
Associate, Supplier Cybersecurity Controls Assessor
6 days ago
**JOB DESCRIPTION**
The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC’s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC’s supply chain. SAS is part of Global Supplier Services (GSS), reporting directly to JPMC’s Global Head of Corporate Third Party Oversight.
Job Summar
**Job responsibilities**
- Manage all aspects of the control assessment of suppliers including assessing completed questionnaires and supporting field work materials to ensure they are complete and meet JPMC expectations.
- Lead the onsite / virtual assessment, providing the overall technology and cybersecurity risk and controls expertise.
- Identify and document control breaks and vulnerabilities within suppliers’ IT environments and work with the LOB Delivery Manager and Information Security Manager to resolve through action plans or seek risk acceptance approvals.
- Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc.
- Support internal education and best practices sharing with peers and colleagues, as well as third party education & awareness
- Escalate issues associated with suppliers as needed.
**Required qualifications, capabilities, and skills**
- 5+ years of experience in Technology, Technology Risk & Controls, Technology Audit, Cybersecurity, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network, Security, Cyber Resiliency and Third Party Outsourcing Risk Management within a large enterprise level environment.
- Understanding of industry risk frameworks (ISO27001, NIST Cybersecurity Framework, etc.)
- Strong written and verbal presentation skills at the senior management level
- Experience debating issues with senior decision makers and pushing back when necessary
**Preferred qualifications, capabilities, and skills**
- CISSP, CISA, CISM, CCSP or CRISC certification is a plus
**ABOUT US**
JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
**ABOUT THE TEAM**
Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.
Global Supplier Services (GSS) manages the source-to-pay cycle, engaging with suppliers, negotiating contracts, conducting risk assessments and evaluating the customer experience. Global teams support sourcing, third party oversight, procurement and payment operations, supplier relationship management and customer experience.
-
Bengaluru, India JP Morgan Chase & Co. Full timeJob Description The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC's Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC's supply chain. SAS...
-
Bengaluru, Karnataka, India JPMorganChase Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJOB DESCRIPTIONThe Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC's Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC's supply chain. SAS is...
-
Bengaluru, Karnataka, India JPMorganChase Full time**JOB DESCRIPTION** The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC’s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC’s supply...
-
JP Morgan Chase
3 days ago
Bengaluru, India JP Morgan Chase Full timeDescription: The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC's Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC's supply...
-
Supplier Cyber Assessor
1 week ago
Bengaluru, India Hitachi Rail Full timeDescription :The opportunity: In cybersecurity, we safeguard our business and ensure the delivery of top-tier, secure products and services to our customers. In cybersecurity risks management for suppliers, we collaborate in multi-stakeholder partnerships to protect our supply chain from any organizational risks. Together, we secure our supply chain by...
-
Supplier Cyber Assessor
1 week ago
Bengaluru, India Hitachi Rail Full timeDescription :The opportunity: In cybersecurity, we safeguard our business and ensure the delivery of top-tier, secure products and services to our customers. In cybersecurity risks management for suppliers, we collaborate in multi-stakeholder partnerships to protect our supply chain from any organizational risks. Together, we secure our supply chain...
-
Senior Associate – Cybersecurity
1 week ago
Bengaluru, India nTech Workforce Full timeWe're Hiring: Senior Associate – Cybersecurity Location: Bengaluru Shift Timings: 3:30 PM IST to 11:00 PM IST Mode of Work: Hybrid Contract Duration: 7 months (with high potential for extension or full-time conversion based on performance) 👥 Open Positions: 9 Required Qualifications B.Tech in Computer Science/Engineering or equivalent work...
-
Senior Associate – Cybersecurity
4 days ago
Bengaluru, India nTech Workforce Full timeWe're Hiring: Senior Associate – Cybersecurity Location: Bengaluru Shift Timings: 3:30 PM IST to 11:00 PM IST Mode of Work: Hybrid Contract Duration: 7 months (with high potential for extension or full-time conversion based on performance) Open Positions: 9 Required Qualifications B.Tech in Computer Science/Engineering or equivalent work experience Minimum...
-
Senior Associate – Cybersecurity
1 week ago
Bengaluru, India nTech Workforce Full timeWe're Hiring: Senior Associate – CybersecurityLocation: BengaluruShift Timings: 3:30 PM IST to 11:00 PM ISTMode of Work: HybridContract Duration: 7 months (with high potential for extension or full-time conversion based on performance)Open Positions: 9Required QualificationsB.Tech in Computer Science/Engineering or equivalent work experienceMinimum 3+...
-
Industrial Cybersecurity Assessor
6 days ago
Bengaluru, Karnataka, India UL Solutions Full timeThe Industrial Cybersecurity Assessor will evaluate the security of network-connectable devices, products, and industrial equipment systems. This will include the analysis of products under evaluation, the support and training of engineers for evaluation projects. Working on connected technologies Industrial OT/IIoT, IoT using the security framework,...