As a Technology Operational Risk Management Lead within the Tech & Cyber Operational Risk Management team, you will utilize your subject matter expertise in Mainframe and Database technology domains to perform independent risk assessments on the platforms, tools and supporting systems used to deliver these technologies to businesses at the firm. You will proactively identify areas of emerging technologies that introduce operational risk and have a good understanding of third-party risks as applied to the technology used.
Job Responsibilities
- Perform oversight of operational risks through targeted reviews of global and regional technology/ cyber security processes and controls for the infrastructure organizations.
- Keep abreast of current technology trends, vulnerabilities, and emerging technologies.
- Engage with infrastructure technology teams to gain full understanding of the technology and control environment.
- Understand third party risks as related to specific technology area of expertise.
- Work with appropriate technology areas to identify potentially elevated risk concentrations globally and perform assessments of the corresponding inherent risks and mitigating controls. Recommend any adjustments required to meet JPMC policy, regulatory requirements, and industry best practices.
- Participate in key technology governance forums.
Required qualifications, capabilities, and skills
- 5+ years of relevant experience
- Multi-disciplined forward-looking technologist and risk manager with diverse background and experiences in several cyber security and technology operations and the development of corresponding control systems
- Mainframe Expertise
- Understanding of IBM z/OS architecture and its components
- Experience with mainframe tools and utilities like JCL, TSO/ISPF and CICS
- Knowledge of mainframe security protocols and Remote Access Control Facility
- Proficiency in using z/OS testing frameworks and tools, such as IBM Debug Tool and zUnit, for unit and integration testing
- Familiarity with Continuous Integration/Continuous Deployment (CI/CD) practices in a z/OS environment
- Database Management: Expertise in SQL and database design principles, experience managing relational, NoQSL, column and other database, knowledge of database security best practices and data encryption techniques
- Software Development: Experience of developing and maintaining software applications on mainframe and midrange platforms, experience with version control systems like Git or SVN in a multi-platform environment