In this lead role as a Technology Resiliency Risk & Controls – Executive Director within JPMorgan Chase Cybersecurity & Technology Controls’ organization, your expertise in cybersecurity and risk management will shape our global technology resilience. You will be responsible for the strategic development of a controls framework and a program for the implementation and maintenance of technology resiliency controls.
This role requires a strategic thinker with a strong diverse set of technical skills and ability to collaborate across various teams to enhance the resilience and recovery capabilities of technology systems and critical services.
Job responsibilities
- Develop Resiliency Strategies : Design and implement a robust technology resiliency strategy to mitigate risks associated with plausible disruptive events
- Control Implementation: Lead the implementation of risk management policies, standards, and controls to create proactive mitigation mechanisms to enable technology availability, recovery and restoration
- Risk Assessments: Conduct regular risk and impact assessments of technology systems to identify vulnerabilities and recommend controls to strengthen resilience
- Collaboration: Work closely with information technology, cyber security and business continuity teams as a trusted partner to ensure alignment and integration of technology resiliency practices
- Monitoring and Reporting: Establish risk and performance measures to continuously validate and assess effectiveness of technology resiliency controls
- Regulatory Compliance: Ensure technology resiliency controls comply and adhere with relevant regulations and industry standards
- Incident Response: Participate in incident response planning and root cause analysis to ensure that technology systems can prepare and recover quickly from disruption
Required qualifications, capabilities, and skills
- Education: Bachelor’s degree in Computer Science, Information Technology or an Engineering related discipline
- Experience: Minimum of 10+ years’ experience in a regulated industry, conducting technology risk management, disaster recovery, or business continuity planning with a focus on developing risk mitigation practices.
- Technical Skills: Proficient architectural and engineering knowledge in core infrastructure technologies for networking, compute, storage & backup solutions with experience of cloud provider products & services.
- Analytical Skills: Strong analytical and problem-solving skills with attention to detail and accuracy.
- Leadership Skills: Evidence of ability to influence and drive change with a proactive approach to identifying potential issues and implementing practical solutions.
Preferred qualifications, capabilities, and skills
- Demonstrated expertise in cybersecurity and risk management frameworks including experience implementing one of more of the following NIST, CIS, ISO/IEC 27001
- Experience supporting regulatory engagements and audits aligned to FFIEC financial industry guidelines
- Proven ability to build, lead and empower diverse global teams to collaborate and execute in a cross-functional environment
- Proficient verbal and written communication skills, including the ability to effectively lead discussions with internal management, external/internal auditors, regulators and senior stakeholders
- CPA, CIA, CISA, or other relevant certifications preferred