JOB DESCRIPTION
Join a dynamic team where your expertise in technology risk will help shape the future of secure operations and drive impactful change.
As a Tech Risk and Controls Lead at JPMorgan Chase within the Cybersecurity and Technology Controls team, you will play a pivotal role in identifying, assessing, and managing technology risks. You will collaborate with cross-functional teams to enhance control effectiveness and support regulatory compliance. Your contributions will help foster a culture of risk awareness and continuous improvement. Together, we create a secure and resilient environment for our clients and communities.
Job responsibilities
-
Ensure effective identification, quantification, communication, and management of technology risk, focusing on root cause analysis and resolution recommendations
-
Develop and maintain robust relationships, becoming a trusted partner with LOB technologists, assessments teams, and data officers to facilitate cross-functional collaboration and progress toward shared goals
-
Execute reporting and governance of controls, policies, issue management, and measurements, offering senior management insights into control effectiveness and inform governance work
-
Uses enterprise-authorized AI capabilities within the work environment to accelerate synthesis of risk/control evidence and draft executive-ready reporting, validating outputs and handling data according to sensitivity and security requirements
-
Promotes reuse-first, AI-assisted approaches to streamline recurring control testing and issue/action-plan management routines, ensuring human review and alignment to auditability and regulatory expectations
-
Proactively monitor and evaluate control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance
Required qualifications, capabilities and skills
-
5+ years of experience in technology risk management, information security, or related field, emphasizing risk identification, assessment, and mitigation
-
Have an understanding of risk management frameworks, industry standards, and financial industry regulatory requirements
-
Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies
-
Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support technology risk and controls workflows with strong validation habits and awareness of data sensitivity.
-
Ability to review and validate AI-assisted risk summaries and recommendations before use, escalating when uncertain and ensuring outcomes align to security, auditability, and regulatory expectations.
-
Demonstrated ability to influence executive-level strategic decision-making and translate technology insights into business strategies for senior executives
Preferred qualifications, capabilities and skills
-
Experience with regulatory audits and remediation activities
-
Advanced degree in information security, risk management, or related discipline
-
Strong communication and stakeholder management skills
-
Expertise in emerging technologies and their associated risks
ABOUT US