
Associate, Supplier Cybersecurity Controls Assessor
7 hours ago
The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC’s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC’s supply chain. SAS is part of Global Supplier Services (GSS), reporting directly to JPMC’s Global Head of Corporate Third Party Oversight.
**Job Summary**
- Identifying opportunities to improve third party risk posture, developing creative solutions for mitigating risks.
- Liaising with JPMC and supplier’s senior managers to communicate and influence best risk practices.
- Driving compliance to adhere to best risk management practices throughout the organizations.
**Job responsibilities**
- Manage all aspects of the control assessment of suppliers including assessing completed questionnaires and supporting field work materials to ensure they are complete and meet JPMC expectations.
- Lead the onsite / virtual assessment, providing the overall technology and cybersecurity risk and controls expertise.
- Identify and document control breaks and vulnerabilities within suppliers’ IT environments and work with the LOB Delivery Manager and Information Security Manager to resolve through action plans or seek risk acceptance approvals.
- Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc.
- Support internal education and best practices sharing with peers and colleagues, as well as third party education & awarenessEscalate issues associated with suppliers as needed.
**Required qualifications, capabilities, and skills**
- 5+ years of experience in Technology, Technology Risk & Controls, Technology Audit, Cybersecurity, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network, Security, Cyber Resiliency and Third Party Outsourcing Risk Management within a large enterprise level environment.
- Understanding of industry risk frameworks (ISO27001, NIST Cybersecurity Framework, etc.)
- Strong written and verbal presentation skills at the senior management levelExperience debating issues with senior decision makers and pushing back when necessary
**Preferred qualifications, capabilities, and skills**
- CISSP, CISA, CISM, CCSP or CRISC certification
-
Bengaluru, Karnataka, India JPMorganChase Full time**JOB DESCRIPTION** The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC’s Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC’s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC’s supply...
-
Cybersecurity Governance Assessor
2 weeks ago
Bengaluru, Karnataka, India Hewlett Packard Full time**Job Title: Senior Cybersecurity Risk Assessor** As the world around us becomes more connected and digital, cybersecurity attacks increase opportunities for fraud and disruption. In this constantly changing landscape, the need for companies, products, and services to be secure is more important than ever. Are you passionate about keeping good people safe...
-
Supplier Cyber Assessor
2 days ago
Bengaluru, Karnataka, India HITACHI ENERGY TECHNOLOGY SERVICES PRIVATE LIMITED Full time**Description** **The opportunity**: In cybersecurity, we safeguard our business and ensure the delivery of top-tier, secure products and services to our customers. In cybersecurity risks management for suppliers, we collaborate in multi-stakeholder partnerships to protect our supply chain from any organizational risks. Together, we secure our supply chain...
-
Supplier Cyber Assessor
2 days ago
Bengaluru, Karnataka, India Hitachi Full time**Location**: Bengaluru, Karnataka, India **Job ID**: R0088514 **Date Posted**: 2025-07-29 **Company Name**: HITACHI ENERGY TECHNOLOGY SERVICES PRIVATE LIMITED **Profession (Job Category)**: IT, Telecom & Internet **Job Schedule**: Full time **Remote**: No **The opportunity**: In cybersecurity, we safeguard our business and ensure the delivery of...
-
Supplier Cyber Assessor
1 week ago
Bengaluru, Karnataka, India HITACHI ENERGY TECHNOLOGY SERVICES PRIVATE LIMITED Full time**Description** **Mission Statement**: In cybersecurity, we safeguard our business and ensure the delivery of top-tier, secure products and services to our customers. In cybersecurity risks management for suppliers, we collaborate in multi-stakeholder partnerships to protect our supply chain from any organizational risks. Together, we secure our supply...
-
Industrial Cybersecurity Assessor
1 week ago
Bengaluru, Karnataka, India UL Solutions Full timeThe Industrial Cybersecurity Assessor will evaluate the security of network-connectable devices, products, and industrial equipment systems. This will include the analysis of products under evaluation, the support and training of engineers for evaluation projects. Working on connected technologies Industrial OT/ IIoT, IoT using the security framework,...
-
Lead Cyber Risk Assessor
2 weeks ago
Bengaluru, Karnataka, India Chevron Full time ₹ 1,50,000 - ₹ 28,00,000 per yearTotal Number of Openings1About the position:Cybersecurity Risk Assessor develops and maintains the cybersecurity strategy, policies, and risk management processes to ensure that the organization effectively secures Chevron's operations. This Lead role has an expectation of 10-15 years of relevant experience and will provide mentorship to junior members of...
-
Senior Product Cybersecurity Supplier
2 weeks ago
Bengaluru, Karnataka, India People Konnect Full timeRole: Senior Product Cybersecurity Supplier - GRC AnalystClient: Global Electrical Product CompanyExperience: 4 -10 yearsLocation: Bengaluru – HybridCTC: 25-35 LacsEmail: careers@peoplekonnect.co.inRequirements:• Bachelor's degree or equivalent experience in a related field• Ideally 4-10 years of experience with Governance, Risk, and Compliance (GRC)...
-
Senior Product Cybersecurity Supplier
2 weeks ago
Bengaluru, Karnataka, India People Konnect Full timeRole: Senior Product Cybersecurity Supplier - GRC AnalystClient: Global Electrical Product CompanyExperience: 4 -10 yearsLocation: Bengaluru – HybridCTC: 25-35 LacsEmail: careers@peoplekonnect.co.inRequirements:• Bachelor's degree or equivalent experience in a related field• Ideally 4-10 years of experience with Governance, Risk, and Compliance (GRC)...
-
Assessor- IT
1 week ago
Bengaluru, India DNV Full timeLocal Unit & Position Description: DNV has significant ambitions to rapidly grow its Cyber Security & privacy services in the coming years, to make a global impact on safeguarding life, property, and the environment. At DNV, we are looking for an **Assessor - IT & OT- Cybersecurity & Privacy**, to join our team in Supply Chain and Product Assurance...