Information Security Assessor

7 months ago


Hyderabad Telangana, India JPMorgan Chase & Co Full time

**JOB DESCRIPTION**
Working in Information Security Management, you'll design and implement processes and tools that safeguard the firm's computing environment. Creating action plans, mitigating risks, and resolving control issues, you'll gain key insight into today's complex risk and regulatory landscape. Working with our cybersecurity team, you’ll be at the forefront of innovation designed to strengthen our operations. Additionally, you'll have the chance to participate in steering committees, promote IT security awareness across the firm, advise and support business security risk and control activities, and drive your career in any direction you choose.

**Responsibilities**:

- Assist with the annual firm wide SOX / CCAP program, testing the evidence of the controls and identifying any significant control deficiencies, working with the appropriate Assessment leads/ Technology Control Officer to identify appropriate remediation to improve the controls as necessary.
- Work with technology teams to walk through, gather control design requirements facilitate discussions and bring to closure control issues.
- Advise Lines of Business (LOBs), based on the testing their results to ensure they are in compliance with the Firm's guidelines.
- Communicate issues and evaluate issues/findings and best practices with the rest of the team and manager.
- Perform QC reviews of control testing working papers.
- Work actively with the Assessment Leads/ Technology Controls Officers on the guidance and IT-related issues.
- Participate in additional key control projects related to enhancement of the Compliance and other assessment programs.
- Support internal education and best practices sharing with peers and colleagues, as well as information security education & awareness, as needed.

**Required qualifications, capabilities, and skills**
- Minimum 8-10 years internal or external technology audit experience ("Big 4" experience preferred)
- Have a strong background in Auditing, understanding of internal controls, particularly General Computer Controls (GCC).
- Have an ability to effectively develop and communicate recommendations based on SOX Corporate Office (SCO)guidance.
- Experience in Application assessment and control testing.
- Be detail oriented with ability to evaluate processes, controls, and issues to determine the risks.
- Have an ability to maintain high standards with a drive to achieve the right answer in difficult and/or ever-changing situations.
- Can work independently, collaborate within a team and is comfortable in a virtual environment.
- Proficient verbal and written communication skills, including the ability to effectively lead discussions and meetings with internal management, external/ internal audit and peer groups.
- Strong interpersonal skills - verbal communications, written communications, and a good track record of collaboration.
- Proficient in MS Office - Microsoft Word, Excel, Access, and PowerPoint.
- CISA, CISSP, CISM, CRISC certification will be an added advantage.

**Preferred qualifications, capabilities, and skills**
- Bachelor's degree preferably in Computer Science or Information Technology.
- Should have reasonable knowledge of APAC technology regulatory requirements.

**ABOUT US**

JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.

**ABOUT THE TEAM**

The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm’s cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group’s number one priority is to enable the business by keeping the firm safe, stable and resilient.



  • Hyderabad, Telangana, India Northern Tool + Equipment Full time

    **Job Title:** Information Security SpecialistWe are seeking an experienced Information Security Specialist to join our team at Northern Tool + Equipment. This role will be responsible for managing and maintaining our compliance with PCI DSS requirements.">**About the Role:**The successful candidate will lead and manage our PCI DSS compliance program,...


  • Hyderabad, India JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** We have an exciting and rewarding opportunity for you to take your Information Security Management career to the next level. **Job summary** **Job responsibilities** - Assist with the annual firm wide SOX / CCAP program, testing the evidence of the controls and identifying any significant control deficiencies, working with the...


  • Hyderabad, India Northern Tool + Equipment Full time

    ROLE : Information Security Audit & Compliance ManagerJoin the core group of founding members at the NTE India to build an organization from the ground up. PRIMARY OBJECTIVE OF POSITION : The PCI DSS Manager is responsible for managing and maintaining the organization's compliance with PCI DSS requirements. This role involves coordinating all aspects of...


