Information Security Assessor
1 month ago
**JOB DESCRIPTION**
Working in Information Security Management, you'll design and implement processes and tools that safeguard the firm's computing environment. Creating action plans, mitigating risks, and resolving control issues, you'll gain key insight into today's complex risk and regulatory landscape. Working with our cybersecurity team, you’ll be at the forefront of innovation designed to strengthen our operations. Additionally, you'll have the chance to participate in steering committees, promote IT security awareness across the firm, advise and support business security risk and control activities, and drive your career in any direction you choose.
**Responsibilities**:
- Assist with the annual firm wide SOX / CCAP program, testing the evidence of the controls and identifying any significant control deficiencies, working with the appropriate Assessment leads/ Technology Control Officer to identify appropriate remediation to improve the controls as necessary.
- Work with technology teams to walk through, gather control design requirements facilitate discussions and bring to closure control issues.
- Advise Lines of Business (LOBs), based on the testing their results to ensure they are in compliance with the Firm's guidelines.
- Communicate issues and evaluate issues/findings and best practices with the rest of the team and manager.
- Perform QC reviews of control testing working papers.
- Work actively with the Assessment Leads/ Technology Controls Officers on the guidance and IT-related issues.
- Participate in additional key control projects related to enhancement of the Compliance and other assessment programs.
- Support internal education and best practices sharing with peers and colleagues, as well as information security education & awareness, as needed.
**Required qualifications, capabilities, and skills**
- Minimum 8-10 years internal or external technology audit experience ("Big 4" experience preferred)
- Have a strong background in Auditing, understanding of internal controls, particularly General Computer Controls (GCC).
- Have an ability to effectively develop and communicate recommendations based on SOX Corporate Office (SCO)guidance.
- Experience in Application assessment and control testing.
- Be detail oriented with ability to evaluate processes, controls, and issues to determine the risks.
- Have an ability to maintain high standards with a drive to achieve the right answer in difficult and/or ever-changing situations.
- Can work independently, collaborate within a team and is comfortable in a virtual environment.
- Proficient verbal and written communication skills, including the ability to effectively lead discussions and meetings with internal management, external/ internal audit and peer groups.
- Strong interpersonal skills - verbal communications, written communications, and a good track record of collaboration.
- Proficient in MS Office - Microsoft Word, Excel, Access, and PowerPoint.
- CISA, CISSP, CISM, CRISC certification will be an added advantage.
**Preferred qualifications, capabilities, and skills**
- Bachelor's degree preferably in Computer Science or Information Technology.
- Should have reasonable knowledge of APAC technology regulatory requirements.
**ABOUT US**
JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.
**ABOUT THE TEAM**
The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm’s cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group’s number one priority is to enable the business by keeping the firm safe, stable and resilient.
-
Cyber Security Instructor
5 days ago
Kukatpalli, Hyderabad, Telangana, India KLEAP Institute of Information Security Full time**Position**: Cybersecurity Technical Trainer (2 Openings) **Location**: Hyderabad **Responsibilities**: - Deliver high-quality virtual and in-person technical training in Cyber Security and Ethical Hacking. - Develop and update course materials to ensure they reflect current industry practices and trends. - Retain an up-to-date knowledge of current...
-
Ocra Assessor
1 month ago
Hyderabad, Telangana, India UBS Full timeIndia - Business management, administration and support - Group Functions **Job Reference #** - 289724BR **City** - Hyderabad **Job Type** - Full Time **Your role**- conduct risk assessments of third-party vendors to identify potential security threats and vulnerabilities - conduct Cloud assessments audits - analyse and evaluate vendor security controls,...
-
Information Security Lead
1 month ago
Hyderabad, India GCC SERVICES Full timeThe Information Security Lead will be responsible for providing leadership in the areas of Information Governance, Data Protection, and Cyber Security. This role involves developing and implementing policies, and ensuring compliance with relevant legislation and standards where we operate. The Information Security Lead will play a crucial role in...
-
Information Security Lead
1 month ago
hyderabad, India GCC SERVICES Full timeThe Information Security Lead will be responsible for providing leadership in the areas of Information Governance, Data Protection, and Cyber Security. This role involves developing and implementing policies, and ensuring compliance with relevant legislation and standards where we operate. The Information Security Lead will play a crucial role in...
-
Information Security Lead
1 month ago
Hyderabad, India GCC SERVICES Full timeThe Information Security Lead will be responsible for providing leadership in the areas of Information Governance, Data Protection, and Cyber Security. This role involves developing and implementing policies, and ensuring compliance with relevant legislation and standards where we operate. The Information Security Lead will play a crucial role in...
-
Head - Information Security
1 month ago
hyderabad, India Green Arrow Career Services Full timePosition : Head of Information SecurityLocation : HyderabadExperience : 15 to 18 yearsIT/Software Development : Network Description :Requirements and Qualifications :- A minimum of 15 years of IT experience, with at least 10 years in an information security role and at least 5 years in a supervisory capacity.- A bachelor's degree in information systems or...
