Desired Skills and Experience
- Assist in the development and execution of a repeatable methodology to test Global Security Standards against threats defined by actor, target, intent, and vector.
- Conduct formal risk assessments of the JPMC technology environment using the methodology.
- Collaborate with the Cybersecurity Standards team on control evaluation using a defined set of high level threats.
- Drive/lead the Cybersecurity risk assessment and resulting issue and action plan management on Global Cybersecurity Processes and Products.
- Partner with Procedure Owners in multiple organizations and technologies to ensure that Procedures are appropriate and fully integrated with Cybersecurity Standards and Global Cybersecurity Solutions.
- Leverage standards and control objective expertise to assist in the document substantiation closure summaries for regulatory, audit, and self-identified cybersecurity risk issues and action plans.
- Bachelorsâ degree in computer science, information systems or related field; advanced degree preferred
- 8+ years of overall IT experience preferred.
- 7+ years of technology experience, ideally including experience in the Financial Services and Cybersecurity or related fields.
- Experience in cybersecurity risk assessment methodologies, including attack trees, goal question metric (GQM) methodologies, process self-assessments and cybersecurity OCTAVE-style self assessments
- Knowledge of Financial Industry Information Security Requirements and Cybersecurity Control Standards;
- Certified Information Security Auditor (CISA) or willingness to pursue.
- Strong knowledge of cryptographic algorithms and implementations required.
- Outstanding verbal, interpersonal and written communication and presentation skills, including demonstrated ability to interact with both technical and non-technical stakeholders
- Strong organizational and time management skills; ability to manage multiple and conflicting priorities in a global organization, and to adapt in a fast-paced environment
- Demonstrated ability to author Standards and Procedures.
- Ability to develop and maintain strong partnerships with key stakeholders, and to work across diverse businesses and regions, balancing the needs of multiple organizations
- Effective negotiation and influencing skills.
- Ability to both learn from colleagues and think outside the box
Apply