  • Hyderabad, India Northern Tool + Equipment Full time

    ROLE : Information Security Audit & Compliance Manager Join the core group of founding members at the NTE India to build an organization from the ground up. PRIMARY OBJECTIVE OF POSITION : The PCI DSS Manager is responsible for managing and maintaining the organization's compliance with PCI DSS requirements. This role involves coordinating all aspects...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiringSecurity Technical Program manager for our Health Care Clien tRole : PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation:Hyderabad/HybridExperie nce: 7+ ye ars of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care Clien tRole : PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperie nce: 7+ ye ars of experience in cyber...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care Clien tRole : PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperie nce: 7+ ye ars of experience in cyber...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care ClientRole: PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperience: 7+ years of experience in cyber...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care ClientRole: PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperience: 7+ years of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO #Information #Security #Program #manager #Lead #Hiring #ImmediateJoiner We are hiring Security Technical Program manager for our Health Care Clien t Role: PMO Security Technical /Cyber Security / Program Manager Information Security Location: Hyderabad/Hybrid Experience: 7+ ye ars of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care ClientRole: PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperience: 7+ years of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO #Information #Security #Program #manager #Lead #Hiring #ImmediateJoiner We are hiring Security Technical Program manager for our Health Care Clien t Role: PMO Security Technical /Cyber Security / Program Manager Information Security Location: Hyderabad/Hybrid Experience: 7+ ye ars of experience in cyber...


  • Hyderabad, Telangana, India PepsiCo Full time

    Overview: **The Infosec Lead** is a strategic partner to the business and is responsible for supporting information security risk management and technical security analysis within the sector. This role requires a technical security expert to assess, mitigate, and remediate security risks, driving security initiatives within the sector and promoting security...


  • Hyderabad, Telangana, India PepsiCo Full time

    Overview: The Information Security Associate Manager will provide technical support and execution on a range of critical security products, serve as a point of contact for all security product deployment, configuration, upgrades, related events, serve as a mentor to IT staff, and work to help standardize and improve processes and...


  • Hyderabad, Telangana, India SID Information Technologies Full time

    Job Description:SID Information Technologies is seeking an experienced Cyber Security Program Manager to lead our security programs and initiatives. The ideal candidate will have a strong background in cybersecurity and program management, with excellent written and verbal communication skills.About the Role:The Security Program Manager will be responsible...


  • Hyderabad, Telangana, India State Street Full time

    Job Title Information Security Administrator (ISA) Role Summary & Role Description The Information Security Administrator (ISA) will support business units in their efforts to comply with GCS security policy and required controls. Working with direction from the Senior Information Security Officer (Sr. ISO) or ISO, the ISA will provide critical support...

  • Ocra Assessor

    6 months ago


    Hyderabad, Telangana, India UBS Full time

    India - Business management, administration and support - Group Functions **Job Reference #** - 289724BR **City** - Hyderabad **Job Type** - Full Time **Your role**- conduct risk assessments of third-party vendors to identify potential security threats and vulnerabilities - conduct Cloud assessments audits - analyse and evaluate vendor security controls,...


  • Kukatpalli, Hyderabad, Telangana, India KLEAP Institute of Information Security Full time

    **Position**: Cybersecurity Technical Trainer (2 Openings) **Location**: Hyderabad **Responsibilities**: - Deliver high-quality virtual and in-person technical training in Cyber Security and Ethical Hacking. - Develop and update course materials to ensure they reflect current industry practices and trends. - Retain an up-to-date knowledge of current...


  • Hyderabad, Telangana, India Salesforce Full time

    **About Futureforce University Recruiting** Our Futureforce University Recruiting program is dedicated to attracting, retaining and cultivating talent. Our interns and new graduates work on real projects that affect how our business runs, giving them the opportunity to make a tangible impact on the future of our company. With offices all over the world, our...


  • Hyderabad, Telangana, India Salesforce Full time

    Job Category Enterprise Technology & Infrastructure Job Details **About Salesforce** We’re Salesforce, the Customer Company, inspiring the future of business with AI+ Data +CRM. Leading with our core values, we help companies across every industry blaze new trails and connect with customers in a whole new way. And, we empower you to be a Trailblazer,...