-
Head - Information Security
4 weeks ago
Hyderabad, India Green Arrow Career Services Full timePosition : Head of Information SecurityLocation : HyderabadExperience : 15 to 18 yearsIT/Software Development : Network Description :Requirements and Qualifications :- A minimum of 15 years of IT experience, with at least 10 years in an information security role and at least 5 years in a supervisory capacity.- A bachelor's degree in information systems...
-
Information Security Manager
1 week ago
Hyderabad, India Movate Full timeHello NetworkWe are at Movate Technologies, Looking for an Information Security ManagerJob Title: Information Security ManagerExperience: 7+ yearsLocation: Bangalore/Hyderabad/ChennaiWork from OfficeNo.of Positions: 2Top 5 Skill SetHands-on experience with security technologiesExperience in Information security and business continuity internal auditsStrong...
-
Information Security Manager
1 week ago
Hyderabad, India Movate Full timeHello NetworkWe are at Movate Technologies, Looking for an Information Security ManagerJob Title: Information Security ManagerExperience: 7+ yearsLocation: Bangalore/Hyderabad/ChennaiWork from OfficeNo.of Positions: 2Top 5 Skill SetHands-on experience with security technologiesExperience in Information security and business continuity internal auditsStrong...
-
Information Security Engineer
1 week ago
Hyderabad, India PXP Financial Full timeWorking Model:Hybrid WorkingEmployment status:Full-time, Permanent.Working hours:Monday to Friday, 11:30am – 8:30pm.Office Location:Hyderabad, India.In this role you will add value to PXP by:Having a hands-on role in maintaining and developing the information security infrastructure of the company. Self-motivated with a deep technical acumen and a strong...
-
Chief Information Security Officer
7 days ago
Hyderabad, Telangana, India TCPWave Full time**DDI Management** - A secure management ecosystem overlay to control the core network services that are on-prem and in the cloud.**ADC Management**Web Application Firewall
-
Information Security Engineer
1 week ago
hyderabad, India PXP Financial Full timeWorking Model: Hybrid Working Employment status: Full-time, Permanent. Working hours: Monday to Friday, 11:30am – 8:30pm. Office Location: Hyderabad, India. In this role you will add value to PXP by: Having a hands-on role in maintaining and developing the information security infrastructure of the company. Self-motivated with a deep technical acumen...
-
Information Security Engineer
1 week ago
Hyderabad, India PXP Financial Full timeWorking Model: Hybrid WorkingEmployment status: Full-time, Permanent.Working hours: Monday to Friday, 11:30am – 8:30pm.Office Location: Hyderabad, India.In this role you will add value to PXP by:Having a hands-on role in maintaining and developing the information security infrastructure of the company. Self-motivated with a deep technical acumen and a...
-
Information Security GRC Manager
2 weeks ago
Hyderabad, India IQ-EQ Full timeJob DescriptionResponsibilities (how we will measure success)To provide second line support for all aspects of the Group’s Information Security strategy and arrangements encompassing cultural, physical and technology elements throughout the business, with the primary focus being on Info Sec programme governance and oversight.Working as part of the Group...
-
Information Security GRC Manager
2 weeks ago
hyderabad, India IQ-EQ Full timeJob DescriptionResponsibilities (how we will measure success) To provide second line support for all aspects of the Group’s Information Security strategy and arrangements encompassing cultural, physical and technology elements throughout the business, with the primary focus being on Info Sec programme governance and oversight. Working as part of the Group...
-
Information Security GRC Manager
2 weeks ago
Hyderabad, India IQ-EQ Full timeJob DescriptionResponsibilities (how we will measure success)To provide second line support for all aspects of the Group’s Information Security strategy and arrangements encompassing cultural, physical and technology elements throughout the business, with the primary focus being on Info Sec programme governance and oversight.Working as part of the Group...
-
Prin, Information
2 days ago
hyderabad, India Skillsoft Full timeAt Skillsoft, we propel organizations and people to grow together through transformative learning experiences. We believe every team member has the potential to be AMAZING. Join us in our quest to transform learning and help individuals unleash their edge. OVERVIEW : The Principal Information Security Analyst – Vulnerability Management & Threat...
-
Prin, Information
1 day ago
Hyderabad, India Skillsoft Full timeAt Skillsoft, we propel organizations and people to grow together through transformative learning experiences. We believe every team member has the potential to be AMAZING. Join us in our quest to transform learning and help individuals unleash their edge. OVERVIEW : The Principal Information Security Analyst – Vulnerability Management & Threat...
-
Information Security and Compliance Analyst
21 hours ago
Hyderabad, India Thomson Reuters Full timeInformation Security AnalystAbout the RoleIn this opportunity asInformation Security Analyst, you will be part of Information security and Compliance team within AEM performs a key role in responding to all Information Security customer risk assessments. In this role, you will play a key role in ensuring the security and integrity of Thomson Reuters through...
-
Lead Information Security Engineer
21 hours ago
Hyderabad, India WELLS FARGO BANK Full timeAbout this role:Wells Fargo is seeking a Lead Information Security Engineer.In this role, you will:Develop, implement, and maintain security systems to protect Wells Fargo's IT infrastructure.Monitor and analyze security threats, vulnerabilities, and incidents to ensure the confidentiality, integrity, and availability of data and services.Configure and...