Information Security Assessor

1 month ago


Hyderabad Telangana, India JPMorgan Chase & Co Full time

**JOB DESCRIPTION**
Working in Information Security Management, you'll design and implement processes and tools that safeguard the firm's computing environment. Creating action plans, mitigating risks, and resolving control issues, you'll gain key insight into today's complex risk and regulatory landscape. Working with our cybersecurity team, you’ll be at the forefront of innovation designed to strengthen our operations. Additionally, you'll have the chance to participate in steering committees, promote IT security awareness across the firm, advise and support business security risk and control activities, and drive your career in any direction you choose.

**Responsibilities**:

- Assist with the annual firm wide SOX / CCAP program, testing the evidence of the controls and identifying any significant control deficiencies, working with the appropriate Assessment leads/ Technology Control Officer to identify appropriate remediation to improve the controls as necessary.
- Work with technology teams to walk through, gather control design requirements facilitate discussions and bring to closure control issues.
- Advise Lines of Business (LOBs), based on the testing their results to ensure they are in compliance with the Firm's guidelines.
- Communicate issues and evaluate issues/findings and best practices with the rest of the team and manager.
- Perform QC reviews of control testing working papers.
- Work actively with the Assessment Leads/ Technology Controls Officers on the guidance and IT-related issues.
- Participate in additional key control projects related to enhancement of the Compliance and other assessment programs.
- Support internal education and best practices sharing with peers and colleagues, as well as information security education & awareness, as needed.

**Required qualifications, capabilities, and skills**
- Minimum 8-10 years internal or external technology audit experience ("Big 4" experience preferred)
- Have a strong background in Auditing, understanding of internal controls, particularly General Computer Controls (GCC).
- Have an ability to effectively develop and communicate recommendations based on SOX Corporate Office (SCO)guidance.
- Experience in Application assessment and control testing.
- Be detail oriented with ability to evaluate processes, controls, and issues to determine the risks.
- Have an ability to maintain high standards with a drive to achieve the right answer in difficult and/or ever-changing situations.
- Can work independently, collaborate within a team and is comfortable in a virtual environment.
- Proficient verbal and written communication skills, including the ability to effectively lead discussions and meetings with internal management, external/ internal audit and peer groups.
- Strong interpersonal skills - verbal communications, written communications, and a good track record of collaboration.
- Proficient in MS Office - Microsoft Word, Excel, Access, and PowerPoint.
- CISA, CISSP, CISM, CRISC certification will be an added advantage.

**Preferred qualifications, capabilities, and skills**
- Bachelor's degree preferably in Computer Science or Information Technology.
- Should have reasonable knowledge of APAC technology regulatory requirements.

**ABOUT US**

JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.

**ABOUT THE TEAM**

The Cybersecurity & Technology Controls group at JPMorgan Chase aligns the firm’s cybersecurity, access management, controls and resiliency teams. The group proactively and strategically partners with all lines of business and functions to enable them to design, adopt and integrate appropriate controls; deliver processes and solutions efficiently and consistently; and drive automation of controls. The group’s number one priority is to enable the business by keeping the firm safe, stable and resilient.



  • Kukatpalli, Hyderabad, Telangana, India KLEAP Institute of Information Security Full time

    **Position**: Cybersecurity Technical Trainer (2 Openings) **Location**: Hyderabad **Responsibilities**: - Deliver high-quality virtual and in-person technical training in Cyber Security and Ethical Hacking. - Develop and update course materials to ensure they reflect current industry practices and trends. - Retain an up-to-date knowledge of current...

  • Ocra Assessor

    1 month ago


    Hyderabad, Telangana, India UBS Full time

    India - Business management, administration and support - Group Functions **Job Reference #** - 289724BR **City** - Hyderabad **Job Type** - Full Time **Your role**- conduct risk assessments of third-party vendors to identify potential security threats and vulnerabilities - conduct Cloud assessments audits - analyse and evaluate vendor security controls,...


  • Hyderabad, India GCC SERVICES Full time

    The Information Security Lead will be responsible for providing leadership in the areas of Information Governance, Data Protection, and Cyber Security. This role involves developing and implementing policies, and ensuring compliance with relevant legislation and standards where we operate. The Information Security Lead will play a crucial role in...


  • hyderabad, India GCC SERVICES Full time

    The Information Security Lead will be responsible for providing leadership in the areas of Information Governance, Data Protection, and Cyber Security. This role involves developing and implementing policies, and ensuring compliance with relevant legislation and standards where we operate. The Information Security Lead will play a crucial role in...


  • Hyderabad, India GCC SERVICES Full time

    The Information Security Lead will be responsible for providing leadership in the areas of Information Governance, Data Protection, and Cyber Security. This role involves developing and implementing policies, and ensuring compliance with relevant legislation and standards where we operate. The Information Security Lead will play a crucial role in...


