
Search by job, company or skills
The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC's Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC's Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC's supply chain. SAS is part of Global Supplier Services (GSS), reporting directly to JPMC's Global Head of Corporate Third Party Oversight.
Job Summary
As a Supplier Assurance Services (SAS)Supplier Control Assessor, within this role, you will be responsible for performing virtual technical risk and control assessments of medium and low risk supplier environments, including infrastructure, application stacks and other technologies to ensure compliance with JPMC Corporate Policies & Standards and to validate that technical risks are managed and security controls are implemented. The Supplier Control Assessment (SCA) team will partner with CTC and Lines of Business (LOBs) to focus on performing assessment of supplier's control environments. The Team is also responsible for assessing action plans and risk acceptances across business lines where technology standards compliance cannot be achieved. This includes:
Job responsibilities
Required qualifications, capabilities, and skills
8+ years of experience in Technology, Technology Risk & Controls, Technology Audit, Cybersecurity, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network, Security, Cyber Resiliency and Third Party Outsourcing Risk Management within a large enterprise level environment.
Good understanding of relevant aspects of the Third-Party Oversight and Supplier Assurance Programs, lifecycle, execution best practices and supplier risk awareness.
Experience working in Supplier Management, Risk and Controls Management, Technology Audit, or Information Security team(s).
Strong written and verbal presentation skills at the senior management level
Preferred qualifications, capabilities, and skills
CISSP, CISA, CISM, CCSP or CRISC certification is a plus
JPMorgan Chase Bank, N.A., doing business as Chase Bank or often as Chase, is an American national bank headquartered in New York City, that constitutes the consumer and commercial banking subsidiary of the U.S. multinational banking and financial services holding company, JPMorgan Chase
Job ID: 141976701