Supplier Cybersecurity Controls Assessor

4 tygodni temu


Warsaw, Polska JPMorgan Chase & Co. Pełny etat

You are passionate about Technology/ Cybersecurity and you understand industry risk frameworkrs, you found the right team.

As a Supplier Cybersecurity Controls Assessor within the Supplier Assurance Services team, you will be responsible for conducting comprehensive risk assessments of suppliers as part of JPMorgan Chase & Co.'s Corporate Third Party Oversight program. Your role will also involve supporting JPMorgan Chase & Co.’s Cybersecurity and Technology functions by developing and implementing controls and processes to enhance the security posture of our supply chain. As a part of the Global Supplier Services team, you will report directly to the Global Head of Corporate Third Party Oversight at JPMorgan Chase & Co. Your duties will include performing technology and cybersecurity control assessments of supplier environments, reviewing infrastructure, application stacks, and other technologies to ensure compliance with JPMorgan Chase & Co. Corporate Policies & Standards. You will be tasked with validating that technical risks are managed by Issue Owners at JPMorgan Chase & Co. and that security controls are fully implemented. You will collaborate with JPMorgan Chase & Co.’s Global Cybersecurity and Technology team and the various Lines of Business to focus on the latest cyber risks identified in the industry. As a member of the Supplier Assurance Services team, you will assess action plans and risk acceptances across business lines where technology standards’ compliance cannot be achieved.

Identifying opportunities to improve third party risk posture, developing creative solutions for mitigating risks. Liaising with JPMC and supplier’s senior managers to communicate and influence best risk practices. Driving compliance to adhere to best risk management practices throughout the organizations.

Job responsibilities 

Manage all aspects of the control assessment of suppliers including assessing completed questionnaires and supporting field work materials to ensure they are complete and meet JPMC expectations. Lead the onsite / virtual assessment, providing the overall technology and cybersecurity risk and controls expertise. Identify and document control breaks and vulnerabilities within suppliers’ IT environments and work with the Line of Business (LOB) Delivery Manager and Information Security Manager to resolve through action plans or seek risk acceptance approvals. Identify opportunities for process improvements to deliver increased operational efficiency and opportunities for improving supplier posture including expanded monitoring, key risk indicator tracking, etc. Support internal education and best practices sharing with peers and colleagues, as well as third party education & awareness Escalate issues associated with suppliers as needed.

Required qualifications, capabilities, and skills

5+ years of experience in Technology, Technology Risk & Controls, Technology Audit, Cybersecurity, Application Security, Cloud Security (SaaS, PaaS & IaaS), Network, Security, Cyber Resiliency and Third Party Outsourcing Risk Management within a large enterprise level environment. Understanding of industry risk frameworks (ISO27001, NIST Cybersecurity Framework, Strong written and verbal presentation skills at the senior management level Experience debating issues with senior decision makers and pushing back when necessary

Preferred qualifications, capabilities, and skills 

CISSP, CISA, CISM, CCSP or CRISC certification is a plus

Work schedule: the role is based in Warsaw and it requires 3 days in the office presence.



  • Warsaw, Polska GE Pełny etat

    Job Description SummarySupplier Quality Engineer will be responsible to drive product qualification activities related to BoP scope which to be mainly but not limit to skid commodities.Support parts and documentation quality activities at suppliers, organize witness/surveillance inspection and manage nonconformities and quality improvement projects within...


  • Warsaw, Polska GE Pełny etat

    Job Description SummarySupplier Quality Engineer will be responsible to drive product qualification activities related to BoP scope which to be mainly but not limit to skid commodities.Support parts and documentation quality activities at suppliers, organize witness/surveillance inspection and manage nonconformities and quality improvement projects within...


  • Warsaw, Polska POL Fortrea Poland Sp z o.o. Pełny etat

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...


  • Warsaw, Polska POL Fortrea Poland Sp z o.o. Pełny etat

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...


  • Warsaw, Polska Groupe SII Pełny etat

    Join the Global Cybersecurity team of one of the largest financial institutions in the world as a DevOps Administrator. The department is responsible for enabling businesses and functions to manage their information, technology, and cybersecurity risks by ensuring these are well-understood, and that controls used to manage such events are defined, assessed,...

  • Senior Analyst

    1 miesiąc temu


    Warsaw, Polska Fortrea Pełny etat

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...

  • Senior Analyst

    4 tygodni temu


    Warsaw, Polska POL Fortrea Poland Sp z o.o. Pełny etat

    As a leading global contract research organization (CRO) with a passion for scientific rigor and decades of clinical development experience, Fortrea provides pharmaceutical, biotechnology, and medical device customers a wide range of clinical development, patient access and technology solutions across more than 20 therapeutic areas. With over 19,000 staff...

