Upload Button Icon Add office photos
Engaged Employer

i

This company page is being actively managed by JPMorgan Chase & Co. Team. If you also belong to the team, you can get access from here

JPMorgan Chase & Co. Verified Tick

Compare button icon Compare button icon Compare

Proud winner of ABECA 2025 - AmbitionBox Employee Choice Awards

zig zag pattern zig zag pattern
filter salaries All Filters

902 JPMorgan Chase & Co. Jobs

Associate, Supplier Cybersecurity Controls Assessor

5-10 years

₹ 5.4L/yr - 48L/yr (AmbitionBox estimate)

tooltip
This is an estimate of the average salary range for this position. It has not been reviewed by the company, and the actual salary may differ.

Bangalore / Bengaluru

1 vacancy

Associate, Supplier Cybersecurity Controls Assessor

JPMorgan Chase & Co.

posted 3 weeks ago

Job Role Insights

Flexible timing

Job Description

The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC s Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC s supply chain. SAS is part of Global Supplier Services (GSS), reporting directly to JPMC s Global Head of Corporate Third Party Oversight.
Job Summary
As an Associate, Supplier Cybersecurity Controls within the Supplier Assurance Services you will perform technology and cybersecurity control assessments of supplier environments. These assessments review infrastructure, application stacks and other technologies to ensure compliance with JPMC Corporate Policies & Standards. You will validate those technical risks are managed by JPMC Issue Owners and security controls are fully implemented. You will partner with JPMC s Global Cybersecurity and Technology team and JPMC s Lines of Business (LOBs) to focus on the latest cyber risks identified in the industry. As a SAS team member, you will assess action plans and risk acceptances across business lines where technology standards compliance cannot be achieved. This includes
  • Identifying opportunities to improve third party risk posture, developing creative solutions for mitigating risks.
  • Liaising with JPMC and supplier s senior managers to communicate and influence best risk practices.
  • Driving compliance to adhere to best risk management practices throughout the organizations.
Job responsibilities
  • Manage all aspects of the control assessment of suppliers including assessing completed questionnaires and supporting field work materials to ensure they are complete and meet JPMC expectations.
  • Lead the onsite / virtual assessment, providing the overall technology and cybersecurity risk and controls expertise.
  • Identify and document control breaks and vulnerabilities within suppliers IT environments and work with the LOB Delivery Manager and Information Security Manager to resolve through action plans or seek risk acceptance approvals.
  • Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc.
  • Support internal education and best practices sharing with peers and colleagues, as well as third party education & awareness
  • Escalate issues associated with suppliers as needed.
Required qualifications, capabilities, and skills
  • 5+ years of experience in Technology, Technology Risk & Controls, Technology Audit, Cybersecurity, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network, Security, Cyber Resiliency and Third Party Outsourcing Risk Management within a large enterprise level environment.
  • Understanding of industry risk frameworks (ISO27001, NIST Cybersecurity Framework, etc.)
  • Strong written and verbal presentation skills at the senior management level
  • Experience debating issues with senior decision makers and pushing back when necessary
Preferred qualifications, capabilities, and skills
  • CISSP, CISA, CISM, CCSP or CRISC certification
The Supplier Assurance Services (SAS) team performs comprehensive risk assessments of suppliers within JPMC s Corporate Third Party Oversight (CTPO) program. SAS also supports JPMC s Cybersecurity and Technology functions by designing and implementing controls and processes to further enhance the security posture of JPMC s supply chain. SAS is part of Global Supplier Services (GSS), reporting directly to JPMC s Global Head of Corporate Third Party Oversight.
Job Summary
As an Associate, Supplier Cybersecurity Controls within the Supplier Assurance Services you will perform technology and cybersecurity control assessments of supplier environments. These assessments review infrastructure, application stacks and other technologies to ensure compliance with JPMC Corporate Policies & Standards. You will validate those technical risks are managed by JPMC Issue Owners and security controls are fully implemented. You will partner with JPMC s Global Cybersecurity and Technology team and JPMC s Lines of Business (LOBs) to focus on the latest cyber risks identified in the industry. As a SAS team member, you will assess action plans and risk acceptances across business lines where technology standards compliance cannot be achieved. This includes
  • Identifying opportunities to improve third party risk posture, developing creative solutions for mitigating risks.
  • Liaising with JPMC and supplier s senior managers to communicate and influence best risk practices.
  • Driving compliance to adhere to best risk management practices throughout the organizations.
Job responsibilities
  • Manage all aspects of the control assessment of suppliers including assessing completed questionnaires and supporting field work materials to ensure they are complete and meet JPMC expectations.
  • Lead the onsite / virtual assessment, providing the overall technology and cybersecurity risk and controls expertise.
  • Identify and document control breaks and vulnerabilities within suppliers IT environments and work with the LOB Delivery Manager and Information Security Manager to resolve through action plans or seek risk acceptance approvals.
  • Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc.
  • Support internal education and best practices sharing with peers and colleagues, as well as third party education & awareness
  • Escalate issues associated with suppliers as needed.
Required qualifications, capabilities, and skills
  • 5+ years of experience in Technology, Technology Risk & Controls, Technology Audit, Cybersecurity, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network, Security, Cyber Resiliency and Third Party Outsourcing Risk Management within a large enterprise level environment.
  • Understanding of industry risk frameworks (ISO27001, NIST Cybersecurity Framework, etc.)
  • Strong written and verbal presentation skills at the senior management level
  • Experience debating issues with senior decision makers and pushing back when necessary
Preferred qualifications, capabilities, and skills
  • CISSP, CISA, CISM, CCSP or CRISC certification

