Apply Now    

Technology Controls Officer

Req #: 180038674
Location: Bangalore East, KA, IN
Job Category: Technology
Potential Referral Amount: 35000 Indian Rupee (INR)
J.P. Morgan is a leading global financial services firm, established over 200 years ago:
 
  • We are the leader in investment banking, financial services for consumers and small businesses, commercial banking, financial transaction processing, and asset management.
  • We have assets of $2.5 trillion and operations worldwide
  • We operate in more than 100 markets.
  • We have more than 243,000 employees globally.
 
Our wholesale businesses include J.P. Morgan’s Asset Management, Commercial Banking and the Corporate & Investment Bank which provide products and services to corporations, governments, municipalities, non-profits, institutions, financial intermediaries and high-net worth individuals and families.
 
Our corporate functions support the entire organization and include the following functions: Accounting, Audit, Finance, Human Resources, Operations, and Technology.
 
J.P. Morgan in India provides a comprehensive range of Corporate & Investment Banking, Commercial Banking, Asset & Wealth Management, and Corporate functions services and solutions to our clients, executing some of the most important financial transactions and providing essential strategic advice to our clients such as the government, large domestic and multi-national corporations, non-government organizations and financial institutions and investors. India is a key market for JPMorgan Chase globally and our employees in India are a critical part of how we do business globally and are integrated within our businesses. Our Global Service Centers (GSCs) are strategically positioned in Mumbai, Bangalore and Hyderabad to support the firm’s operations regionally and globally. The centers provide comprehensive strategic support across technology and business operations processing to all lines of business and the corporate functions.
 
The Technology team at our GSCs service all Lines of Business and Enterprise Technology in helping build and operate innovative industry leading solutions. The breadth of capabilities within the Technology team at the GSC enables it to support the firm in leading edge areas such as Digital, Big data analytics, Robotics & Machine Learning.
 
Roles & Responsibility:
 
  • Engage with LOB Technology Control Officer (TCO) to ensure all requests are processed in accordance of JPMC policy and procedures.
  • Drive all aspects of the risk assessment of technology and vendor installed applications. 
  • Review end user request which are submitted by business, technology and operations users.
  • Review firewall request which are submitted by business, technology and operations users.
  • Review IT exceptions request which are submitted by business, technology and operations users.
  • Engage and lead Line of Businesses that develop and use applications and incorporate the other LOBs assessment criteria as required.
  • Assess completed application risk classification to ensure they are complete and meet business expectations.
  • Assess completed application controls questionnaire and supporting materials to ensure they are complete and meet JPMC expectations.
  • Identify control breaks and vulnerabilities with application managers.
 
  • Document findings and work with the LOB Delivery Manager to resolve those findings through Action Plans (APs) or seek Non-Compliance Risk Acceptance (RA) approvals.
  • Escalate issues associated with lead IRMs as needed
  • Ensure finalized APs / RAs appropriately included / updated in risk systems and metrics
  • To ensure that the relevant and sufficient evidence are reviewed for the purpose of closure of any APs / RAs and regular reporting of open APs and RAs
  • Validate evidence from application managers, before Action Plans are closed
  • Identify opportunities for process improvements to deliver increasing operational efficiency in the processes.
  • Identify opportunities for improving application security risk posture, including expanded monitoring, KRI tracking, etc.
  • Assist with various Asset Management Information Risk Management program initiatives working closely with the Leads of respective programs.
  • Support internal education and best practices sharing with peers and colleagues, as well as information security education & awareness, as needed
  • 6+ years of experience in IT
  • 3+ years of experience in IT Risk management, audit or equivalent
  • Proficient technical skills, including: audit, business analysis, change management, IT Risk Management,  operation systems and data sources knowledge, performance metrics and reporting, technical problem resolution, project management, and vendor management.
  • Proficient working knowledge within the following risk domains/technologies:
    • Database and application security
    • IDS/IPS technologies
    • System/Access Administration
    • Firewall technologies
    • Network Architecture 
    • Security Event Logging & Monitoring 
    • Database/Application/Network Layer Secure Protocols
    • Physical and Environmental Security 
    • Secure Software/Code Development
    • Change Management
    • Vulnerability Management (Application & Infrastructure)
    • Cloud Technologies
    • Access Governance
  • Proficient verbal and written communication skills, including the ability to effectively lead discussions and meeting
  • Proficient risk assessment, interpretation, analytical and negotiation skills.
  • Excellent organizational skills
  • IT Risk Management/Audit industry certification (such as CISSP, CISA,CRISC, etc.) required
  • Master’s degree preferred, Bachelor’s degree required or equivalent technical experience
  • CISA, CISSP, CISM, CRISC certification will be an added advantage
Apply Now    

Join our Talent Community

Not ready to apply? Leave your information with us and we will keep you up to date with new career opportunities.

Things to note

Sign in to our application system to continue your job search or update your profile.

Current employees sign in here. Contractors sign in here.

Any information you provide is confidential and will only be viewed by our recruiters in an effort to fill open positions. In addition, the information you provide is subject to our privacy policy practices.

Please note that J.P. Morgan will not accept unsolicited approaches or speculative CVs, nor will J.P. Morgan be responsible for any related fees, from Third Party Firms who are not preferred suppliers.

The firm invites all interested and qualified candidates to apply for employment opportunities.

Need disability related assistance?

If you are a US or Canadian applicant with a disability who is unable to use our online tools to search and apply for jobs, please click here.

Important links

Click here to view the "EEO is the Law" poster.

Click here to view the "EEO is the Law" supplemental poster.

Click here to view our U.S. Pay Transparency Policy.

JPMorgan Chase is an equal opportunity and affirmative action employer Disability/Veteran.