Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Supplier Cybersecurity Controls Assessor

AT JPMorgan Chase
JPMorgan Chase

Supplier Cybersecurity Controls Assessor

Columbus, OH

Are you interested in joining an industry-leading Third Party Risk Management team? We are hiring cybersecurity risk professionals.

As a Supplier Cybersecurity Controls Assessor within our Supplier Assurance Services (SAS) team, you will perform comprehensive risk assessments of suppliers within JPMC's Corporate Third Party Oversight (CTPO) program. The SAS team supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to enhance the security posture of JPMC's supply chain. As part of Global Supplier Services (GSS) and reporting directly to JPMC's Global Head of Corporate Third Party Oversight, you will conduct technology and cybersecurity control assessments of supplier environments, including services hosted in public cloud providers. You will evaluate the effectiveness of controls in supplier infrastructure, application stacks, cloud hosts, and other technologies, ensuring the confidentiality and integrity of JPMC's data stored in supplier environments and the availability of JPMC's services provided by suppliers. To effectively assess suppliers, you will stay informed of the latest cyber risks in the industry and current adversarial tactics, techniques, and procedures. Your leadership skills and proven ability to function with minimal day-to-day oversight will help you navigate complex stakeholder organizations and sensitive JPMC supplier relationships, making your work in SAS a critical component of JPMC's overall defensive risk posture.

Want more jobs like this?

Get Account Management jobs delivered to your inbox every week.

Select a location
By signing up, you agree to our Terms of Service & Privacy Policy.


Job responsibilities

  • In partnership with internal and external stakeholders, review supplier security stacks and conduct field work to ensure they are complete and meet JPMC expectations.
  • Provide cybersecurity risk and controls expertise during the onsite / virtual assessment of the supplier controls environment.
  • Identify cybersecurity risks and weaknesses within suppliers' IT and hosted cloud environments and document remediation plans.
  • Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc.

Required qualifications, capabilities, and skills

  • 7-10 years of experience in Technology, Technology Risk & Controls, Cyber Operations, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network Security, or Cyber Resiliency within a large enterprise-level environment.
  • Subject Matter Expertise of cybersecurity operations including defensive architectures and processes to combat adversarial activities
  • Proficient in techniques for incident management, incident handling, incident investigations, root cause analysis, and related processes
  • Strong written and verbal presentation skills at the senior management level including ability to describe cyber risks in terms relatable to business stakeholders
  • Experience debating issues with senior decision makers and pushing back when necessary

Preferred qualifications, capabilities, and skills

  • Hands-on, practical experience in red teaming, blue teaming or penetration testing is a plus
  • CISSP, CCSP or similar certifications are a plus


ABOUT US

JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.

JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans

ABOUT THE TEAM

Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we're setting our businesses, clients, customers and employees up for success.

Global Supplier Services (GSS) manages the source-to-pay cycle, engaging with suppliers, negotiating contracts, conducting risk assessments and evaluating the customer experience. Global teams support sourcing, third party oversight, procurement and payment operations, supplier relationship management and customer experience.

Client-provided location(s): Columbus, OH, USA; Plano, TX, USA
Job ID: JPMorgan-210569295
Employment Type: Full Time