  • Regional Technology Risk

    1 miesiąc temu


    Warsaw, Polska JPMorgan Chase & Co. Pełny etat

    We know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase UK, to revolutionise mobile banking with seamless journeys that our customers love. We're already trusted by millions in the US and we're quickly catching up in the UK – but how we do things here is a little...


  • Warsaw, Polska JPMorgan Chase & Co. Pełny etat

    We know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase, to revolutionize mobile banking with seamless journeys that our customers love. We're already trusted by millions in the US and we're quickly catching up in the United Kingdom – but how we do things here is a...

  • Information Security Mgmt

    1 miesiąc temu


    Warsaw, Polska JPMorgan Chase & Co. Pełny etat

    We know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase UK, to revolutionise mobile banking with seamless journeys that our customers love. We're already trusted by millions in the US and we're quickly catching up in the UK – but how we do things here is a little...

  • Information Security Mgmt

    4 tygodni temu


    Warsaw, Polska JPMorgan Chase & Co. Pełny etat

    We know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase UK, to revolutionise mobile banking with seamless journeys that our customers love. We're already trusted by millions in the US and we're quickly catching up in the UK – but how we do things here is a little...


  • Warsaw, Polska naturenergie hochrhein AG Pełny etat

    Cybersecurity Engineer (m/f/d) Rheinfelden (Baden) / Hybdrid) / full-time / flexible working hours / permanent Fancy the energy transition? Then you've come to the right place. Because with your energy in the We & Now you can make a big difference with us! As a regional energy supplier with our own hydropower plants, we have been committed to greater...


  • Warsaw, Polska L'Oréal Pełny etat

    Operating system, WindowsYour responsibilities, Lead the implementation of a comprehensive Cybersecurity program., Convey the L'Oréal Group Cybersecurity framework and adapt it when required to specific constraints., Animate regular meetings with IT director and domain managers., Identify, estimate, evaluate Cybersecurity risks of your perimeter and ensure...

  • Product Security Lead

    3 miesięcy temu


    Warsaw, Polska JPMorgan Chase & Co. Pełny etat

    We know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase, to revolutionise mobile banking with seamless journeys that our customers love. We're already trusted by millions in the US and we're quickly catching up in the United Kingdom – but how we do things here is a...


  • Warsaw, Polska IQVIA Pełny etat

    Job Overview IQVIA Connected Devices is a service that accelerates trial outcomes by streamlining the selection and deployment of medical devices to collect and analyze data. It provides customized solutions to accelerate clinical development and commercialization in such things as diabetes trials with enhanced glucose data collection, closer to the...


  • Warsaw, Polska L'Oréal Pełny etat

    Cybersecurity Officer Central Europe Miejsce pracy: Warszawa Technologies we use Operating system WindowsYour responsibilities Lead the implementation of a comprehensive Cybersecurity program.Convey the L'Oréal Group Cybersecurity framework and adapt it when required to specific constraints.Animate regular meetings with IT director and domain...


  • Warsaw, Polska L'Oréal Pełny etat

    As Cybersecurity Officer you will be responsable for: Governance: Lead the implementation of a comprehensive Cybersecurity program. Convey the L’Oréal Group Cybersecurity framework and adapt it when required to specific constraints. Animate regular meetings with IT director and domain managers. Risk Management / Security in Project: Identify,...


  • Warsaw, Polska L'Oréal Pełny etat

    As Cybersecurity Officer you will be responsable for: Governance: Lead the implementation of a comprehensive Cybersecurity program. Convey the L’Oréal Group Cybersecurity framework and adapt it when required to specific constraints. Animate regular meetings with IT director and domain managers. Risk Management / Security in Project: Identify,...


  • Warsaw, Polska ALTEN Polska Pełny etat

    technologies-expected : Figma HTML CSS JavaScript REST SOAP JSON Microsoft SQL Server PostgreSQL MongoDB responsibilities : The role requires a candidate with experience of working with full stack and UI development, automation and integration technologies, to join the Cybersecurity Core Engineering Automation and Integration. The candidate will join a...


  • Warsaw, Polska Goldman Sachs Pełny etat

    INTERNAL AUDIT In Internal Audit, we ensure that Goldman Sachs maintains effective controls by assessing the reliability of financial reports, monitoring the firm's compliance with laws and regulations, and advising management on developing smart control solutions. Our group has unique insight on the financial industry and its products and operations....