  • hyderabad, India Green Arrow Career Services Full time

    Position : Head of Information SecurityLocation : HyderabadExperience : 15 to 18 yearsIT/Software Development : Network Description :Requirements and Qualifications :- A minimum of 15 years of IT experience, with at least 10 years in an information security role and at least 5 years in a supervisory capacity.- A bachelor's degree in information systems or...


  • Hyderabad, India Green Arrow Career Services Full time

    Position : Head of Information SecurityLocation : HyderabadExperience : 15 to 18 yearsIT/Software Development : Network Description :Requirements and Qualifications :- A minimum of 15 years of IT experience, with at least 10 years in an information security role and at least 5 years in a supervisory capacity.- A bachelor's degree in information systems...


  • Hyderabad, India Movate Full time

    Hello NetworkWe are at Movate Technologies, Looking for an Information Security ManagerJob Title: Information Security ManagerExperience: 7+ yearsLocation: Bangalore/Hyderabad/ChennaiWork from OfficeNo.of Positions: 2Top 5 Skill SetHands-on experience with security technologiesExperience in Information security and business continuity internal auditsStrong...


  • Hyderabad, India Movate Full time

    Hello NetworkWe are at Movate Technologies, Looking for an Information Security ManagerJob Title: Information Security ManagerExperience: 7+ yearsLocation: Bangalore/Hyderabad/ChennaiWork from OfficeNo.of Positions: 2Top 5 Skill SetHands-on experience with security technologiesExperience in Information security and business continuity internal auditsStrong...


  • Hyderabad, India PXP Financial Full time

    Working Model:Hybrid WorkingEmployment status:Full-time, Permanent.Working hours:Monday to Friday, 11:30am – 8:30pm.Office Location:Hyderabad, India.In this role you will add value to PXP by:Having a hands-on role in maintaining and developing the information security infrastructure of the company. Self-motivated with a deep technical acumen and a strong...


  • Hyderabad, Telangana, India TCPWave Full time

    **DDI Management** - A secure management ecosystem overlay to control the core network services that are on-prem and in the cloud.**ADC Management**Web Application Firewall


  • hyderabad, India PXP Financial Full time

    Working Model:  Hybrid Working Employment status: Full-time, Permanent. Working hours: Monday to Friday, 11:30am – 8:30pm. Office Location: Hyderabad, India. In this role you will add value to PXP by: Having a hands-on role in maintaining and developing the information security infrastructure of the company. Self-motivated with a deep technical acumen...


  • Hyderabad, India PXP Financial Full time

    Working Model: Hybrid WorkingEmployment status: Full-time, Permanent.Working hours: Monday to Friday, 11:30am – 8:30pm.Office Location: Hyderabad, India.In this role you will add value to PXP by:Having a hands-on role in maintaining and developing the information security infrastructure of the company. Self-motivated with a deep technical acumen and a...


  • Hyderabad, India IQ-EQ Full time

    Job DescriptionResponsibilities (how we will measure success)To provide second line support for all aspects of the Group’s Information Security strategy and arrangements encompassing cultural, physical and technology elements throughout the business, with the primary focus being on Info Sec programme governance and oversight.Working as part of the Group...


  • hyderabad, India IQ-EQ Full time

    Job DescriptionResponsibilities (how we will measure success) To provide second line support for all aspects of the Group’s Information Security strategy and arrangements encompassing cultural, physical and technology elements throughout the business, with the primary focus being on Info Sec programme governance and oversight. Working as part of the Group...


  • Hyderabad, India IQ-EQ Full time

    Job DescriptionResponsibilities (how we will measure success)To provide second line support for all aspects of the Group’s Information Security strategy and arrangements encompassing cultural, physical and technology elements throughout the business, with the primary focus being on Info Sec programme governance and oversight.Working as part of the Group...

  • Prin, Information

    2 days ago


    hyderabad, India Skillsoft Full time

    At Skillsoft, we propel organizations and people to grow together through transformative learning experiences. We believe every team member has the potential to be AMAZING. Join us in our quest to transform learning and help individuals unleash their edge. OVERVIEW : The Principal Information Security Analyst – Vulnerability Management & Threat...

  • Prin, Information

    1 day ago


    Hyderabad, India Skillsoft Full time

    At Skillsoft, we propel organizations and people to grow together through transformative learning experiences. We believe every team member has the potential to be AMAZING. Join us in our quest to transform learning and help individuals unleash their edge. OVERVIEW : The Principal Information Security Analyst – Vulnerability Management & Threat...


  • Hyderabad, India Thomson Reuters Full time

    Information Security AnalystAbout the RoleIn this opportunity asInformation Security Analyst, you will be part of Information security and Compliance team within AEM performs a key role in responding to all Information Security customer risk assessments. In this role, you will play a key role in ensuring the security and integrity of Thomson Reuters through...


  • Hyderabad, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking a Lead Information Security Engineer.In this role, you will:Develop, implement, and maintain security systems to protect Wells Fargo's IT infrastructure.Monitor and analyze security threats, vulnerabilities, and incidents to ensure the confidentiality, integrity, and availability of data and services.Configure and...