Information Security Management

6 months ago


London, United Kingdom JPMorgan Chase & Co Full time

**JOB DESCRIPTION**
The **Technology Risk and Control (TRC) **is responsible for coordinating the firm’s operational risk management framework and have a deep knowledge of all aspects of the framework, specifically controls, policies, processes, and standards. This role engages in areas of development, design, and monitoring of corporate and world-wide control programs and acts as a liaison between management, the Lines of Business, internal and external audit and regulators. In addition, you will help design and deliver on key services/activities our team should be executing as per the JPMC Control and Operational Risk evaluation standard.

This role is part of the **Cybersecurity & Technology Controls **organisation**.**The group is a risk partner and consultant accountable for driving control compliance with policies and standards and targeting prioritized solutions/architectures to reduce risk. We operate within a complex landscape driven by client expectations and the vastness/variety that comes with operating in 53 countries across the globe.

**Job responsibilities**:

- Offer guidance, best practices, and support across businesses to drive awareness and understanding of the technology risk and controls framework and challenges to compliance with it.
- Lead risk reviews and vulnerability assessments, identifying threats, communicating with senior leaders and stakeholders, and managing budgets.
- Help define technology’s approach for compliance with the firm’s operational risk management framework.
- Advance the design of the technology risk and control framework for expression of the technology risk and control environment
- Work closely with various partners across the firm, including but not limited to colleagues in CTC, Enterprise Technology product & engineering, Information Risk Managers and Technologists in our Businesses and Corporate Functions, Operational Risk Management & Compliance, Audit, as well as regional partners across the globe.
- Develop relationships with senior business executives and partner across organization lines to mitigate risks to accomplish common goals.
- Foster an inclusive, collaborative workplace environment and building/maintaining productive working relationships with all team members and stakeholders
- Support service owners in the redesign of TRC services to enable operational consistency and efficiency

**Key requirements**:

- Extensive experience with cloud technology including, Hybrid environments, security from the start design (SSDLC)
- Conduct manual, language agnostic code review to identify security related vulnerabilities
- Experience in operational service design across multiple Lines of Businesses/product areas.
- **Relevant technical qualifications** such as MIRM, CRISC, CISM, CISA, CISSP, AWS Certified Security etc;
- **Relevant business experience/qualifications/knowledge**: Expertise established in assessing and articulating technology risk in the context of various other operational risks and challenges facing the organization.

About Us

JPMorgan Chase & Co., one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses, and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.

When you work at JPMorgan Chase & Co., you’re not just working at a global financial institution. You’re an integral part of one of the world’s biggest tech companies. In 20 technology centers worldwide, our team of 50,000 technologists design, build and deploy everything from enterprise technology initiatives to big data and mobile solutions, as well as innovations in electronic payments, cybersecurity, machine learning, and cloud development. Our $10B+ annual investment in technology enables us to hire people to create innovative solutions that will are transforming the financial services industry.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as any mental health or physical disability needs.

Equal Opportunity Employer/Disability/Veterans

About the Team

The Cybersecurity & Technology Controls (CTC) team at JPMorgan



  • London, United Kingdom Information Security Solutions Full time

    Title: Head of Operational Security Reference No: 2181 Company: Online Location: London, UK Reports to CISO Day Rate: TBC Duration 5 months The Role This role reports to the CISO and is part of the security leadership team. The Person: An analytical problem solver with demonstrable long-term experience leading and improving operational security...


  • London, Greater London, United Kingdom Millennium Management Full time

    We are seeking an Information Security Analyst to join our team at Millennium Management. In this role, you will be responsible for identifying and analyzing security risks and implementing measures to mitigate them.The estimated salary for this position is $110,000 - $160,000 per annum, depending on experience.Key Responsibilities:Conduct regular system...


  • London, Greater London, United Kingdom Millennium Management Full time

    Job SummaryThe Information Security Specialist will be responsible for leading, implementing and managing key monitors for network security controls to ensure an appropriate security posture across the perimeter networks.Key ResponsibilitiesLead, implement and manage key monitors for network security controls to ensure appropriate security posture across the...


  • London, Greater London, United Kingdom Millennium Management Full time

    Job SummaryThe Information Security Specialist will be responsible for leading the implementation and management of key network security controls to ensure an appropriate security posture across perimeter networks.This role will require hands-on experience with a wide range of Information security technologies, tools, and methodologies. The successful...

  • Python Developer

    2 weeks ago


    London, Greater London, United Kingdom Context Information Security Full time

    At Context Information Security, we are seeking an experienced Python developer to join our team in London. With a strong background in Django, you will be responsible for developing and maintaining our web applications, including the CHAOS project.Company OverviewContext is an independent cyber security consultancy founded in 1998. We work with high-profile...


