Information Security Assessor

7 months ago


Hyderabad, India JPMorgan Chase & Co Full time

**JOB DESCRIPTION**

We have an exciting and rewarding opportunity for you to take your Information Security Management career to the next level.

**Job summary**

**Job responsibilities**
- Assist with the annual firm wide SOX / CCAP program, testing the evidence of the controls and identifying any significant control deficiencies, working with the appropriate Assessment leads/ Technology Control Officer to identified
- Assist with the firm wide PCI DSS compliance program and provide end-to-end control oversight, assurance of compliance with requirements of the Data Security Standard, as well as risk and issue management and analysis.
- Work with technology teams to walk through, gather control design requirements facilitate discussions and bring to closure control issues. Advise Lines of Business (LOBs), based on the testing their results to ensure they are in compliance with the Firm's guidelines.
- Communicate issues and evaluate issues/findings and best practices with the rest of the team and manager. Perform QC reviews of control testing working papers. Work actively with the Assessment Leads/ Technology Controls Officers on the guidance and IT-related issues.
- Participate in additional key control projects related to enhancement of the Compliance and other assessment programs. Support internal education and best practices sharing with peers and colleagues, as well as information security education & awareness, as needed

**Required qualifications, capabilities, and skills**
- Bachelor's degree preferably in Computer Science or Information Technology.
- Minimum 5-10 years internal or external technology audit experience ("Big 4" experience preferred)
- Have a strong background in Auditing, understanding of internal controls, particularly General Computer Controls
- (GCC).
- Have an ability to effectively develop and communicate recommendations based on SOX Corporate Office (SCO)
- guidance.
- Experience in Application assessment and control testing.
- Experience in PCI DCC compliance requirement and control testing.
- Be detail oriented with ability to evaluate processes, controls and issues to determine the risks.
- Have an ability to maintain high standards with a drive to achieve the right answer in difficult and/or ever changing
- situations.

**Preferred qualifications, capabilities, and skills**
- Strong interpersonal skills - verbal communications, written communications, and a good track record of collaboration.
- Proficient in MS Office - Microsoft Word, Excel, Access and PowerPoint.
- CISA, CISSP, CISM, CRISC certification will be an added advantage.
- Should have reasonable knowledge of APAC technology regulatory requirements

**ABOUT US**

JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.

**ABOUT THE TEAM**

The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm’s cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group’s number one priority is to enable the business by keeping the firm safe, stable and resilient.



  • Hyderabad, Telangana, India Northern Tool + Equipment Full time

    **Job Title:** Information Security SpecialistWe are seeking an experienced Information Security Specialist to join our team at Northern Tool + Equipment. This role will be responsible for managing and maintaining our compliance with PCI DSS requirements.">**About the Role:**The successful candidate will lead and manage our PCI DSS compliance program,...


  • Hyderabad, Telangana, India JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** Working in Information Security Management, you'll design and implement processes and tools that safeguard the firm's computing environment. Creating action plans, mitigating risks, and resolving control issues, you'll gain key insight into today's complex risk and regulatory landscape. Working with our cybersecurity team, you’ll be...


  • Hyderabad, India Northern Tool + Equipment Full time

    ROLE : Information Security Audit & Compliance ManagerJoin the core group of founding members at the NTE India to build an organization from the ground up. PRIMARY OBJECTIVE OF POSITION : The PCI DSS Manager is responsible for managing and maintaining the organization's compliance with PCI DSS requirements. This role involves coordinating all aspects of...


  • Hyderabad, India Northern Tool + Equipment Full time

    ROLE : Information Security Audit & Compliance Manager Join the core group of founding members at the NTE India to build an organization from the ground up. PRIMARY OBJECTIVE OF POSITION : The PCI DSS Manager is responsible for managing and maintaining the organization's compliance with PCI DSS requirements. This role involves coordinating all aspects...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiringSecurity Technical Program manager for our Health Care Clien tRole : PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation:Hyderabad/HybridExperie nce: 7+ ye ars of experience in cyber...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care Clien tRole : PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperie nce: 7+ ye ars of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care Clien tRole : PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperie nce: 7+ ye ars of experience in cyber...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care ClientRole: PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperience: 7+ years of experience in cyber...


  • Hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care ClientRole: PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperience: 7+ years of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO #Information #Security #Program #manager #Lead #Hiring #ImmediateJoiner We are hiring Security Technical Program manager for our Health Care Clien t Role: PMO Security Technical /Cyber Security / Program Manager Information Security Location: Hyderabad/Hybrid Experience: 7+ ye ars of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO#Information #Security #Program #manager #Lead#Hiring #ImmediateJoinerWe are hiring Security Technical Program manager for our Health Care ClientRole: PMO Security Technical /Cyber Security / Program Manager Information SecurityLocation: Hyderabad/HybridExperience: 7+ years of experience in cyber...


  • hyderabad, India SID Information Technologies Full time

    #CyberSecurity #Architect #Project #Management #PMO #Information #Security #Program #manager #Lead #Hiring #ImmediateJoiner We are hiring Security Technical Program manager for our Health Care Clien t Role: PMO Security Technical /Cyber Security / Program Manager Information Security Location: Hyderabad/Hybrid Experience: 7+ ye ars of experience in cyber...


  • Hyderabad, Telangana, India SID Information Technologies Full time

    Job Description:SID Information Technologies is seeking an experienced Cyber Security Program Manager to lead our security programs and initiatives. The ideal candidate will have a strong background in cybersecurity and program management, with excellent written and verbal communication skills.About the Role:The Security Program Manager will be responsible...


  • Hyderabad, Telangana, India MaxisIT Inc. Full time

    We are seeking a seasoned Cyber Security Expert to lead our information security strategy and operations in Hyderabad. This critical role requires 10+ years of experience in information security, with at least 5 years in a senior leadership position.Job DescriptionA strong understanding of security architecture, network security, cloud security, and...


  • Hyderabad, India GCC SERVICES Full time

    The Information Security Lead will be responsible for providing leadership in the areas of Information Governance, Data Protection, and Cyber Security. This role involves developing and implementing policies, and ensuring compliance with relevant legislation and standards where we operate. The Information Security Lead will play a crucial role in...


  • Hyderabad, India FineLabs Full time

    Key Responsibilities: IRAP and C5 Compliance: Support efforts to align with the Info Sec Registered Assessors Program (IRAP) and Cloud Computing Compliance Controls Catalogue (C5) requirements, ensuring all necessary controls are implemented and maintained.Controls Onboarding Program: Support the onboarding of new controls, ensuring they are integrated...


  • Hyderabad, India Dhruva Space Full time

    About the Role:Dhruva Space is looking for a strategic and experienced Senior Manager, Information Security, to lead and manage the organization’s information security program. The ideal candidate will be responsible for developing, implementing, and overseeing security strategies, policies, and standards to protect the organization’s critical assets....


  • Hyderabad, Telangana, India Strobes Security Full time

    **About the Role:**We are seeking a seasoned Security Consultant PTaaS Specialist to join our core Pentest-as-a-Service (PTaaS) team at Strobes Security. The ideal candidate will be a self-driven security professional with strong technical skills across cloud security, application security, and secure coding practices.Responsibilities:Drive security...


  • Hyderabad, India FineLabs Full time

    Key Responsibilities:- IRAP and C5 Compliance: Support efforts to align with the InfoSec Registered Assessors Program (IRAP) and Cloud Computing Compliance Controls Catalogue (C5) requirements, ensuring all necessary controls are implemented and maintained.- Controls Onboarding Program: Support the onboarding of new controls, ensuring they are integrated...


  • Hyderabad, India Talentmatics Full time

    We are hiring for Security Analyst with 8 yrs of expLoc: Hyderabad/NoidaJob Purpose StatementFunction as the local point of contact and information security subject matter expert for Operational Security and Information Security initiatives being delivered across EMEA and APAC Experience in security controls and operational oversight with balanced risk...