About this role
Join a dynamic team where your expertise in technology risk will help shape the future of secure operations and drive impactful change. As a Tech Risk and Controls Lead at JPMorgan Chase within the Cybersecurity and Technology Controls team, you will play a pivotal role in identifying, assessing, and managing technology risks. You will collaborate with cross-functional teams to enhance control effectiveness and support regulatory compliance. Your contributions will help foster a culture of risk awareness and continuous improvement. Together, we create a secure and resilient environment for our clients and communities. Job responsibilities
• Ensure effective identification, quantification, communication, and management of technology risk, focusing on root cause analysis and resolution recommendations • Develop and maintain robust relationships, becoming a trusted partner with LOB technologists, assessments teams, and data officers to facilitate cross-functional collaboration and progress toward shared goals • Execute reporting and governance of controls, policies, issue management, and measurements, offering senior management insights into control effectiveness and inform governance work • Uses enterprise-authorized AI capabilities within the work environment to accelerate synthesis of risk/control evidence and draft executive-ready reporting, validating outputs and handling data according to sensitivity and security requirements • Promotes reuse-first, AI-assisted approaches to streamline recurring control testing and issue/action-plan management routines, ensuring human review and alignment to auditability and regulatory expectations • Proactively monitor and evaluate control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance Required qualifications, capabilities and skills
• 5+ years of experience in technology risk management, information security, or related field, emphasizing risk identification, assessment, and mitigation • Have an understanding of risk management frameworks, industry standards, and financial industry regulatory requirements • Proficient knowledge and expertise in data security, risk assessment & reporting, control evaluation, design, and governance, with a proven record of implementing effective risk mitigation strategies • Demonstrated experience using enterprise-authorized AI capabilities within the work environment to support technology risk and controls workflows with strong validation habits and awareness of data sensitivity. • Ability to review and validate AI-assisted risk summaries and recommendations before use, escalating when uncertain and ensuring outcomes align to security, auditability, and regulatory expectations. • Demonstrated ability to influence executive-level strategic decision-making and translate technology insights into business strategies for senior executives Preferred qualifications, capabilities and skills
• Experience with regulatory audits and remediation activities • Advanced degree in information security, risk management, or related discipline • Strong communication and stakeholder management skills • Expertise in emerging technologies and their associated risks