Bring your Expertise to JPMorgan Chase. As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient. You help the firm grow its business in a responsible way by anticipating new and emerging risks, and using your expert judgement to solve real-world challenges that impact our company, customers and communities. Our culture in Risk Management and Compliance is all about thinking outside the box, challenging the status quo and striving to be best-in-class.
Job Summary
As a Vice President in Cybersecurity Operational Risk Management, you serve as a senior Second Line of Defense cybersecurity risk partner, providing independent oversight and advisory support to the firm's Cybersecurity organization. You leverage deep technical expertise and prior hands-on security experience to evaluate cybersecurity risks and risk decisions and help strengthen the firm's risk posture across established and emerging technology domains. You play a key role in assessing cybersecurity controls, influencing risk management decisions, and supporting the evolution of the firm's cybersecurity risk framework through research and testing. This opportunity allows you to engage with cybersecurity, engineering, technology, and business leaders while applying independent risk judgment.
Job Responsibilities
- Serve as a Second Line of Defense partner to Cybersecurity leadership, providing research and support to the independent opining and risk oversight process across strategic initiatives and key programs.
- Assess the design, implementation, and effectiveness of Secure Software Development Lifecycle (SDLC) and Secure by Design practices across technology and engineering functions.
- Evaluate cybersecurity risks associated with control managers, engineering, and security control implementation, identifying potential gaps and recommending appropriate remediation strategies.
- Provide oversight and opinion regarding the firm's cryptographic strategy, including key management, authentication controls, encryption approaches, and emerging post-quantum cryptography risks.
- Assess risks associated with the deployment and governance of advanced artificial intelligence technologies, including agentic and frontier artificial intelligence models, and evaluate the adequacy of related controls and governance frameworks.
- Provide independent opinions regarding risk acceptance decisions while balancing oversight with collaborative partnership.
- Maintain awareness of the evolving cyber threat landscape, industry developments, emerging technologies, and regulatory expectations impacting the firm.
- Contribute to the ongoing enhancement of cybersecurity risk frameworks, standards, policies, and governance practices.
-
Support research and testing activities that inform the evolution of cybersecurity risk management practices.
Required Qualifications, Capabilities, and Skills
- 10 years of experience in cybersecurity engineering, security architecture, security operations, or other technical cybersecurity disciplines.
- Experience operating within a First Line of Defense cybersecurity or technology security function, with the ability to engage credibly with security practitioners and engineering leaders.
- Experience designing, implementing, or overseeing Secure Software Development Lifecycle (SDLC) and Secure by Design programs within complex enterprise environments.
- Strong understanding of cybersecurity risk management principles, controls, and governance practices within a regulated financial services environment or similarly complex organization.
- Experience evaluating cybersecurity risks and control effectiveness across technology and security environments.
- Demonstrated analytical, problem-solving, and risk assessment capabilities.
- Ability to exercise independent judgment while providing effective risk oversight and challenge.
- Strong stakeholder management and influencing skills.
- Ability to communicate effectively with both technical and non-technical audiences.
-
Exceptional written and verbal communication skills with the ability to influence senior stakeholders and present effectively to governance forums and risk committees.
Preferred Qualifications, Capabilities, and Skills
- Experience in cryptography, including key management, authentication technologies, encryption strategies, and post-quantum cryptography considerations.
- Experience assessing security, governance, and risk management controls associated with artificial intelligence, machine learning, agentic artificial intelligence, or frontier artificial intelligence technologies.
- Previous software engineering, application development, platform engineering, or infrastructure engineering experience.
- Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Global Information Assurance Certification (GIAC), or equivalent cybersecurity credentials.
- Strong risk management mindset and ability to apply independent judgment.
- Experience engaging credibly with engineering and cybersecurity practitioners.
- Demonstrated professionalism, accountability, and sound ethical judgment.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
Skills Required
- 10 years of experience in cybersecurity engineering, security architecture, security operations, or another technical cybersecurity discipline
- Experience in a First Line of Defense cybersecurity or technology security function
- Experience designing, implementing, or overseeing Secure Software Development Lifecycle and Secure by Design programs in complex enterprise environments
- Strong understanding of cybersecurity risk management, controls, and governance in regulated financial services or a similarly complex organization
- Experience evaluating cybersecurity risks and control effectiveness across technology and security environments
- Analytical, problem-solving, and risk assessment capabilities
- Ability to exercise independent judgment and provide effective risk oversight and challenge
- Strong stakeholder management and influencing skills
- Effective communication with technical and non-technical audiences
- Exceptional written and verbal communication skills, including presentation to governance forums and risk committees
- Experience in cryptography, key management, authentication technologies, encryption strategies, and post-quantum cryptography
- Experience assessing security, governance, and risk controls for artificial intelligence, machine learning, agentic AI, or frontier AI technologies
- Previous software engineering, application development, platform engineering, or infrastructure engineering experience
- CISSP, CISM, GIAC, or equivalent cybersecurity certification
- Strong risk management mindset and ability to apply independent judgment
- Experience engaging credibly with engineering and cybersecurity practitioners
- Professionalism, accountability, and sound ethical judgment
JPMorganChase Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about JPMorganChase and has not been reviewed or approved by JPMorganChase.
-
Healthcare Strength — Health coverage is considered comprehensive, including medical, dental, and vision, alongside wellness and mental health resources. Some locations add onsite health centers and related wellbeing support.
-
Retirement Support — Retirement offerings include a 401(k)-type savings plan and related financial benefits, with options such as employee stock purchase participation. Financial planning resources are also highlighted to support long-term savings.
-
Parental & Family Support — Paid parental leave of 16 weeks for birth or adoption is available for all parents. Child care and back-up child care resources further reinforce family support.
JPMorganChase Insights
What We Do
JPMorgan Chase & Co. (NYSE: JPM) is a leading global financial services firm with assets of $3.7 trillion and operations worldwide. The firm is a leader in investment banking, financial services for consumers and small businesses, commercial banking, financial transaction processing, and asset management. A component of the Dow Jones Industrial Average, JPMorgan Chase & Co. serves millions of consumers in the United States and many of the world’s most prominent corporate, institutional and government clients under its J.P. Morgan and Chase brands. Technology fuels every aspect of our company and is at the heart of everything we do. With over 50,000 technologists globally and an annual tech spend of $12 billion, we are dedicated to improving the design, analytics, development, coding, testing and application programming that goes into creating high quality software and new products. Learn more about technology at our firm, explore resources from our Distinguished Engineers, AI & ML researchers, and other experts; access the latest episode of our TechTrends podcast, and more at www.jpmorgan.com/technology. Information about JPMorgan Chase & Co. is available at www.jpmorganchase.com. ©2023 JPMorgan Chase & Co. All rights reserved. JPMorgan Chase is an Equal Opportunity Employer, including Disability/Veterans.
Why Work With Us
Our technologists work on a diverse range of solutions that include strategic technology initiatives, big data, mobile, electronic payments, machine learning, cybersecurity, enterprise cloud development, and other state-of-the-art technologies.
Gallery
.png)






