Cybersecurity - Tech Risk Lead

JPMorgan Chase JPMorgan Chase · Banking · Plano, TX +1 · Corporate Sector

Seeking a Cybersecurity - Tech Risk Lead with 6+ years of experience in cybersecurity, threat modeling, and risk assessment. Responsibilities include collecting and analyzing telemetry data, conducting root cause analysis, identifying cyber risks, and collaborating with cross-functional teams to strengthen security posture and ensure compliance with financial industry regulations.

What you'd actually do

  1. Collect and meticulously review findings and telemetry data to ensure comprehensive risk assessment. Utilize advanced data analytics to identify patterns and anomalies that may indicate potential risks. providing a comprehensive risk assessment.
  2. Conduct thorough root cause analysis to identify the underlying causes and themes of issues and incidents, developing actionable insights and recommendations to address these root causes and prevent recurrence.
  3. Leverage subject matter expertise in cybersecurity controls and technology operations to identify emerging issues and articulate associated risks clearly. Communicate risk findings to stakeholders in a manner that is both informative and actionable.
  4. Collaborate with cross-product and functional teams to analyze high-priority risks, evaluate gaps in related standards and controls, and create outputs that propel remediation plans, controls, and standards development.
  5. Prepare detailed reports and documentation of risk assessments, findings, and recommendations. Ensure all documentation is accurate, comprehensive, and accessible to relevant stakeholders.

Skills

Required

  • 6+ years of training or experience in cybersecurity with a strong understanding of threat modeling and risk assessment.
  • Strong analytical skills and experience in data analysis and root cause analysis.
  • Familiarity with industry standards and best practices for cyber risk management.
  • Subject mater expertise in at least one of the following domains: Vulnerability Management, Data Protection & Cryptography, Security Operations, Security Config, secure SDLC, Identity and Access Management.
  • Deep understanding of cyber risk scenarios for on-prem, SaaS and cloud-based solutions.
  • Excellent command of cyber and operations risk management processes, principles, and architectural requirements.
  • Demonstrated ability to work collaboratively with cross-functional teams.
  • In-depth knowledge of current cybersecurity threats, trends, and best practices.
  • Ability to prioritize and work under stringent timelines and lead within a cross-line of business technology organization.
  • Keen understanding of national and international laws, regulations, policies, and ethics related to financial industry cybersecurity.

Nice to have

  • AI Prompt Engineering
  • Hands-on experience with security testing, simulations, or tabletop exercises
  • Knowledge of cloud security principles and securing modern architectures (e.g. containers, micro-services)
  • Relevant certifications in cybersecurity or risk management are a plus
  • Experience operating in environments governed under compliance, regulatory, or risk reduction controls

What the JD emphasized

  • Keen understanding of national and international laws, regulations, policies, and ethics related to financial industry cybersecurity.