JPMorganChase
Technology & Cybersecurity Operational Risk Management (IAM) – Vice President
Bring your Expertise to JPMorgan Chase. As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient. You help the firm grow its business in a responsible way by anticipating new and emerging risks, and using your expert judgement to solve real-world challenges that impact our company, customers and communities. Our culture in Risk Management and Compliance is all about thinking outside the box, challenging the status quo and striving to be best-in-class.
Job Summary
As a Vice President in Cybersecurity Operational Risk Management, you serve as a senior Second Line of Defense cybersecurity risk partner, providing independent oversight and advisory support to the firm's Cybersecurity organization. You leverage deep technical expertise and prior hands-on security experience to evaluate cybersecurity risks and risk decisions and help strengthen the firm's risk posture across established and emerging technology domains. You play a key role in assessing cybersecurity controls, influencing risk management decisions, and supporting the evolution of the firm's cybersecurity risk framework through research and testing. This opportunity allows you to engage with cybersecurity, engineering, technology, and business leaders while applying independent risk judgment.
Job Responsibilities
- Serve as a Second Line of Defense partner to Cybersecurity leadership, providing research and support to the independent opining and risk oversight process across strategic initiatives and key programs.
- Assess the design, implementation, and effectiveness of Secure Software Development Lifecycle (SDLC) and Secure by Design practices across technology and engineering functions.
- Evaluate cybersecurity risks associated with control managers, engineering, and security control implementation, identifying potential gaps and recommending appropriate remediation strategies.
- Provide oversight and opinion regarding the firm's cryptographic strategy, including key management, authentication controls, encryption approaches, and emerging post-quantum cryptography risks.
- Assess risks associated with the deployment and governance of advanced artificial intelligence technologies, including agentic and frontier artificial intelligence models, and evaluate the adequacy of related controls and governance frameworks.
- Provide independent opinions regarding risk acceptance decisions while balancing oversight with collaborative partnership.
- Maintain awareness of the evolving cyber threat landscape, industry developments, emerging technologies, and regulatory expectations impacting the firm.
- Contribute to the ongoing enhancement of cybersecurity risk frameworks, standards, policies, and governance practices.
-
Support research and testing activities that inform the evolution of cybersecurity risk management practices.
Required Qualifications, Capabilities, and Skills
- 10 years of experience in cybersecurity engineering, security architecture, security operations, or other technical cybersecurity disciplines.
- Experience operating within a First Line of Defense cybersecurity or technology security function, with the ability to engage credibly with security practitioners and engineering leaders.
- Experience designing, implementing, or overseeing Secure Software Development Lifecycle (SDLC) and Secure by Design programs within complex enterprise environments.
- Strong understanding of cybersecurity risk management principles, controls, and governance practices within a regulated financial services environment or similarly complex organization.
- Experience evaluating cybersecurity risks and control effectiveness across technology and security environments.
- Demonstrated analytical, problem-solving, and risk assessment capabilities.
- Ability to exercise independent judgment while providing effective risk oversight and challenge.
- Strong stakeholder management and influencing skills.
- Ability to communicate effectively with both technical and non-technical audiences.
-
Exceptional written and verbal communication skills with the ability to influence senior stakeholders and present effectively to governance forums and risk committees.
Preferred Qualifications, Capabilities, and Skills
- Experience in cryptography, including key management, authentication technologies, encryption strategies, and post-quantum cryptography considerations.
- Experience assessing security, governance, and risk management controls associated with artificial intelligence, machine learning, agentic artificial intelligence, or frontier artificial intelligence technologies.
- Previous software engineering, application development, platform engineering, or infrastructure engineering experience.
- Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Global Information Assurance Certification (GIAC), or equivalent cybersecurity credentials.
- Strong risk management mindset and ability to apply independent judgment.
- Experience engaging credibly with engineering and cybersecurity practitioners.
- Demonstrated professionalism, accountability, and sound ethical judgment.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process.
We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants’ and employees’ religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation.
JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans
JPMorganChase New York, New York, USA Office


270 Park Avenue, New York, NY, United States, 10017-2014
JPMorganChase New York, New York, USA Office
4 Metrotech Center, New York, NY, United States, 11201
Similar Jobs
What you need to know about the NYC Tech Scene
Key Facts About NYC Tech
- Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
- Key Industries: Artificial intelligence, Fintech
- Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
- Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory





