Compliance - Technology Operational Risk Management Senior Officer - Associate

JPMorgan Chase JPMorgan Chase · Banking · Jersey City, NJ +1 · Corporate Sector

This role focuses on assessing technology and cyber operational risks within the Wealth Management line of business at JPMorgan Chase. It involves evaluating risks associated with modern software engineering, cloud, cybersecurity, and the adoption of AI-enabled tooling, coding assistants, and agentic AI capabilities. The officer will use Python and SQL for data analysis, identify root causes of production issues, and provide recommendations for improving operational resilience and risk management, with a particular emphasis on AI-related risks.

What you'd actually do

  1. Perform independent Technology and Cybersecurity operational risk assessments for Wealth Management technology assets using a data-first approach to identify and mitigate potential risks
  2. Use Python and SQL to analyze large data sets and risk telemetry (e.g., incidents, change, vulnerability, access, control results) to produce actionable insights, including identifying areas of unmanaged risk
  3. Assess technology and cyber risks associated with strategic change programs, including cloud migrations, platform modernization, and adoption of AI-enabled tooling
  4. Evaluate risks arising from coding assistants and agentic AI use in the SDLC
  5. Research external events and evolving threats (including AI-related attack patterns) and evaluate potential impact to the line of business

Skills

Required

  • Bachelor’s degree in Computer Science, Engineering, Data Analytics, or a related field
  • Proficiency in SQL and Python analytics
  • Strong understanding of modern SDLC practices and controls: testing/quality, CI/CD, change and release management, and production support/incident management
  • Working knowledge of cloud and contemporary engineering patterns (e.g., APIs, microservices, containers, infrastructure-as-code concepts) and how they affect operational and cyber risk
  • Foundational cybersecurity knowledge, including common application and data risks (e.g., secrets handling, authentication/authorization, vulnerability management, secure configuration)
  • Awareness of AI-enabled development and agentic AI risk considerations, including data confidentiality, prompt injection/indirect prompt injection, tool/connector risk, and governance/controls needed for safe adoption
  • Strong communication and collaboration skills, with ability to convey complex technical concepts to non-technical stakeholders effectively
  • Confidence to debate how a risk is being managed while maintaining constructive working relationships with business counterparts
  • Commitment to continually develop skills in cybersecurity, technology operations, risk management, and emerging AI risks

Nice to have

  • Proficiency in Pandas, NumPy
  • visualization a plus

What the JD emphasized

  • AI-enabled development
  • agentic AI capabilities
  • AI-enabled tooling
  • agentic AI use
  • AI-related attack patterns