Employment Type: Full Time, Permanent

Read full job description

JPMorgan Chase & Co. Associate Interview Questions

An Associate was asked
2mo ago
Q. What is the difference between a client and a customer?
An Associate was asked
12mo ago
Q. What requirements do you gather before creating a dashboard?
An Associate was asked
12mo ago
Q. How do you implement API versioning in Spring Boot?
View all

What people at JPMorgan Chase & Co. are saying

3.7
Rating based on 693 Associate reviews

Likes

Work Culture and promotion of new learning, pushing everyone to participate in hackathons events

Dislikes

Work from office, politics at senior level

Read 693 Associate reviews

Associate salary at JPMorgan Chase & Co.

reported by 11.3k employees with 1-17 years exp.
₹18.8 L/yr - ₹33.5 L/yr
216% more than the average Associate Salary in India
View more details

What JPMorgan Chase & Co. employees are saying about work life

based on 6.9k employees
64%
88%
77%
72%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

JPMorgan Chase & Co. Benefits

Submitted by Company
Employee Programs
Wellness Programs
Health Care and Insurance Plans
Family Care
Retirement Savings Programs
Submitted by Employees
Free Transport
Cafeteria
Health Insurance
Soft Skill Training
Job Training
Work From Home +6 more
View more benefits

Compare JPMorgan Chase & Co. with

Morgan Stanley

3.6
Compare

Goldman Sachs

3.5
Compare

TCS

3.6
Compare

Bank of America

4.2
Compare

Amazon

4.0
Compare

Google

4.3
Compare

Accenture

3.7
Compare

Deloitte

3.7
Compare

Deutsche Bank

3.9
Compare

Oracle

3.7
Compare

Capgemini

3.7
Compare

Barclays

3.7
Compare

Infosys

3.6
Compare

Microsoft Corporation

3.9
Compare

Bajaj Finserv

3.9
Compare

Wells Fargo

3.8
Compare

HSBC Group

3.9
Compare

Cholamandalam Investment & Finance

3.9
Compare

Citicorp

3.7
Compare

BNY

3.8
Compare

Similar Jobs for you

Technology at JP Morgan Chase

Bangalore / Bengaluru

1-5 Yrs

Not Disclosed

Associate at JP Morgan Chase

5-10 Yrs

Not Disclosed

Associate C&C at JP Morgan Chase

Bangalore / Bengaluru

3-8 Yrs

Not Disclosed

Vice President at DBS Bank Ltd

Mumbai

10-15 Yrs

Not Disclosed

Technology at Deutsche Bank

Bangalore / Bengaluru

10-18 Yrs

Not Disclosed

Risk Management Lead at SMARTWORK IT SERVICES

11-15 Yrs

Not Disclosed

Senior Manager at Microland Limited

Bangalore / Bengaluru

10-12 Yrs

Not Disclosed

Cyber Security at QUANTABASE TECHNOLOGIES PRIVATE LIMITED

10-20 Yrs

Not Disclosed

Senior Advisor at WTW GLOBAL DELIVERY AND SOLUTIONS INDIA PVT LTD.

Mumbai

3-5 Yrs

Not Disclosed

Technical Analyst at Continental HR Services

4-9 Yrs

Not Disclosed

JPMorgan Chase & Co. Bangalore / Bengaluru Office Location

View all
Bengaluru Office
501, 5th Floor, Prestige Centre Point, 7 Cunningham Road Bengaluru
Karnataka 560056

Associate, Supplier Cybersecurity Controls Assessor

5-10 Yrs

₹ 5.4L/yr - 48L/yr (AmbitionBox estimate)

Bangalore / Bengaluru

Outsourcing, Auditing, SAS +7 more

3 weeks ago·via naukri.com

Software Engineer III - Java Software Engineer III - Java

3-8 Yrs

Bangalore / Bengaluru

Machine Learning, Coding, Front End +7 more

Few hours ago·via naukri.com

Sr. Lead Architect Sr. Lead Architect

5-10 Yrs

Bangalore / Bengaluru

Artificial Intelligence, Architecture, Machine Learning +7 more

Few hours ago·via naukri.com

Senior Lead Architect Senior Lead Architect

5-10 Yrs

Bangalore / Bengaluru

Artificial Intelligence, Architecture, Machine Learning +6 more

Few hours ago·via naukri.com

Lead Technical Program Manager Lead Technical Program Manager

5-10 Yrs

Bangalore / Bengaluru

Python, Operations, Automation +7 more

Few hours ago·via naukri.com

Product Manager - AML KYC Controls

7-12 Yrs

₹ 24L/yr - 45L/yr (AmbitionBox estimate)

Hyderabad / Secunderabad

Project Management, Management, Operations +6 more

Few hours ago·via naukri.com

Technical Product Director - Application Platform, Chase Travel

10-15 Yrs

Pune

Architecture, Javascript, Market Research +5 more

Few hours ago·via naukri.com

Product Director - Digital Communications Alerts Platform

10-15 Yrs

Bangalore / Bengaluru

Operations, Backend, Market Research +6 more

Few hours ago·via naukri.com

Sr Lead Software Engineer Sr Lead Software Engineer

1-8 Yrs

Hyderabad / Secunderabad

UNIX, Cobol, JCL +4 more

Today·via naukri.com

Senior Product Associate

7-15 Yrs

Bangalore / Bengaluru

Private Banking, Product Management, Business Management +5 more

Today·via naukri.com
write
Share an Interview