  • London, Greater London, United Kingdom Millennium Management LLC Full time

    Company OverviewMillennium Management LLC is a leading global investment management firm. We are dedicated to providing innovative solutions for our clients and fostering a collaborative environment that encourages creativity and growth.Estimated Salary$150,000 - $200,000 per year, depending on experience.Job DescriptionWe are seeking an experienced...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Iceberg Cyber Security is seeking an Information Security Specialist to join its security assurance team. The role will focus on achieving information security, accreditation such as NIST, ISO-27001, JSP 440. To be successful in this role the candidate must have a familiarity working with a secure by design approach and experience communicating with senior...


  • London, Greater London, United Kingdom Context Information Security Full time

    Context Information Security is a dynamic and growing company that offers a unique opportunity for experienced Python/Django developers to grow their careers in the field of cyber security.About UsWe are a leading provider of cyber security services, working with high-profile clients to deliver innovative solutions to complex security challenges. Our team of...


  • London, United Kingdom Secore information security limited Full time

    We are looking for a Security Assurance and Testing specialist. The role will be responsible for managing and executing security assurance tasks. This includes (1) defining and maintaining new security assurance profiles for various types of systems and domains, (2) creating test plans and designing test cases that can evaluate compliance and detect...


  • London, Greater London, United Kingdom Iceberg Cyber Security Full time

    Iceberg Cyber Security is seeking a highly skilled Information Security Assurance Specialist to join its team. This role will involve securing the security of services to achieve information security accreditation such as NIST, ISO-27001, and JSP 440. The ideal candidate will have a strong analytical background and experience with large and complex data...


  • London, Greater London, United Kingdom Information Security Media Group Full time

    About UsInformation Security Media Group (ISMG) is a leading global intelligence firm specializing in cybersecurity and digital innovation. With a client base that includes renowned brands such as Google, BP, Shell, Johnson & Johnson, Amazon, Dell, McAfee, and Siemens, we host over 20 annual events across five continents.The OpportunityWe are seeking an...


  • London, Greater London, United Kingdom Advanced Resource Managers Ltd Full time

    Job Title: Information Security ManagerJob Summary:We are seeking an experienced Information Security Manager to join our team at Advanced Resource Managers Ltd. As a key member of our security team, you will be responsible for ensuring the security controls (people, process, technology) are in place and operating as designed.Key Responsibilities:Develop and...


  • London, United Kingdom SilverDoor Full time

    Managing information security frameworks - ISO , NIST CSF, and Cyber Essentials.Managing security best practices across the cloud and on-premises infrastructure, with continual improvements.To lead and oversee ISO audits – ISO , ISO , ISO , and ISO .Managing the entire risk management lifecycle.Implement and run staff information training and...


  • London, United Kingdom CAPCO Full time

    Information Security Manager at Capco UK - London Joining Capco means joining an organisation that is committed to an inclusive working environment where you’re encouraged to #BeYourselfAtWork. We celebrate individuality and recognize that diversity and inclusion, in all forms, is critical to success. It’s important to us that we recruit and...


  • London, United Kingdom CV-Library Full time

    Information Security Manager. London (Hybrid working) Our Client: We represent a distinguished institution in London, celebrated for its dedication to academic excellence and pioneering research initiatives. The Information Technology Services (ITS) within this client is crucial in bolstering both customers and employees success, with a dedicated...


  • London, Greater London, United Kingdom Project People Full time

    We are seeking an experienced Information Security Manager to lead our team in the UK. The estimated salary for this role is £90,000 - £125,000 per annum.About the RoleThis is a critical role that requires a high level of expertise in Information Security. The successful candidate will be responsible for ensuring the security function aligns with business...


  • London, United Kingdom Ventula Consulting LTd Full time €110,000 - €120,000

    Group Head of Information Security - £110-120K + exceptional package & bonus One of the UK and Europe’s leading entertainment companies are hiring a Group Head of Information Security. This company are a household name in the UK and across the continent with 208 facilities across 8 European countries, including an market leading footprint and global HQ...


  • London, United Kingdom Ventula Consulting LTd Full time €110,000 - €120,000

    Group Head of Information Security - £110-120K + exceptional package & bonus One of the UK and Europe’s leading entertainment companies are hiring a Group Head of Information Security. This company are a household name in the UK and across the continent with 208 facilities across 8 European countries, including an market leading footprint and global HQ...


  • London, Greater London, United Kingdom Starling Bank Full time

    Security Expert Lead - Starling BankWe are a forward-thinking digital bank on a mission to fix banking. We're looking for an experienced Security Expert Lead to join our team, who will be responsible for leading a team of security professionals to enhance and continuously improve the Bank's Information and Cyber Security systems, processes, and...


  • London, United Kingdom i3 Full time

    Information Security Manager - Insurance - HybridInformation Security ManagerCloud, Azure, IAMLondon Insurance MarketCity, London/ Hybrid (3-4 days per week in the office)PermanentUp to £150,000 per annum + benefits + bonusA fantastic opportunity has arisen for an experienced hands on Information Security Manager to join a reputable London Market Insurer...