At JPMorganChase, Internal Audit is a trusted, respected function where your work directly strengthens the controls that protect one of the world's most important financial institutions. The Issue Validation Team sits at the intersection of technology risk and audit excellence, offering you the chance to lead high-impact validations across a global technology landscape. If you thrive on independent delivery, credible challenge, and continuous improvement, this is the role for you.
As a Technology Senior Auditor on Internal Audit's Issue Validation Team, you will lead end-to-end validations of technology issues to assess whether remediation is complete, sustainable, and materially reduces residual risk to the firm. Each validation functions as a focused mini-audit encompassing planning, risk-based testing, evidence evaluation, and clear reporting of conclusions on control design and operating effectiveness. You will also help advance the adoption of AI-enabled tools and data analytics to strengthen quality, efficiency, and risk coverage in accordance with firm standards and data handling requirements.
Job Responsibilities
- Lead technology issue validations end-to-end, including scope definition, test strategy, execution, documentation, and reporting of final validation conclusions.
- Assess whether remediation demonstrates effective and sustainable control performance by testing both control design and operating effectiveness, and by evaluating evidence sufficiency to support a conclusion on residual risk.
- Drive timely resolution of open items by proactively engaging stakeholders on evidence gaps, remediation scope, sustainability concerns, and control intent; escalate disagreements through appropriate governance when required.
- Draft and deliver clear, concise validation documentation and reporting packages that articulate testing performed, results, exceptions, and final conclusions in a manner suitable for oversight and re-performance.
- Partner with technology and business stakeholders to understand remediation actions and implementation details while maintaining independence and providing credible challenge to ensure outcomes align to risk and control objectives.
- Manage multiple concurrent validations by prioritizing work across assignments, tracking milestones, and ensuring delivery against committed timelines without compromising quality.
- Share knowledge and provide informal coaching to less experienced team members, contributing to a strong culture of quality and continuous improvement
-
Apply AI-enabled tools and data analytics to improve test coverage, evidence quality, and documentation consistency, while adhering to firm policies on model use, data handling, confidentiality, and audit standards.
Required qualifications, capabilities and skills
- Bachelor's degree in Computer Science, Information Systems, Accounting, Finance or a related field (or equivalent practical experience).
- Demonstrated experience leading end-to-end technology audit or validation work (planning, testing, documentation, and reporting) with accountability for final conclusions and workpaper quality.
- Demonstrated experience assessing and validating remediation of technology controls across cloud and infrastructure, identity and access management, application delivery, software development lifecycle, etc.
- Strong risk and control judgment, including the ability to evaluate evidence and determine whether remediation is sustainable and reduces residual risk to an acceptable level.
- Strong stakeholder management skills, including the ability to influence outcomes, manage difficult conversations, and provide independent challenge while maintaining constructive partnerships.
- Excellent written and verbal communication skills, including the ability to produce clear documentation that is re-performable and aligns to firm standards.
-
Strong execution discipline, including the ability to manage multiple concurrent deliverables and meet deadlines while maintaining quality.
Preferred qualifications, capabilities and skills
- Knowledge of technology risk coverage across domains such as cyber security, infrastructure/operating systems, network security, data management, platform engineering, third-party technology risk, and endpoint controls.
- Demonstrated experience testing cloud controls, including governance/guardrails, configuration assurance, logging and monitoring, vulnerability/patch management, key management, and resilience patterns.
- Demonstrated experience testing Identity and Access Management (IAM) controls, including joiner/mover/leaver, privileged access, authentication/authorization, access provisioning, periodic access recertification, and segregation of duties.
- Demonstrated experience testing application and SDLC controls, including change management, CI/CD governance, code promotion controls, secure SDLC practices, configuration management, production access, and application logging/monitoring.
- Relevant professional certifications (for example, CISA, CIA, CISSP, or equivalent), or demonstrated commitment to continuous learning in technology risk and controls.
- Experience operating within large, complex financial institutions and navigating governance, regulatory expectations, and multi-stakeholder delivery environments.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
Skills Required
- Bachelor's degree in Computer Science, Information Systems, Accounting, Finance, or a related field, or equivalent practical experience.
- Experience leading end-to-end technology audit or validation work, including planning, testing, documentation, reporting, final conclusions, and workpaper quality.
- Experience assessing and validating remediation of technology controls across cloud and infrastructure, identity and access management, application delivery, or software development lifecycle environments.
- Strong risk and control judgment, including evaluation of evidence, remediation sustainability, and residual risk.
- Strong stakeholder management skills, including influencing outcomes, managing difficult conversations, and providing independent challenge.
- Excellent written and verbal communication skills, including clear, re-performable documentation aligned with firm standards.
- Ability to manage multiple concurrent deliverables and meet deadlines while maintaining quality.
- Knowledge of technology risk across cybersecurity, infrastructure, operating systems, network security, data management, platform engineering, third-party technology risk, and endpoint controls.
- Experience testing cloud controls, including governance, configuration assurance, logging and monitoring, vulnerability and patch management, key management, and resilience.
- Experience testing Identity and Access Management controls, including joiner/mover/leaver, privileged access, authentication, authorization, provisioning, recertification, and segregation of duties.
- Experience testing application and SDLC controls, including change management, CI/CD governance, code promotion, secure SDLC, configuration management, production access, and application monitoring.
- CISA, CIA, CISSP, or equivalent professional certification, or demonstrated commitment to continuous learning in technology risk and controls.
- Experience working within large, complex financial institutions and navigating governance, regulatory expectations, and multi-stakeholder environments.
JPMorganChase Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about JPMorganChase and has not been reviewed or approved by JPMorganChase.
-
Healthcare Strength — Health coverage is considered comprehensive, including medical, dental, and vision, alongside wellness and mental health resources. Some locations add onsite health centers and related wellbeing support.
-
Retirement Support — Retirement offerings include a 401(k)-type savings plan and related financial benefits, with options such as employee stock purchase participation. Financial planning resources are also highlighted to support long-term savings.
-
Parental & Family Support — Paid parental leave of 16 weeks for birth or adoption is available for all parents. Child care and back-up child care resources further reinforce family support.
JPMorganChase Insights
What We Do
JPMorgan Chase & Co. (NYSE: JPM) is a leading global financial services firm with assets of $3.7 trillion and operations worldwide. The firm is a leader in investment banking, financial services for consumers and small businesses, commercial banking, financial transaction processing, and asset management. A component of the Dow Jones Industrial Average, JPMorgan Chase & Co. serves millions of consumers in the United States and many of the world’s most prominent corporate, institutional and government clients under its J.P. Morgan and Chase brands. Technology fuels every aspect of our company and is at the heart of everything we do. With over 50,000 technologists globally and an annual tech spend of $12 billion, we are dedicated to improving the design, analytics, development, coding, testing and application programming that goes into creating high quality software and new products. Learn more about technology at our firm, explore resources from our Distinguished Engineers, AI & ML researchers, and other experts; access the latest episode of our TechTrends podcast, and more at www.jpmorgan.com/technology. Information about JPMorgan Chase & Co. is available at www.jpmorganchase.com. ©2023 JPMorgan Chase & Co. All rights reserved. JPMorgan Chase is an Equal Opportunity Employer, including Disability/Veterans.
Why Work With Us
Our technologists work on a diverse range of solutions that include strategic technology initiatives, big data, mobile, electronic payments, machine learning, cybersecurity, enterprise cloud development, and other state-of-the-art technologies.
Gallery







