JPMorgan Chase & Co.

Technology Risk and Controls Lead (Cybersecurity Governance)

JPMorgan Chase & Co. · Senningerberg, Luxembourg, Luxembourg

Financial Services · 10,001+ employees

6 h ago
Senior (5-10 yrs) Full-time Luxembourg
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will identify, quantify, and manage technology risks while providing technical guidance to ensure controls comply with regulatory and industry standards. Additionally, you will partner with cross-functional teams to report on technology risk posture and drive innovative risk mitigation strategies.

What they look for

Technology Risk Management Cybersecurity Governance Risk Identification Risk Assessment Control Evaluation Regulatory Compliance Root-cause Analysis Data Security Governance Policy Management Issue Management Stakeholder Management Strategic Decision-making DORA Information Security

Requirements

Candidates must have expertise in technology risk management, information security, and familiarity with industry regulatory requirements like DORA. Strong skills in risk assessment, control design, and the ability to influence executive-level strategic decision-making are essential.

Full description

Join us to make a meaningful impact on how we manage technology risks and uphold operational excellence. You’ll have the opportunity to drive innovation in risk management while collaborating with talented professionals across the organization. At JPMorganChase, we empower you to shape the future of cybersecurity and technology controls. Your expertise will help us stay ahead in a dynamic risk landscape. Together, we’ll create a safer, more resilient environment for our business and clients.

As a Tech Risk and Controls Lead in our Cybersecurity and Technology Controls team, you will identify and mitigate compliance and operational risks in line with our firm’s standards. You will provide subject matter expertise and technical guidance to technology-aligned process owners, ensuring controls operate effectively and comply with regulatory, legal, and industry standards. By partnering with Product Owners, Business Control Managers, and regulators, you will help report on our technology risk posture and its business impact. Your advanced knowledge of risk management will enable you to drive innovative solutions and lead a diverse team in an evolving environment.

Job Responsibilities:

  • Identify, quantify, communicate, and manage technology risk, focusing on root-cause analysis and actionable recommendations.
  • Build and maintain strong relationships with technologists, assessment teams, and data officers to foster cross-functional collaboration.
  • Execute reporting and governance of controls, policies, issue management, and measurements to inform senior management and governance activities.
  • Monitor and evaluate control effectiveness, identify gaps, and recommend enhancements to strengthen risk posture and regulatory compliance.
  • Assess regulatory changes related to cybersecurity and technology and evaluate their impact on the firm.

Required Qualifications, Capabilities, and Skills:

  • Expertise in technology risk management, information security, or related field, with emphasis on risk identification, assessment, and mitigation.
  • Familiarity with risk management frameworks, industry standards, and financial industry regulatory requirements, such as the Digital Operational Resilience Act (DORA).
  • Proficient knowledge in data security, risk assessment and reporting, control evaluation, design, and governance, with a record of implementing effective risk mitigation strategies.
  • Ability to influence executive-level strategic decision-making and translate technology insights into business strategies for senior executives.

Preferred Qualifications, Capabilities, and Skills:

  • CISM, CRISC, CISSP, or similar industry-recognized risk certifications.

If you’re ready to help us shape the future of technology risk management and be part of a collaborative, forward-thinking team, we encourage you to apply.

J.P. Morgan is a global leader in financial services, providing strategic advice and products to the world’s most prominent corporations, governments, wealthy individuals and institutional investors. Our first-class business in a first-class way approach to serving clients drives everything we do. We strive to build trusted, long-term partnerships to help our clients achieve their business objectives.

We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.

Our professionals in our Corporate Functions cover a diverse range of areas from finance and risk to human resources and marketing. Our corporate teams are an essential part of our company, ensuring that we’re setting our businesses, clients, customers and employees up for success.