering Advisor
- New Business Manager; U500 - Chicago, IL (Hybrid)
- Warehouse Associate - Express Scripts
- Pharmacy Production Clerk Associate Representative - Accredo
- Sr. New Business Manager; U500 (Hybrid; Cleveland OR Columbus)
- Home Infusion Registered Nurse - Accredo - Minneapolis or St. Paul, MN
- Home Infusion Nurse - Accredo - Puyallup, WA
- 340B Account Manager - Verity Solutions - Hybrid
- Contractor, Provider Network Management - Hospital/Professional/Ancillary - CT market
- Strategic Account Executive; O500 (Hybrid/Newton)
- Project Planner
- Warehouse Worker
- CNC Machinist - 2 shift
- Dental Sales Executive; O250 Segment (Hybrid/New England)
- Technical Inside Sales Representative
- Postbote für Pakete und Briefe (m/w/d)
- Postbote für Pakete und Briefe (m/w/d) (Roderbruch, Misburg)
- Club InterContinental Attendant
- Postbote für Pakete und Briefe – Studenten/ Abrufkraft in Schönberg (Holst.) (m/w/d)